HackTool:Win32/AutoKMS!rfn

Discussion in 'Windows 10' started by 364sleepy, Oct 12, 2016.

  1. 364sleepy

    364sleepy MDL Novice

    Oct 12, 2016
    4
    0
    0
    how can i add exclusion in windows defender.

    w10 pro

    thank you
     
  2. MELERIX

    MELERIX MDL Addicted

    Nov 7, 2011
    573
    214
    30
    is easy, inside Windows Defender options, as always.
     
  3. PhaseDoubt

    PhaseDoubt MDL Expert

    Dec 24, 2011
    1,448
    278
    60
    Windows Defender is already "leaky" when it comes to protection and you want to make it more so? Disable it and install a better AV such as Avast, Avira or some such.
     
  4. Enthousiast

    Enthousiast MDL Tester

    Oct 30, 2009
    13,665
    15,146
    340
    What does this have to do with the simple question about excluding a file with a false positive? When another AV is used the same question will be asked.

    @OP: when defender reports it you can "allow" it.
     
  5. GOD666

    GOD666 MDL Expert

    Aug 1, 2015
    1,789
    1,746
    60
    1. Start
    2. Settings
    3. Update and Security
    4. Windows Defender
    5. Exclusions (click on Add Exclusion)

    This, of course, is a false positive. Just about any anti-virus will list a program hack / crack as a virus.
     
  6. PhaseDoubt

    PhaseDoubt MDL Expert

    Dec 24, 2011
    1,448
    278
    60
    What? We're not allowed to suggest what we believe to be better remedies? I never said exclusion was a process only available in one platform, only that there were better options. Friends don't let friends use poor programs sort of thing. I think I might do it again in the future thank you. That is all.
     
  7. Enthousiast

    Enthousiast MDL Tester

    Oct 30, 2009
    13,665
    15,146
    340
    What does it help for someone to be pointed at yet another AV to someone who just wants to know how to handle something in defender?

    Every other AV also will give a (false) positive and it also has to be excluded.

    If someone asks how to burn a audiocd using nero, you help explaining how it should be done using nero and not point out to ashampoo or another burning app.
     
  8. T-S

    T-S MDL Guru

    Dec 14, 2012
    3,988
    1,313
    120

    You have just discovered the only thing that Defender is capable to do. Just uninstall that useless crap.

    Then, If you mind, install a decent and real AV.
     
    Stop hovering to collapse... Click to collapse... Hover to expand... Click to expand...
  9. 364sleepy

    364sleepy MDL Novice

    Oct 12, 2016
    4
    0
    0
    thank you for the reply

    i go through those steps

    Start
    Settings
    Update and Security
    Windows Defender
    Exclusions (click on Add Exclusion)

    where is HackTool:Win32/AutoKMS!rfn located ? if i knew that i could exclude it
     
  10. Enthousiast

    Enthousiast MDL Tester

    Oct 30, 2009
    13,665
    15,146
    340
    #10 Enthousiast, Oct 12, 2016
    Last edited: Oct 13, 2016
    What kms solution do you use? it most likely will be in "c:\windows\autokms".
     
  11. 364sleepy

    364sleepy MDL Novice

    Oct 12, 2016
    4
    0
    0
    i don't know which version

    it is not listed in in c:\windows\autokms

    i also searched c:\ for it
     
  12. Hadron-Curious

    Hadron-Curious MDL Guru

    Jul 4, 2014
    3,396
    464
    120
    Try to do complete all rather full scan of your system and if Windows Defeder detects it you can add it to allowed item. That should be indicated in the history section.
     
  13. Enthousiast

    Enthousiast MDL Tester

    Oct 30, 2009
    13,665
    15,146
    340
    Did you first restore the file from the quarantine section in Defender history?
     
  14. 364sleepy

    364sleepy MDL Novice

    Oct 12, 2016
    4
    0
    0
    thanks for the reply.

    quarantine is empty.

    i allowed it, maybe that is why.

    windows defender finds it time after time and i allow it every time.

    that was why i axked the question originally
     
  15. Enthousiast

    Enthousiast MDL Tester

    Oct 30, 2009
    13,665
    15,146
    340
    On all my tests/installs using it, it is found once or twice (during activation).

    When defender reports it, just allow, next add an exclusion in defender to the file/folder.