Author Topic: avast detects rootkit in malwarebytes  (Read 3365 times)

0 Members and 1 Guest are viewing this topic.

angelina_h

  • Guest
avast detects rootkit in malwarebytes
« on: March 13, 2012, 12:32:44 AM »
hi i noticed in my scan log that avast detected a rootkit hidden file in mbamswissarmy.sys is this a fale positive as i have malwarebytes antimalware installed. should i take the action of do nothing or move to virus chest or delete? thanks

Offline polonus

  • Avast Überevangelist
  • Probably Bot
  • *****
  • Posts: 33897
  • malware fighter
Re: avast detects rootkit in malwarebytes
« Reply #1 on: March 13, 2012, 12:45:11 AM »
Hi angelina-h,

You can delete that file easy peasy, and after a reboot MBAM will have produced a brand new mbamswissarmy.sys file for you for your next MBAM-scan.
Enjoy. So actually no problem,

polonus
Cybersecurity is more of an attitude than anything else. Avast Evangelists.

Use NoScript, a limited user account and a virtual machine and be safe(r)!

angelina_h

  • Guest
Re: avast detects rootkit in malwarebytes
« Reply #2 on: March 13, 2012, 01:01:35 AM »
Hi, thanks so after i delete it i wont have to re download malwarebytes again? so this is definetly a false positive? thanks

iroc9555

  • Guest
Re: avast detects rootkit in malwarebytes
« Reply #3 on: March 13, 2012, 01:15:10 AM »
Hi, thanks so after i delete it i wont have to re download malwarebytes again? so this is definetly a false positive? thanks

Yes. It is a F/P. mbamswissarmy.sys is a file used by MBAM to update its virus data base ( Like avast.setup ) MBAM should remove it afterward.

You should aldo exclude MBAM from Avast! and viseversa. Read this: Section K

http://forums.malwarebytes.org/index.php?showtopic=10138&st=0&p=417798&#entry417798
« Last Edit: March 13, 2012, 08:53:15 PM by iroc9555 »

kevbeck

  • Guest
Re: avast detects rootkit in malwarebytes
« Reply #4 on: March 13, 2012, 04:00:28 AM »
Hi, thanks so after i delete it i wont have to re download malwarebytes again? so this is definetly a false positive? thanks

Yes. It is a F/P. Malwarebytes.sys is a file used by MBAM to update its virus data base ( Like avast.setup ) MBAM should remove it afterward.

You should aldo exclude MBAM from Avast! and viseversa. Read this: Section K

http://forums.malwarebytes.org/index.php?showtopic=10138&st=0&p=417798&#entry417798

i noticed the original inquiry was regarding path/file  "mbamswissarmy.sys" is this the same thing as Malwarebytes.sys without the "swissarmy"?

iroc9555

  • Guest
Re: avast detects rootkit in malwarebytes
« Reply #5 on: March 13, 2012, 08:55:11 PM »
i noticed the original inquiry was regarding path/file  "mbamswissarmy.sys" is this the same thing as Malwarebytes.sys without the "swissarmy"?

 There is no malwarebytes.sys. Typo. Corrected. Thanks.