Maybe it's a false positive, RogueKiller has those kind of often. I scan stuff like that with VS, even though I know I have the software already anyway. By the way, it's RogueKiller, not RougeKiller.
There is a lot of people on this forum that uses Macrium Reflect. http://www.binarydb.com/file/ReflectBin.exe-3215783.html
Peter I don't know if that file is in the paid version but the link I posted says it's just in the free version MF I which have. Not sure why. If you are using the paid version of MF, you could always run a scan and see if it picks it up.
I have the paid versions of Reflect and that Reflectbin is one normal processes. I have no curiosity to install this program to see what it picks up.
OK I am a sucker for these things. I run the portable version because I always been Portable anything anyway which can run that way and not take up lodge in the registry or other places. To me it's nearly like SAS in that it does a good enough task in pointing out PUPS and/or other malware traces. Scan speed doesn't matter to me because if I think any app is taking too much time to do it's thing I kill it off and move on.
12.10.7 - Added detections - Fixed a possible crash in COM module - Fixed a possible crash in Path parser
RK version 12.10.7 uploads to VirusTotal. Behold! Think I'll let this one slide. I should check the website to see if Adlice can whitelist some of these false positives.
12.11.0 - Added detections - NEW! MalPE module (BETA) - NEW! RogueKillerAdmin V2 compatible - DEPRECATED: RogueKillerAdmin V1
Especially if you're a Peter2150. Any program like this which fusses over that highly prized an imager is going to raise a stink. But in retrospect at least it was picked out as a PUP instead of malware found
The new added module NEW! MalPE module (BETA) is not enabled by default and wow!!! see all the FP's with that SUCKER ENABLED. Pretty much any file that is a PE get's flagged. MS even has those files.
Funny thing was when I emailed them about MR PUP detection, they not only aren't removing it but added a much worse module as I posted above.
Well, you can manually whitelist at least some items via VirusTotal feature and this is stored in C:\ProgramData\RogueKiller so the next scan isn't so lengthy. t's not an "I-make-all-decisions-for-you" kind of tool. One thing: over serial scans, I make note of the potentially unwanted modifications (PUM), and mark if anything new is added from the initial scan. Past experience dictates I leave these baseline PUMs alone.
Well it is obvious from the trend so far that it looks to me like they're taking it through some paces and adding other (shall we say additionals?) to better try to market it? I dunno. I normally don't use scanners anymore at all, even old SAS that at one time I did. Maybe I can take this one around the block for a spin and see how it does on this end since you raised my own curiosity about it now.
I was testing it Shadow defender before. Now I finally got Virtual Box running and will give a try in that. MS allows you to download a Windows 10 eval copy good for 90 days. Not sure what they mean about making a snapshot but I did. Was something about when the eval runs out would still be able to run the snapshot. This post is from in VB