Tag Archives: false positive

Windows Defender apparent false alarm (Win32/PossibleHostsFileHijack)

I got an alarming popup from Windows Defender tonight: it had detected Win32/PossibleHostsFileHijack in the C:\Windows\System32\drivers\etc\hosts file.  That’s pretty worrisome and unexpected!  I looked at the file but it seemed uninteresting.  The only non-comment entries were: 127.0.0.1       localhost ::1             localhost

Share
Posted in General | Tagged , , | 7 Comments