Page 1 of 1

Microsoft brands Process Hacker as malware

Posted: 08 Dec 2019 13:41
by dmex
Microsoft has declared the Process Hacker project is malware:
https://i.imgur.com/wRAeASJ.png

Microsoft provided the development team with this response:
https://i.imgur.com/mO1DdRE.png

Process Hacker was declared malware by Microsoft and is currently removed from your machine automatically by Microsoft Defender as a "high risk" threat. Microsoft has refused to provide any information to the development team except stating they will continue attacking the Process Hacker project and continue automatically removing the project binaries from users machines running Windows.

Microsoft brands Process Hacker as malware

Posted: 25 Feb 2020 02:12
by dmex
Microsoft has released three more signatures for Process Hacker:

- OnlineChecks.dll - Trojan/Win32/Detplock
- ProcessHacker.exe - Trojan/Win32/Casdet!rfn
- ProcessHacker-setup.exe - Trojan/Win32/Wacatac.C!ml

"We have determined that the files meet our criteria for detection. At this time detection will remain in place. "
https://www.microsoft.com/en-us/wdsi/su ... 358f1fdccc

Re: Microsoft brands Process Hacker as malware

Posted: 08 Mar 2020 02:08
by dmex
Microsoft has released two additional signatures for Process Hacker in addition to the previous signatures listed above:

- ExtendedNotifications.dll - Trojan/Win32/Detplock
- OnlineChecks.dll - Trojan/Win32/Detplock