Virus in 2.7

Newsgator Forums
Home       Members    Calendar    Who's On
Welcome Guest ( Login | Register )
        



Virus in 2.7 Expand / Collapse
Author
Message
Posted 5/15/2008 6:16:07 PM
Forum Member

Forum Member

Group: Forum Members
Last Login: 5/17/2008 2:41:40 PM
Posts: 9, Visits: 20
I downloaded 2.7 to update 2.6. With 2.7, ZoneAlarm consistently picks out and purges the Exploit.HTML.CodeBaseExec virus each time FeedDemon attempts to synchronize. Going back to 2.6 stopped this.
Post #39727
Posted 5/15/2008 8:42:19 PM


Forum Deity

Forum Deity

Group: Moderators
Last Login: Today @ 5:18:08 PM
Posts: 1,218, Visits: 3,620
There should be an option to send it to ZoneAlarm so it can be evaluated and the virus patterns updated accordingly - it's a false positive - I've installed 2.7 on three machines so far - one with the latest AVG, one with Anti-Vir and the other with Sophos and none of them flagged anything on it.

critter42

-----------------------------

Note: I am not employed by NewsGator Technologies in any capacity
Post #39733
Posted 5/17/2008 2:45:38 PM
Forum Member

Forum Member

Group: Forum Members
Last Login: 5/17/2008 2:41:40 PM
Posts: 9, Visits: 20
The virus came back when I upgraded FeedDemon when it asked me. Then, I deleted everything in the temp folder and the virus went away. It looks as though ZoneAlarm quarantines viruses in the common temp folder, where they keep coming back to haunt.
Post #39789
Posted 5/17/2008 6:00:41 PM
Forum Member

Forum Member

Group: Forum Members
Last Login: 5/17/2008 5:57:50 PM
Posts: 2, Visits: 24
I have Kasperky AV 7.0.1.325 without problems in 2.7

--

Erick Segura

esegura(at)spamcop(dot)net
Post #39801
Posted 5/19/2008 12:20:46 AM
Forum Member

Forum Member

Group: Forum Members
Last Login: 5/19/2008 12:13:45 AM
Posts: 3, Visits: 4
Running Kaspersky 7.0.1.325, Defs. 19/05/2008 03:04:22 and I get the same alert...

19/05/2008 07:08:34 File C:\Users\user\AppData\Local\Temp\~fdrpt0~rpt~0~.html: detected modification of Trojan program 'Exploit.HTML.CodeBaseExec'. User: COMPUTER\user, computer: localhost.
19/05/2008 07:08:34 Security threats have been detected. You are advised to neutralize them immediately.
19/05/2008 07:08:50 File C:\Users\user\AppData\Local\Temp\~fdrpt0~rpt~0~.html: deleted.


Specifically it seems to happen when I go to the "Subscriptions" page at the top of the list of feeds, but nowhere else. Anyway, sent it in for analysis so hopefully they can sort it out.
Post #39816
Posted 5/22/2008 10:55:12 AM
Forum Deity

Forum Deity

Group: Forum Members
Last Login: 6/19/2008 12:21:17 PM
Posts: 1,095, Visits: 1,551
We have seen reports of this type in the past. Each time we have this problem it goes away the next time the virus definitions are updated.

Keep in mind, if this was an accurate analysis we would see significantly more responses from other users as well for this problem.


Keith Franklin
Post #39961
« Prev Topic | Next Topic »


All times are GMT -7:00, Time now is 6:42pm

Powered By InstantForum.NET v4.1.4 © 2008
Execution: 0.141. 8 queries. Compression Disabled.

NewsGator.com | Support | Developers | Partners | Press | Company
© Copyright 2003-2008  NewsGator Technologies, Inc. All Rights Reserved.
Copyright Information | Privacy Policy | Terms of Service
Microsoft Gold Certified Partner