Neshta.Virus.Filelnfector.DDS detection by Malwarebytes #3344
Unanswered
RealJamieRI
asked this question in
Q&A
Replies: 2 comments 1 reply
-
Duplicate of: #3228 Please close this. MS just doesn't like EP and has added it to windows defender, even though it is not a virus and not a hack tool. Set windows defender to exclude the following:
Future updates to EP won't be flagged then. You can also set windows defender to exclude the directory that you manually download EP to so you can install it without windows defender blocking it. |
Beta Was this translation helpful? Give feedback.
1 reply
-
That's a false positive. |
Beta Was this translation helpful? Give feedback.
0 replies
Sign up for free
to join this conversation on GitHub.
Already have an account?
Sign in to comment
Uh oh!
There was an error while loading. Please reload this page.
-
My Malwarebytes Premium just announced it detected Neshta.Virus.Filelnfector.DDS

HTTPS//GITHUB.COMALINET/EXPLORERPATCHER/RELEASES/LATEST/DOWNLOAD/EP_SETUP.EXE FROM EXPLORERPATCHER FOR C:\USERS\JAMIE\APPDATA\ROAMING\EXPLORERPATCHER\UPDATE
I went to the folder C:\Users\jamie\AppData\Roaming\ExplorerPatcher and found this file and checked it's properties, but it had none. Then the file disappeared from the folder.
Now Microsoft Defender says something different:
Detected: HackTool:Win64/ExplorerPatcher!MTB
Status: Quarantined
Quarantined files are in a restricted area where they can't harm your device. They
will be removed automatically.
Date: 6/1/2024 5:06 PM
Details: This program has potentially unwanted behavior.
Affected items:
file: C:\Users\jamie\AppData\Roaming\ExplorerPatcher\Update for
ExplorerPatcher from
https://github.com/valinet/ExplorerPatcher/releases/latest/download/ep_set
up.exe
file: \localhost\C$\Users\jamie\AppData\Roaming\ExplorerPatcher\Update
for ExplorerPatcher from
https://github.com/valinet/ExplorerPatcher/releases/latest/download/ep_set
up.exe
Beta Was this translation helpful? Give feedback.
All reactions