0 Members and 1 Guest are viewing this topic.
Anyway, have you reported this to Malwarebytes?http://forums.malwarebytes.org/index.php?s=d7491a959887e9db80b5b3c507f1c358&showforum=42
ok i have reported it at MBAMreply recived http://forums.malwarebytes.org/index.php?showtopic=125817
I don't think this is a false positive though. The Image File Executions Options key is used to run certain processes for debugging. When a certain executable is set for this key, and a debugger is defined under it, it will run the debugger instead of that process instead.Malware has been using this approach for a while, where it creates a debugger for antivirus processes, so it runs the malicious file instead of the process (in this case AvastUI.exe) instead.You can verify this and export the key and look if there's a debugger value + what file the valuedata is pointing to. Also see here for more info.
have the programs updated?.....