Jump to content
Katie

SuperAntiSpyware Falsely identifies nIDspam.exe as Trojan.Agent/Gen-SVC[Fake]

Recommended Posts

Welcome to the SAS forum Katie.

Please post your latest SAS log.

Here it is. Hope I am including it properly because when I tried to attach it, it said: "Error You aren't permitted to upload this kind of file"

SUPERAntiSpyware Scan Log
https://www.superantispyware.com

Generated 01/05/2011 at 06:52 PM

Application Version : 4.47.1000

Core Rules Database Version : 6135
Trace Rules Database Version: 3947

Scan type   	: Quick Scan
Total Scan Time : 03:17:12

Memory items scanned  	: 766
Memory threats detected   : 0
Registry items scanned	: 2775
Registry threats detected : 0
File items scanned    	: 69396
File threats detected 	: 21

Adware.Tracking Cookie
C:\Users\katie\AppData\Roaming\Microsoft\Windows\Cookies\katie@2o7[1].txt
C:\Users\katie\AppData\Roaming\Microsoft\Windows\Cookies\katie@ad.yieldmanager[1].txt
C:\Users\katie\AppData\Roaming\Microsoft\Windows\Cookies\katie@doubleclick[1].txt
C:\Users\katie\AppData\Roaming\Microsoft\Windows\Cookies\katie@server.cpmstar[2].txt
C:\Users\katie\AppData\Roaming\Microsoft\Windows\Cookies\katie@realnetworks.112.2o7[1].txt
C:\Users\katie\AppData\Roaming\Microsoft\Windows\Cookies\katie@content.yieldmanager[1].txt
cdn.insights.gravity.com [ C:\Users\katie\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\29SF367Q ]
media.comicvine.com [ C:\Users\katie\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\29SF367Q ]
media.ign.com [ C:\Users\katie\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\29SF367Q ]
media.indianasnewscenter.com [ C:\Users\katie\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\29SF367Q ]
media.miamiherald.com [ C:\Users\katie\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\29SF367Q ]
media.scanscout.com [ C:\Users\katie\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\29SF367Q ]
media.vmixcore.com [ C:\Users\katie\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\29SF367Q ]
media.xfire.com [ C:\Users\katie\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\29SF367Q ]
media1.break.com [ C:\Users\katie\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\29SF367Q ]
msnbcmedia.msn.com [ C:\Users\katie\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\29SF367Q ]
secure-us.imrworldwide.com [ C:\Users\katie\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\29SF367Q ]
vitamine.networldmedia.net [ C:\Users\katie\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\29SF367Q ]

Trojan.Agent/Gen-SVC[Fake]
E:\PROGRAM FILES\NIDSPAM\NIDSPAM.EXE

Share this post


Link to post
Share on other sites

Here it is. Hope I am including it properly because when I tried to attach it, it said: "Error You aren't permitted to upload this kind of file"

SUPERAntiSpyware Scan Log
https://www.superantispyware.com

Generated 01/05/2011 at 06:52 PM

Application Version : 4.47.1000

Core Rules Database Version : 6135
Trace Rules Database Version: 3947

Katie,

Your Core Rules and Trace Rules are significantly out-of-date. Please update and rescan to see if this false detection still occurs. Post the new scan log. As of this posting, the current Core Rules are 6153; Trace Rules are 3965.

If the false positive detection of NIDSPAM.EXE still occurs, follow the directions in the link below to submit it as a false positive.

https://www.superantispyware.com/supportfaqdisplay.html?faq=28

Share this post


Link to post
Share on other sites

Okay it still detected it as a Trojan so I submitted it as a false positive as per the instructions on that link you gave me. Thanks!

Share this post


Link to post
Share on other sites
Guest
This topic is now closed to further replies.

×
×
  • Create New...