Want to inform and confirm with Team Spybot that this may be a false positive in the 02-12-05 detections.
We've seen a thread in both the Malware and Spybot forums discussing this.
Unable to fix "Command Service"
http://forums.spybot.info/showthread.php?t=730
HKLM cmd srvce settings
http://forums.spybot.info/showthread.php?t=710
There's also the following thread at BroadBand Reports.
Spybot detects "Command Service" as malware
http://www.dslreports.com/forum/remark,14933661
The following are the detected keys.TrojanHunter, spysweeper, a2 all add this registry entry, probably more security apps also.
mchInjDrv (Mad code hook injection driver)
malware can use it, but if you use any of the above security apps, then it's a false positive.
Code:Command Service: Settings (Registry key, fixed) HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Servic es\mchInjDrv HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\m chInjDrv HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Services\m chInjDrv