Fixed: RuMSX possibly detected as Fake.MSAntivirus false positive

Bonarella

New member
Dear Sirs,

Recently, I installed an MSX emulator called RuMSX from its official
website:

http://www.lexlechz.at/en/software/RuMSX.html

After then at the first scan performed with SpyBot it alerted me that
I was hit by Fake.MSAntivirus malware. Following the links in the registry
I found that they pointed to RuMSX generated entries and found no evidence
in my Program Files folder of the signatures of Fake.MSAntivirus like:

<$PROGRAMFILES>\MSX\MSX.exe.

It seems to me a false positive.

I'm interested in Your opinion.

Thanks in advance.

Best regards.

Bonarella.
 
Hello,

I cannot confirm the false positive you reported.

The Emulator (version ) installs to:
program files\Lex Lechz\RuMSX\
and not
program files\MSX\

however the following registry key gets falsely detected:
HKEY_LOCAL_MACHINE\Software\MSx

this will be changed with the next detection update scheduled for Wednesday 2009-12-16.
 
Confirm: It is exactly what happened on my computer

Dear Yodama,

maybe I was not clear in my previous post but what You wrote
is exactly what happened on my computer: RuMSX was installed in
in a given (by me) location like this:

C:\Program Files\MSX\RuMSX

(during installation I changed the default installation directory)

and Spybot detected the generated registry key:

HKEY_LOCAL_MACHINE\Software\MSX

so all it happened suggests that it is a false positive generated
by RuMSX.

Thank You for the attention.

Best regards.

Bonarella.
 
Back
Top