Author Topic: Avast misses four bad items found by Microsoft Safety Scanner  (Read 2619 times)

0 Members and 1 Guest are viewing this topic.

Offline glnz

  • Sr. Member
  • ****
  • Posts: 300
Avast misses four bad items found by Microsoft Safety Scanner
« on: November 26, 2019, 03:21:02 PM »
 On my Win 7 Pro 64-bit (on my home Dell Optiplex which also dual-boots Win 10 Pro 64-bit), I ran Microsoft Safety Scanner for the first time.  (Version 1.0.3001.0.)
 
It says that HackTool:Win32/LSASecretsView.BH has NOT been removed.  It also found and removed three other items.
 
First, What should I do?

Second, how did this get past my Avast Free?  (My Avast is fully updated.  It's version 19.8.2393.)
 
Here's a link to the results report from the Microsoft Safety Scan (link to a Word doc with a pic of the results):   
https://1drv.ms/w/s!ArpWuno4XUAMiSWgrnNGcWZRdZt8?e=ksSO7T

Thanks.
 
Various Dell Optiplexes running XP Pro SP3 32-bit, Win 7 Pro SP1 64-bit and Win 10 Pro 64-bit.  Firefox with security add-ons.


Offline glnz

  • Sr. Member
  • ****
  • Posts: 300
Re: Avast misses four bad items found by Microsoft Safety Scanner
« Reply #2 on: November 26, 2019, 05:52:43 PM »
 
pondus - thanks, but your links don't provide the answer.

Anyone have a thought as to how specifically to search for and then fix HackTool:Win32/LSASecretsView.BH ?
 
Various Dell Optiplexes running XP Pro SP3 32-bit, Win 7 Pro SP1 64-bit and Win 10 Pro 64-bit.  Firefox with security add-ons.

Offline Pondus

  • Probably Bot
  • ****
  • Posts: 37527
  • Not a avast user
Re: Avast misses four bad items found by Microsoft Safety Scanner
« Reply #3 on: November 26, 2019, 05:56:45 PM »
Hacktools can be used to patch or "crack" some software so it will run without a valid license or genuine product key.



 
pondus - thanks, but your links don't provide the answer.

Anyone have a thought as to how specifically to search for and then fix HackTool:Win32/LSASecretsView.BH ?
 
as posted above  >> Logs to assist in cleaning malware >>  https://forum.avast.com/index.php?topic=194892.0


I guess you have these programs installed:

HackTool:Win32/LSASecretsView.BH   https://www.nirsoft.net/utils/lsa_secrets_view.html

HackTool:Win32/Wirekeyview    https://www.nirsoft.net/utils/wireless_key.html

HackTool:Win32/PasswordFox.A!bit   https://www.nirsoft.net/utils/passwordfox.html



« Last Edit: November 26, 2019, 08:00:10 PM by Pondus »

Offline glnz

  • Sr. Member
  • ****
  • Posts: 300
Re: Avast misses four bad items found by Microsoft Safety Scanner
« Reply #4 on: November 27, 2019, 01:27:29 AM »
 
I just ran an Avast boot scan, but Avast did NOT find the malware.
Says I had zero infected files.
Not good! 
Various Dell Optiplexes running XP Pro SP3 32-bit, Win 7 Pro SP1 64-bit and Win 10 Pro 64-bit.  Firefox with security add-ons.

Offline Pondus

  • Probably Bot
  • ****
  • Posts: 37527
  • Not a avast user
Re: Avast misses four bad items found by Microsoft Safety Scanner
« Reply #5 on: November 27, 2019, 01:41:08 AM »
avast boot scan does not give any better detection then the normal scan

Files (program) is not infected but classed as hacktool / riskware, so avast may have selected not to detect these or you have to turn on avast pup detection if not already done


Offline RejZoR

  • Polymorphic Sheep
  • Serious Graphoman
  • *****
  • Posts: 9406
  • We are supersheep, resistance is futile!
    • RejZoR's Flock of Sheep
Re: Avast misses four bad items found by Microsoft Safety Scanner
« Reply #6 on: November 27, 2019, 08:58:45 AM »
These were probably PUP (based on this one that has hacktool name). PUP's are not picked up with real-time protection and has to be enabled separately for on-demand scans.
Visit my webpage Angry Sheep Blog

Offline RedFan

  • Full Member
  • ***
  • Posts: 156
Re: Avast misses four bad items found by Microsoft Safety Scanner
« Reply #7 on: November 27, 2019, 09:07:52 AM »
I wonder why my post was deleted in this topic ???
I've just given a link to microsoft website with information
« Last Edit: November 27, 2019, 09:11:05 AM by RedFan »
IntelĀ® i3 Quad-Core @4,3 GHZ. RAM: 16GB ddr4 || SSD 500 GB || Windows 11 Home x64 || Chromium user.