Solved MalwareByte Scan Report

wanchoo

New member
Guru
Local time
7:16 AM
Messages
1,167
Location
Gurgaon, India
After updating MalwareBytes Database, I did a quick scan today. It identified one malicious item as follows.

Registry Keys Detected: 1
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\itunes.exe (Security.Hijack) -> No action taken.

Of course I ignored it but why is an iTunes Registry entry being identified as a malicious item? I have been using my iTunes for ever but MalwareBytes had never identified this entry as malicious earlier.

Could someone please give me an answer.
 

My Computer

Computer Manufacturer/Model Number
Custom Built
OS
Windows 7 Pro with SP1 32bit
Motherboard
Intel D845GVS1 X86-based PC
Memory
2 gigs of RAM
Graphics Card(s)
Intel(R) 82845G/GL/GE/PE/GV Graphics Controller
Sound Card
Realtek AC'97 Audio
Monitor(s) Displays
Samsung SyncMaster 931BF Black 19" LCD Monitor
Screen Resolution
1280X960
Hard Drives
1. SAMSUNG SP0822N ATA Device ~ 80 GigaBytes

2. Seagate FreeAgent Go USB Device ~ 500 GigaBytes
Keyboard
COMPAQ Standard PS/2 Keyboard
Mouse
iBall Laser Precise Speedster
Internet Speed
4 mb/sec
IFEO's, which is what this is, aren't always bad. In fact what triggered this is fairly commonplace in both good and bad apps.

In this particular case if itunes is working properly I wouldn't be too worried about it.
 

My Computer

Computer Manufacturer/Model Number
Insane hobo technologies. ;-)
OS
Windows 7 x64
CPU
Intel i7 2600k
Motherboard
Asrock z68 extreme 4 gen 3
Memory
G.skill Ripjaw 16gigs @ 1866
Graphics Card(s)
Nvidia gtx580 (evga)
Sound Card
Integrated HD audio + hdmi
Monitor(s) Displays
24" ASUS widescreen + 42" insignia
Screen Resolution
1080p (1920x1080)
Hard Drives
128 Samsung 830
256 Samsung 840
3 x 1tb storage drive (various)
1 western digital 1tb (eSATA)
1 Seagate 1tb (eSATA)
PSU
1 kilowatt SLI/Crossfire rated Silverstone modular
Case
NZXT Phantom + additional 220 fan
Cooling
Zalmann
Keyboard
Microsoft wireless 3000 (v2)
Mouse
MS - wireless 5000 (bluetrack)
Internet Speed
depends on if you ask me or my provider.
Other Info
The above information is provided as is, and the author assumes no responsibility for issues it may cause with your sanity or fanboyism.
Of course I ignored it but why is an iTunes Registry entry being identified as a malicious item

Because many malware use this as a loop hole to launch themselves at startup. Its just a general mechanism of redirecting what application gets launched, so, lets take notepad.exe for example. I can make a key named notepad.exe but have it pointed to badapp.exe . Now everytime you try to launch notepad, instead of it, that badapp.exe will open.

But in this case, if this is the only thing your getting from the scan, then its most likely just a false positive.

You can do an online scan with Eset or Kaspersky if you want also if you've any doubts..
 

My Computer

Computer Manufacturer/Model Number
HCL
OS
Winbdows 7 ultimate x64 | Ubuntu 12.04 x64 LTS
CPU
Core 2 Duo e7400 @ 2.90GHz
Motherboard
Gigabyte G31M-ES2L
Memory
3GB DDR2
Graphics Card(s)
Asus Nvidia GTX 560Ti 1GB
Sound Card
On-board
Monitor(s) Displays
HCL eZeeBee 18.5" LCD
Screen Resolution
1366x768 @ 60Hz
Hard Drives
Western Digital 320GB
PSU
Corsair CX500 V2 500W
Cooling
Stock
Keyboard
Stock
Mouse
Stock
Internet Speed
15-25kBps D/L | 10kBps U/L | Hey Don't laugh
Thank you Maguscreed and EzioAuditore. Incidentally what is IFFO. Checked in Google but didn't get any satisfactory information.
 

My Computer

Computer Manufacturer/Model Number
Custom Built
OS
Windows 7 Pro with SP1 32bit
Motherboard
Intel D845GVS1 X86-based PC
Memory
2 gigs of RAM
Graphics Card(s)
Intel(R) 82845G/GL/GE/PE/GV Graphics Controller
Sound Card
Realtek AC'97 Audio
Monitor(s) Displays
Samsung SyncMaster 931BF Black 19" LCD Monitor
Screen Resolution
1280X960
Hard Drives
1. SAMSUNG SP0822N ATA Device ~ 80 GigaBytes

2. Seagate FreeAgent Go USB Device ~ 500 GigaBytes
Keyboard
COMPAQ Standard PS/2 Keyboard
Mouse
iBall Laser Precise Speedster
Internet Speed
4 mb/sec
kind of hard to explain to someone really.
It would help if you googled the right acronym though.
IFEO
 

My Computer

Computer Manufacturer/Model Number
Insane hobo technologies. ;-)
OS
Windows 7 x64
CPU
Intel i7 2600k
Motherboard
Asrock z68 extreme 4 gen 3
Memory
G.skill Ripjaw 16gigs @ 1866
Graphics Card(s)
Nvidia gtx580 (evga)
Sound Card
Integrated HD audio + hdmi
Monitor(s) Displays
24" ASUS widescreen + 42" insignia
Screen Resolution
1080p (1920x1080)
Hard Drives
128 Samsung 830
256 Samsung 840
3 x 1tb storage drive (various)
1 western digital 1tb (eSATA)
1 Seagate 1tb (eSATA)
PSU
1 kilowatt SLI/Crossfire rated Silverstone modular
Case
NZXT Phantom + additional 220 fan
Cooling
Zalmann
Keyboard
Microsoft wireless 3000 (v2)
Mouse
MS - wireless 5000 (bluetrack)
Internet Speed
depends on if you ask me or my provider.
Other Info
The above information is provided as is, and the author assumes no responsibility for issues it may cause with your sanity or fanboyism.
Thanks Maguscreed. Earlier I had mistyped. After getting your message I typed correctly, googled and found out.


kind of hard to explain to someone really.
It would help if you googled the right acronym though.
IFEO
 

My Computer

Computer Manufacturer/Model Number
Custom Built
OS
Windows 7 Pro with SP1 32bit
Motherboard
Intel D845GVS1 X86-based PC
Memory
2 gigs of RAM
Graphics Card(s)
Intel(R) 82845G/GL/GE/PE/GV Graphics Controller
Sound Card
Realtek AC'97 Audio
Monitor(s) Displays
Samsung SyncMaster 931BF Black 19" LCD Monitor
Screen Resolution
1280X960
Hard Drives
1. SAMSUNG SP0822N ATA Device ~ 80 GigaBytes

2. Seagate FreeAgent Go USB Device ~ 500 GigaBytes
Keyboard
COMPAQ Standard PS/2 Keyboard
Mouse
iBall Laser Precise Speedster
Internet Speed
4 mb/sec
Back
Top