Microsoft Toolkit found on most sites is virus

Discussion in 'Windows 10' started by rohitshakti2, Oct 24, 2016.

  1. Katzenfreund

    Katzenfreund MDL Expert

    Jul 15, 2016
    1,373
    831
    60
    In my opinion, VirusTotal would do better to leave out obscure or second rate scanners, as they add nothing to detection, but produce a lot of false positives that confuse the user. A dozen or so major scanners are quite sufficient to find any malware without too many false alarms. I try to ignore the rest, but they still make me feel a little uncomfortable.
     
  2. MS_User

    MS_User MDL Guru

    Nov 30, 2014
    4,629
    1,343
    150


    mostly all of the executable activators read like a virus....get one from here u will be ok;)
     
  3. Michaela Joy

    Michaela Joy MDL Crazy Lady

    Jul 26, 2012
    4,071
    4,651
    150
    Some programs that defeat copy protection do so by "patching" the in-memory executable image.
    This is a heuristics trigger, since the exe image is being modified from outside its' code segment / code context.

    Some people say "it's fine, it's a keygen / patcher". But there's a secondary risk: The possibility of a secondary infector / virus package inside the patch / keygen.

    We've seen that happen here with the Windows Loader, as well as on public download sites who offer a "secure download" through their downloader.

    You always must be vigilant. Check your sources, get a SHA signature on the file from the original programmer(s) and check it against your file(s).
     
    Stop hovering to collapse... Click to collapse... Hover to expand... Click to expand...