ewido found worm.randon in c:/i386/reg.exe but WD did not and,,,,

  • Thread starter Thread starter robin
  • Start date Start date
R

robin

Alot on the fourm for ewido have found the same thing. and no one knows if
it is a false positive or what. I found it on a client's computer and
quarantined it. I now found it on one of my computers running WD, ad-aware
se, spybot, AVG Pro virus and firewall and none of them find it as a threat.
I quarantined it in Ewido then decided to restore it just in case it is not
a threat.
I sent the file to ewido before i quarantined it.
Anyone got a suggestion here?
robin
 
Sorry, no suggestion here. Just wanted to advise that I scanned the file in
question on my PC with Ewido and it was clean!
 
i scanned it on 2 computers and it was clean- but came up on one, seems
others on their forums are seeing this too, some clean some it says a worm.
but thanks anyway
robin
 
turned out it is a false positive as you see below:
karl.ewido said:
Sorry for the delay, yes it seems that this is a
false-positive. We will try to fix it with the next update.
robin
 
Back
Top