Live Chat & Podcast at 1:00PM Eastern on Sunday!
There's no such thing as a stupid question, but they're the easiest to answer.
JoinTour
Login
Search
General Security
Tag Cloud
access acer asus bios bsod computer crash desktop dns driver drivers error ethernet excel freeze gaming graphics hard drive hardware hdmi internet laptop malware memory monitor motherboard network printer problem ram registry repair router slow software sound trojan ubuntu 11.10 uninstall usb video virus vista wifi windows windows 7 windows 7 32 bit windows 7 64 bit windows xp wireless
Search
Search for:
Tech Support Guy Forums > Security & Malware Removal > General Security >
A-squared (free) issues!

Reply  
Thread Tools
perfume's Avatar
perfume has a Photo Album
Computer Specs
Account Disabled with 2,011 posts.
 
Join Date: Sep 2008
Location: A DUDE WITH ATTITUDE! ALIEN.
Experience: Intermediate++
22-Mar-2009, 10:36 PM #1
A-squared (free) issues!
The a-squared free version of which i will provide a snap, shows 21 malware infections!
Enter Jotti's Malware scan! Submitted a WINDOWS file which was reported by a-squared anti-malware as infected. jotti's scan result--FOUND NOTHING!

False-positives were the bane of a-squared program, but if i were to quarantine or worse delete those files--"asking for trouble"!

In addition, i have KIS2009 (which anyway is included n the jotti's scan) and the KIS scan came up with no "active threats".
Attached Thumbnails
A-squared (free) issues!-greenshot17.png   A-squared (free) issues!-greenshot18.png  
hewee's Avatar
Computer Specs
Distinguished Member with 57,923 posts.
 
Join Date: Oct 2001
Location: *Random People Pleaser***Sacra
Experience: Having fun
22-Mar-2009, 11:01 PM #2
A2 is a good program but you can get a lot of False-positives.
Glad you knew where else to go to upload files to get a scan.

You can after the scan right click and report the file and it sends it to Emsi.
You can post over at there forum and they will check it out also.
http://forum.emsisoft.com/Default.aspx?g=forum&c=1

But you should know if they are really False-positives too so never clean up or put them in quarantine.

Then wait till they can update the sig files on the False-positives.

What type of scan did you do?
I am running the smart scan on XP Pro to see what comes up.

I got the paid a-squared Anti-Malware and something is screwed up on it where I have to disable most of what it does because it screws things up booting to a Admin account. All is OK in a user account but what ever setting you have is the same for both so I do not have any of the real-time scanner running.
Elvandil's Avatar
Computer Specs
Moderator with 48,924 posts.
 
Join Date: Aug 2003
Location: Vermont
Experience: "Been through the mill."
22-Mar-2009, 11:16 PM #3
All scanners have false positives. Most have a relatively small database and can't even recognize most infections. More than one is neede for thorough cleaning. If another scanner doesn't see one, it is because it is either not as good or the entry is not in its database.

All scanners can misidentify malware. That is why the list should be scanned before removing anything.

a-squared is one of the best. It finds many more threats than Ad-Aware, for example. But like all of them, you need to check the finds.
__________________
Microsoft MVP
異驚の界世 ˇpןɹoʍ ǝɥʇ ɟo sɹǝpuoʍ ǝɥʇ ɟo ǝuo sı ǝpoɔıun ʞuıɥʇ ı
hewee's Avatar
Computer Specs
Distinguished Member with 57,923 posts.
 
Join Date: Oct 2001
Location: *Random People Pleaser***Sacra
Experience: Having fun
22-Mar-2009, 11:52 PM #4
Well said because I keep my PC clean so most scans are clean or false positives and most times the false positives are pointing to the hosts file.

Darn the sSmart scan I was doing stopped at "C:\Program Files\Outlook Express\wab.exe" and I get a popup alert.

Is that not the address book.

It wants to send the file off to the A2 team.
I never got a pop up like that before.

Darn I sent the file and then the scan was over and I was clean.

I right click the file and it's clean.

Then I turned back on all the real-time scanner and right click the file and it says I got Worm.Win32.Anilogo.b!A2

Malwarebytes' Anti-Malware and SUPERAntiSpyware Professional are clean.

http://www.virustotal.com/analisis/9...923c9cdead352e

Jotti's malware scan 2.99 was the same and only A2 found something.

By the way I never use Outlook and the file dates are the same as the day windows was installed Aug, 11, 2008
Attached Thumbnails
A-squared (free) issues!-wab.exe-2009-03-22_192749.png   A-squared (free) issues!-wab.exe_right-click2009-03-22_193657.png  
Elvandil's Avatar
Computer Specs
Moderator with 48,924 posts.
 
Join Date: Aug 2003
Location: Vermont
Experience: "Been through the mill."
23-Mar-2009, 12:06 AM #5
You could try turning off heuristics (or lowering its settings, at least in Avira). Though heuristics is a great idea, it is probably responsible for the majority of false positives. It tries to figure out if something is an infection, not by checking its database, but by the file's behavior or other suspicious characteristics.
__________________
Microsoft MVP
異驚の界世 ˇpןɹoʍ ǝɥʇ ɟo sɹǝpuoʍ ǝɥʇ ɟo ǝuo sı ǝpoɔıun ʞuıɥʇ ı
hewee's Avatar
Computer Specs
Distinguished Member with 57,923 posts.
 
Join Date: Oct 2001
Location: *Random People Pleaser***Sacra
Experience: Having fun
23-Mar-2009, 12:17 AM #6
Yea Avast is also clean

I am not going to change any of my setting because of what A2 finds.
perfume's Avatar
perfume has a Photo Album
Computer Specs
Account Disabled with 2,011 posts.
 
Join Date: Sep 2008
Location: A DUDE WITH ATTITUDE! ALIEN.
Experience: Intermediate++
23-Mar-2009, 04:12 AM #7
Dear Hewee and Elvandil,
I thank you for the very prompt replies! I run the purchased and daily updated version of MBAM daily which i will do it now. I thought running two anti-malware programs parallely is not a great idea, that's why this delay!Will get back asap and post the result of MBAM scan!
Elvandil's Avatar
Computer Specs
Moderator with 48,924 posts.
 
Join Date: Aug 2003
Location: Vermont
Experience: "Been through the mill."
23-Mar-2009, 04:24 AM #8
It's a good idea to run all the anti-malware scans that you can. The problems arise when you try to run more than one in "real-time". If you have more than one running, they both try to access the files at the same time, and their drivers can conflict, causing malware to go undetected and slowing your machine down. But scans are better the more there are. Dr. Web Cure-It is an example of one that scans and then shuts down.
__________________
Microsoft MVP
異驚の界世 ˇpןɹoʍ ǝɥʇ ɟo sɹǝpuoʍ ǝɥʇ ɟo ǝuo sı ǝpoɔıun ʞuıɥʇ ı
perfume's Avatar
perfume has a Photo Album
Computer Specs
Account Disabled with 2,011 posts.
 
Join Date: Sep 2008
Location: A DUDE WITH ATTITUDE! ALIEN.
Experience: Intermediate++
23-Mar-2009, 04:54 AM #9
Dear Elvandil,
Just ran the MBAM thru 'C,D and E drives and partially thru' the external HD (L) and the scan revealed NO MALWARE DETECTED.

The purchased version of MBAM runs in real-time and KIS2009 which also has anti-malware detection capability runs in real-time (Pro-active defence). I am disabling the real-time activity of MBAM every time i start the PC to avoid conflict. Am i right? Kindly reply.
Attached Thumbnails
A-squared (free) issues!-greenshot20.png   A-squared (free) issues!-greenshot21.png  
techservices24's Avatar
Member with 114 posts.
 
Join Date: Mar 2009
Experience: Advanced
23-Mar-2009, 06:06 AM #10
It seems that your computer is badly infected by the malwares attacks.
please follow these troubleshooting steps in order to resolve the issue:

1. Try to delete all the temporary internet files from your computer.
2. Try to uninstall the unwanted programs installed on your computer.
3. Try to perform the "defrag" and "diskcleanup" utility over the specific time.
4. Try to remove all the temporary internet files from your computer.
5. Scan your computer by using any updated antivirus program.
6. Try to install and download the "Antimalwarebytes" (freely available
7. Try to update "Antimalwarebytes".
8. Scan your computer using the "Antimalwarebytes".
9. Please follow the same procedure for "Superantispyware" as you done for "Antimalwarebytes".
Kenny94's Avatar
Account Disabled with 2,481 posts.
 
Join Date: Dec 2004
Location: S.C
23-Mar-2009, 08:36 AM #11
a-squared Free MS eventtriggers.exe detection At:

http://forum.emsisoft.com/Default.aspx?g=posts&t=3265


C:\WINDOWS\system32\eventtriggers.exe detected: Email-Worm.VBS.Stuly.a


a-squared had this same problem last year....
perfume's Avatar
perfume has a Photo Album
Computer Specs
Account Disabled with 2,011 posts.
 
Join Date: Sep 2008
Location: A DUDE WITH ATTITUDE! ALIEN.
Experience: Intermediate++
23-Mar-2009, 01:54 PM #12
Dear techservises24,
As the saying goes,"i was not brought to town on the back of a turnip truck"!
1)I run Ccleaner daily.
2)SAS Pro is updated daily and run!
3)MBAM(purchased version) is updated first thing in the morning and run!
4)KIS2009 is used to scan daily!
5)I use Defraggler(my favourite) at least once a week!
6) What are my "Wanted" programs may be "unwanted" by you!
7)My PC is purring like a well groomed cat!
8)All the posts agree that a-squared(free) comes up with more false positives than others as proven by the jotti's scan which i ran today!
9)I don't think a-squared is superior to MBAM!

If it were not for the courtesy the site demands,my reply would have been otherwise! At least learn from Elvandil and Hewee!
Jason08's Avatar
Computer Specs
Distinguished Member with 3,717 posts.
 
Join Date: Oct 2008
Location: Near Washington, D.C.
Experience: Advanced in Networking
23-Mar-2009, 02:04 PM #13
To add to that, techservices, you have responded to more than 1 malware problems without permission. Maybe a consideration of the malware training classes? Remember, to remove malware, it is against the rules here.
hewee's Avatar
Computer Specs
Distinguished Member with 57,923 posts.
 
Join Date: Oct 2001
Location: *Random People Pleaser***Sacra
Experience: Having fun
24-Mar-2009, 12:10 AM #14
Your welcome.
Elvandil's Avatar
Computer Specs
Moderator with 48,924 posts.
 
Join Date: Aug 2003
Location: Vermont
Experience: "Been through the mill."
24-Mar-2009, 12:23 AM #15
Quote:
Originally Posted by Jason08 View Post
To add to that, techservices, you have responded to more than 1 malware problems without permission. Maybe a consideration of the malware training classes? Remember, to remove malware, it is against the rules here.
Thank you, Jason8. Please report anything to believe to be an infraction using the Report button.
Reply

THIS THREAD HAS EXPIRED.
Are you having the same problem? We have volunteers ready to answer your question, but first you'll have to join for free. Need help getting started? Check out our Welcome Guide.

Search Tech Support Guy

Find the solution to your
computer problem!




Currently Active Users Viewing This Thread: 1 (0 members and 1 guests)
 
WELCOME TO TECH SUPPORT GUY! Are you looking for the solution to your computer problem? Join our site today to ask your question -- for free! Our site is run completely by volunteers who want to help you solve your computer problems. See our Welcome Guide to get started.
Thread Tools



Facebook Facebook Twitter Twitter TechGuy.tv TechGuy.tv Mobile TSG Mobile
You Are Using:
Server ID
Advertisements do not imply our endorsement of that product or service.
All times are GMT -4. The time now is 09:16 PM.
Copyright © 1996 - 2011 TechGuy, Inc. All rights reserved.

Powered by Cermak Technologies, Inc.