PDA

View Full Version : NOD32 v2 and Agnitum Outpost


n8chavez
August 19th, 2003, 03:42 AM
Today when I was installing Outpost Pro 2.0. AMON popped up and said that there was a virus inside of a dll that was put on when Outpost was installing. Both AMON and the on-demand scanne both detected it. This is a copy of the log.

Time***Module***Object***Name***Virus***Action***User***Info
8/18/2003 23:59:58 PM***AMON***file***C:\Program Files\Agnitum\Outpost Firewall\opst_ui.Vdll***probably unknown CRYPT.WIN32 virus***renamed to C:\Program Files\Agnitum\Outpost Firewall\opst_ui.VVdll***NATHAN\Nate***

However neither detected it as a virus after I upoated NOD. do you think this is something I should notify agnitum about or was it simply a false positive?

Vigy
August 19th, 2003, 06:40 AM
Hi n8chavez,

could you send the information about your system and NOD32 version? (nod32 system tools->information)

Vigy

n8chavez
August 19th, 2003, 04:04 PM
Here you go...

NOD32 Antivirus System information
Virus signature database version:***1.489 (20030819)
Dated:***Tuesday, August 19, 2003
Virus signature database build:***3864

Information on other scanner support parts
Advanced heuristics module version:***1.003 (20030703)
Extended heuristic module build:***1031
Archive support module version:***1.001 (20030526)
Archive support module build version:***1032

Information on installed components
NOD32 For Windows NT/2000/XP - Base
Version:***2.000.5
NOD32 For Windows NT/2000/XP - Internet support
Version:***2.000.5
NOD32 for Windows NT/2000/XP - Standard component
Version:***2.000.5

Operating system information
Platform:***Windows XP
Version:***5.1.2600
Version of common control components:***5.82.2600
RAM:***128 MB
Processor:***Intel(R) Pentium(R) 4 CPU 1300MHz (1296 MHz)


Hope this helps

hayc59
August 20th, 2003, 12:10 AM
this has been addressed and is a 'False Positive'
you have nothing to worry about... ;D

i cannot find the thread about this,from the past
but updating the .dat files will fix this ;)

and it sounds like you have done that..