Comodo detect false positive Rootkit !?!

Rootkit.HiddenValue[at]0 HKEY_LOCAL_MACHINE\Software\Classes\CLSID{47629D4B-2AD3-4e50-B716-A66C15C63153}\InprocServer32
Rootkit.HiddenValue[at]0 HKEY_LOCAL_MACHINE\Software\Classes\CLSID{604BB98A-A94F-4a5c-A67C-D8D3582C741C}\InprocServer32
Rootkit.HiddenValue[at]0 HKEY_LOCAL_MACHINE\Software\Classes\CLSID{604BB98A-A94F-4a5c-A67C-D8D3582C741C}\InprocServer32\ThreadingModel
Rootkit.HiddenValue[at]0 HKEY_LOCAL_MACHINE\Software\Classes\CLSID{684373FB-9CD8-4e47-B990-5A4466C16034}\InprocServer32
Rootkit.HiddenValue[at]0 HKEY_LOCAL_MACHINE\Software\Classes\CLSID{684373FB-9CD8-4e47-B990-5A4466C16034}\InprocServer32\ThreadingModel…etc,etc… 54 of that detections every time I scan my PC!!!
What is that “InprocServer32\ThreadingModel”???

When I try to clean,it say “Not all threats have been removed” and when I try to quarantine, it say “Quarantine is not an applicable method for some of the selected threats,Would you like to Disinfect them instead?” and again the same thing in circle!

What should I do?

Is this false positive or Bug in CIS?

Also I scan my PC with MBAM, HitmanPro, SUPERAntispyware and I clean with CCleaner and everything is OK!!!

I’m using Win.7-32bit with CIS for protection!
HELP PLEASE :embarassed:

I moved this here to the f/p board as I don’t know how to analyse. Can you guys take a look and see if this is a false positive detection or not?

Hi andi.cro,

Have you tried to clean respective entries or add them to exclusion list? What was the result of these actions?

Thanks,
Ionel

Hi Ionel,

I try to clean like I described above but with no success :frowning:
I don’t know how to put those registry entries in exclusions list :-\

[attachment deleted by admin]

Will someone help or not :cry:

I sent a pm to Ionel to remind him.

ScreenShoots

[attachment deleted by admin]

Hi ,andi.cro

Thanks for reporting.We will check that and get back to you shortly.

Regards,
Chunli.chen

Hi andi.cro

The issue has been verified and a fix will be available with upcoming version 6 of Comodo Internet Security which will have an improved rootkit scanner module.

Thanks and regards,
Ionel

Thanks guys :wink: