Jump to content


 


Register a free account to unlock additional features at BleepingComputer.com
Welcome to BleepingComputer, a free community where people like yourself come together to discuss and learn how to use their computers. Using the site is easy and fun. As a guest, you can browse and view the various discussions in the forums, but can not create a new topic or reply to an existing one unless you are logged in. Other benefits of registering an account are subscribing to topics and forums, creating a blog, and having no ads shown anywhere on the site.


Click here to Register a free account now! or read our Welcome Guide to learn how to use this site.

Photo

Hitman Pro MS Word 15 has been terminated check for malicious code


  • Please log in to reply
3 replies to this topic

#1 jayreagan1026

jayreagan1026

  • Members
  • 8 posts
  • OFFLINE
  •  
  • Gender:Male
  • Local time:02:58 PM

Posted 19 April 2016 - 04:10 PM

Hi, I just started getting this message when I start up Windows Word from Office 2013.

"Microsoft Word 15 has been terminated to prevent execution of malicious code. Check computer for malware and software updates, scan with Hitman Pro" I then scan with HM and get the same thing.

 

I uninstalled Office 2013, the reinstalled it thinking that the WINWORD.exe was corrupt. Well, I still get this message. I uninstalled Hitman Pro, but still have Hitman Pro Alert and get the same thing.

I think I should get rid of Hitman and just keep  Malwarebytes, or download it again. This is very frustrating, I need to use MS Word.

 

I was thinking getting the WINWORD.exe from another computer(my laptop) and replacing the one on the my desktop.

I am actually a software engineer, and have got and gotten rid of "RansomWare", FBI etc., so I know what I'm doing here. Besideswriting Mainframe and Unix code, I also do LAN desktop, installation, removing virus' etc.

 

Thanks Jay



BC AdBot (Login to Remove)

 


#2 usasma

usasma

    Still visually handicapped (avatar is memory developed by my Dad


  • BSOD Kernel Dump Expert
  • 25,090 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:Southeastern CT, USA
  • Local time:02:58 PM

Posted 21 April 2016 - 04:36 PM

Could you be infected?  It's possible that malware has corrupted your current protection, so please try a couple of these, independent scans (from this link: https://www.us-cert.gov/ncas/alerts/TA15-286A ).  This is in case your current protection is compromised by malware and giving false results:

 

           F-Secure
           https://www.f-secure.com/en/web/home_global/online-scanner (link is external)

           McAfee
           http://www.mcafee.com/uk/downloads/free-tools/stinger.aspx (link is external)

           Microsoft
           http://www.microsoft.com/security/scanner/en-us/default.aspx (link is external)

           Sophos
           https://www.sophos.com/en-us/products/free-tools/virus-removal-tool.aspx (link is external)

           Trend Micro
           http://housecall.trendmicro.com/ (link is external)

    The above are examples only and do not constitute an exhaustive list. The U.S. Government does not endorse or support any particular product or vendor.

If you do find infections, I'd suggest posting over in the Am I Infected forum to ensure that all the bad stuff has been removed:  http://www.bleepingcomputer.com/forums/f/103/am-i-infected-what-do-i-do/
Please read the pinned topics at the top of the forum for instructions on how to post there.

If the scans come up clean - then:

- download a fresh copy of HitmanPro

- uninstall the current copy

- install the freshly downloaded copy

- then scan to see what it finds

 

Copying WINWORD.exe may/may not work.
Should you try it - set a system restore point and save a copy of the original WINWORD.exe

 

Beyond that, we're not malware experts in this forum.

I'd suggest posting over in one of the Security forums:  http://www.bleepingcomputer.com/forums/f/79/security/


Edited by usasma, 21 April 2016 - 04:36 PM.

My browser caused a flood of traffic, sio my IP address was banned. Hope to fix it soon. Will get back to posting as soon as Im able.

- John  (my website: http://www.carrona.org/ )**If you need a more detailed explanation, please ask for it. I have the Knack. **  If I haven't replied in 48 hours, please send me a message. My eye problems have recently increased and I'm having difficult reading posts. (23 Nov 2017)FYI - I am completely blind in the right eye and ~30% blind in the left eye.<p>If the eye problems get worse suddenly, I may not be able to respond.If that's the case and help is needed, please PM a staff member for assistance.

#3 jayreagan1026

jayreagan1026
  • Topic Starter

  • Members
  • 8 posts
  • OFFLINE
  •  
  • Gender:Male
  • Local time:02:58 PM

Posted 21 April 2016 - 06:07 PM

Thanks, I deleted Hitman Pro. MS Word works just fine now. I may download a clean copy(maybe it was corrupted). I have Malwarebytes. I have spent too much time on this !

 

Jay



#4 usasma

usasma

    Still visually handicapped (avatar is memory developed by my Dad


  • BSOD Kernel Dump Expert
  • 25,090 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:Southeastern CT, USA
  • Local time:02:58 PM

Posted 23 April 2016 - 04:26 PM

"Nothing succeeds like success." and "If it ain't broke, don't fix it."

I'd leave it just the way it is as all is well now.

Good luck!


My browser caused a flood of traffic, sio my IP address was banned. Hope to fix it soon. Will get back to posting as soon as Im able.

- John  (my website: http://www.carrona.org/ )**If you need a more detailed explanation, please ask for it. I have the Knack. **  If I haven't replied in 48 hours, please send me a message. My eye problems have recently increased and I'm having difficult reading posts. (23 Nov 2017)FYI - I am completely blind in the right eye and ~30% blind in the left eye.<p>If the eye problems get worse suddenly, I may not be able to respond.If that's the case and help is needed, please PM a staff member for assistance.




0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users