Live Chat & Podcast at 1:00PM Eastern on Sunday!
There's no such thing as a stupid question, but they're the easiest to answer.
JoinTour
Login
Search
General Security
Tag Cloud
access acer asus bios bsod computer crash desktop driver drivers error ethernet excel freeze gaming hard drive hardware hdmi internet laptop malware memory modem monitor motherboard network printer problem ram registry router security slow software sound toshiba trojan ubuntu 11.10 uninstall usb video virus vista wifi windows windows 7 windows 7 32 bit windows 7 64 bit windows xp wireless
Search
Search for:
Tech Support Guy Forums > Security & Malware Removal > General Security >
NOD32 Gets False Positives, Detects System Files

Reply  
Thread Tools
Byteman's Avatar
Moderator & Malware Removal Specialist with 17,387 posts.
 
Join Date: Jan 2002
Location: NY
Experience: Junkware Jouster
17-Mar-2009, 12:28 AM #1
NOD32 Gets False Positives, Detects System Files
I haven't seen this posted at TechGuy forums so here you are>

ESET Smart Security / ESET NOD32 Antivirus detected some Windows files as Win32/Kryptik.JX and quarantined them


http://kb.eset.com/esetkb/index?page...tp=LIST_RECENT
perfume's Avatar
perfume has a Photo Album
Computer Specs
Account Disabled with 2,011 posts.
 
Join Date: Sep 2008
Location: A DUDE WITH ATTITUDE! ALIEN.
Experience: Intermediate++
17-Mar-2009, 01:36 AM #2
That's a chiller of a post! ESET has to answer that. Till now,Nod32 was held in high esteem as a leader in A-V programs with KAV not far behind! I really think we seriously take note of all the posts by lotuseclat79,showing us how vulnerable a PC is,when connected to the internet. Thanks for the post!
TOGG's Avatar
Distinguished Member with 5,362 posts.
 
Join Date: Apr 2002
Location: Birmingham, England
17-Mar-2009, 01:20 PM #3
There's a 'Sticky' in the NOD32 section over at Wilder's Security Forum about a 'rogue' update (which I had noticed, but ignored, since it didn't affect me); http://www.wilderssecurity.com/showthread.php?t=235606

I suppose even the best programs can suffer glitches from time to time but, if the Eset statement is to be believed, they acted promptly to deal with this (although I appreciate that that wasn't much comfort to the 5% that were affected!)

The current definitions are at 3942, which shows how things have moved on since 9th March.
__________________
Nothing matters very much, and few things matter at all.

Lord Balfour 1848-1930
Byteman's Avatar
Moderator & Malware Removal Specialist with 17,387 posts.
 
Join Date: Jan 2002
Location: NY
Experience: Junkware Jouster
17-Mar-2009, 11:55 PM #4
When we post notices like this, it isn't meant (at least from me), that the program is bad,..... it is meant to give folks that may be using it a heads up.... those who could hear about the problem before they had certain computers "turned on" could possibly avoid getting the bad update. I've come to read posts here many times and gotten a just in the nick of time warning

If a widely used program has a system-crippling update given out, it is common to find posts about them in our Stickied threads at the top of the main forum pages.

In Dec 2007, a Kaspersky update found a virus/malware in Windows Explorer (false detection) , which did cause a lot of grief for those who were using Kaspersky and got the update.
http://www.kaspersky.com/technews?id=203038717


Those who had their antivirus program set to delete, and not quarantine, found themselves having to pull new explorer.exe file into Windows.
__________________
Mung (computer term), the act of making several incremental changes to an item that combine to destroy it
Donate directly to help the site TSG Library
TSG's Welcome Guide- Tips, Rules, How to use TSG and more!

Last edited by Byteman; 18-Mar-2009 at 12:01 AM..
TOGG's Avatar
Distinguished Member with 5,362 posts.
 
Join Date: Apr 2002
Location: Birmingham, England
18-Mar-2009, 09:58 AM #5
I didn't intend my response to be seen as a criticism of the original post, nor as any sort of 'defence' of Eset, so if it read like that, I apologise.

I just thought that it might be helpful to any NOD users who were alarmed by the 'headline' to know that the error had been noticed and dealt with fairly quickly.

As you say, anyone allowing their AV to 'delete' rather than to quarantine suspect files could have found themselves with serious problems if the misidentified files had been crucial (perhaps they were in the Eset case, I don't know enough about Windows to be able to tell!).
__________________
Nothing matters very much, and few things matter at all.

Lord Balfour 1848-1930
Byteman's Avatar
Moderator & Malware Removal Specialist with 17,387 posts.
 
Join Date: Jan 2002
Location: NY
Experience: Junkware Jouster
19-Mar-2009, 08:38 PM #6
TOGG- You should have been able to see who I was replying "to" from looking at the post before mine..... a reply is not always answering the post immediately before it.

Usually, I put the person's name at the beginning so that any other poster does not feel that my post is directed at them....

In this case I didn't but I will try hard to. I was replying to perfume, who commented about the reputation of Eset etc and I was trying to point out that false positives etc are quite common
__________________
Mung (computer term), the act of making several incremental changes to an item that combine to destroy it
Donate directly to help the site TSG Library
TSG's Welcome Guide- Tips, Rules, How to use TSG and more!
Reply

THIS THREAD HAS EXPIRED.
Are you having the same problem? We have volunteers ready to answer your question, but first you'll have to join for free. Need help getting started? Check out our Welcome Guide.

Search Tech Support Guy

Find the solution to your
computer problem!




Currently Active Users Viewing This Thread: 1 (0 members and 1 guests)
 
WELCOME TO TECH SUPPORT GUY! Are you looking for the solution to your computer problem? Join our site today to ask your question -- for free! Our site is run completely by volunteers who want to help you solve your computer problems. See our Welcome Guide to get started.
Thread Tools



Facebook Facebook Twitter Twitter TechGuy.tv TechGuy.tv Mobile TSG Mobile
You Are Using:
Server ID
Advertisements do not imply our endorsement of that product or service.
All times are GMT -4. The time now is 11:15 PM.
Copyright © 1996 - 2011 TechGuy, Inc. All rights reserved.

Powered by Cermak Technologies, Inc.