Behavior:Win32/Hive.ZY Detection & Removal

A recent Windows Defender detection caused a bit of a stir. There were multiple reports in early September 2022 about a detection that Defender identified as "Behavior:Win32/Hive.ZY" that caused some concern.

The good news is that the detection is a false positive that was introduced in a Defender update and has since been remedied.

The initial scare was triggered by a wave of detections bringing up Behavior:Win32/Hive.ZY, and flagging it as a "severe" threat. Users trying to use Defender to clean the discovered threat found that the same detection would crop up very soon after clearing it.

The false positive was "related to all Chromium-based web browsers and Electron-based apps like Whatsapp, Discord, Spotify", according to an independent advisor quoted by WindowsCentral.

The false positive detection has since been taken care of with the Windows Defender definition file updating from 1.373.1508.0 to 1.373.1537.0.

Similar false positive scares are not uncommon, but with the false detection tripping up because of something as common as Chromium and Electron-based implementations, it caused a much bigger stir than a random heuristic or behavior-based detection.

September 7, 2022
Loading...

Cyclonis Backup Details & Terms

The Free Basic Cyclonis Backup plan gives you 2 GB of cloud storage space with full functionality! No credit card required. Need more storage space? Purchase a larger Cyclonis Backup plan today! To learn more about our policies and pricing, see Terms of Service, Privacy Policy, Discount Terms and Purchase Page. If you wish to uninstall the app, please visit the Uninstallation Instructions page.

Cyclonis Password Manager Details & Terms

FREE Trial: 30-Day One-Time Offer! No credit card required for Free Trial. Full functionality for the length of the Free Trial. (Full functionality after Free Trial requires subscription purchase.) To learn more about our policies and pricing, see EULA, Privacy Policy, Discount Terms and Purchase Page. If you wish to uninstall the app, please visit the Uninstallation Instructions page.