Wilders Security Forums  

Go Back   Wilders Security Forums > Security Products > other anti-trojan software
User Name
Password
Register FAQ Members List Calendar Search Today's Posts Mark Forums Read

 
 
Thread Tools Search this Thread
  #1  
Old December 22nd, 2005, 02:38 AM
sweater's Avatar
sweater sweater is offline
Very Frequent Poster
 
Join Date: Jun 2005
Location: Philippines, the Political Dynasty Capital of the World
Posts: 1,596
Default What's your opinion on this A2 findings?

Startup Mechanic was also some kind of spyware program detector, when installing their newer version 2.5 it also bundles a program Foxie Suite, so I also installed it. But after A2 Squared scans it identifies them as Trojan.

What should I do? Is it really possible that the trusted anti-trojan scanner can make a mistakes?
  #2  
Old December 22nd, 2005, 02:41 AM
sweater's Avatar
sweater sweater is offline
Very Frequent Poster
 
Join Date: Jun 2005
Location: Philippines, the Political Dynasty Capital of the World
Posts: 1,596
Default Re: What's your opinion on this A2 findings?

I forgot to attach this snap shot from my above question.

Here's the findings it found by A2 after the scans...
Attached Images
 
  #3  
Old December 22nd, 2005, 09:56 AM
Don Pelotas's Avatar
Don Pelotas Don Pelotas is offline
Very Frequent Poster
 
Join Date: Jun 2004
Posts: 2,257
Default Re: What's your opinion on this A2 findings?

You better contact them, most likely a FP.
__________________
Errare humanum est
  #4  
Old December 22nd, 2005, 11:19 AM
A Lurker
 
Posts: n/a
Default Re: What's your opinion on this A2 findings?

Hi Guys, I noticed download.com has removed foxie from its listings, most likely because it contains malware? This may not be a false positive. Is foxie force installed from Startup Mechanic?
  #5  
Old December 22nd, 2005, 01:07 PM
sweater's Avatar
sweater sweater is offline
Very Frequent Poster
 
Join Date: Jun 2005
Location: Philippines, the Political Dynasty Capital of the World
Posts: 1,596
Default Re: What's your opinion on this A2 findings?

What made me think twice and hesitates was that only A2 squared detects them as Trojans, while my Ewido scanner (and other scanners) didn't recognize them as Trojans. So I can't really decide if I can really trust this findings.

Last edited by sweater : December 23rd, 2005 at 07:16 AM.
  #6  
Old December 22nd, 2005, 02:14 PM
POS
 
Posts: n/a
Default Re: What's your opinion on this A2 findings?

While download.com has removed foxie from its listings, I would trust a².
  #7  
Old December 22nd, 2005, 02:17 PM
bellgamin's Avatar
bellgamin bellgamin is offline
Very Frequent Poster
 
Join Date: Aug 2002
Location: Hawaii
Posts: 5,202
Default Re: What's your opinion on this A2 findings?

A-squared evaluates a file based on how that file ACTS as well as based on signatures. If a file ACTS like a nasty, A-squared will flag it.

I often get an alert flag from A-squared when installing an anti-malware program. For example, both A-squared and DrWeb flagged BitDefender's updater as I was installing a trial copy. I THINK this was because BD's updater wants to install a little *server* in my computer -- that's also a typical action of a trojan.

I do NOT want A-squared or DrWeb to stop letting me know when they spot such malware-like actions. I would rather have the minor inconvenience of having to exclude friendly programs from such scans INSTEAD OF having a possible nasty get in because my protection is trying to avoid a False Positive at all costs.

When it comes to security programs I prefer a Rottweiler to a kitty cat. A-squared is a Rottweiler. Grrrrrr. "Sic 'em, boy!"
__________________
Primo freebeez: TinyWatcher POP Peeper Kalender
  #8  
Old December 22nd, 2005, 04:25 PM
AshG AshG is offline
Frequent Poster
 
Join Date: May 2005
Location: East TN
Posts: 206
Default Re: What's your opinion on this A2 findings?

This is starting to make more sense... I also see CCleaner being tagged as Trojan-Dropper on my machine, now I'm assuming it's due to the run-time update notifier being detected. Sounds like I should be emailing CCleaner about this, not A2. Or I could email them both and see where it goes...
  #9  
Old December 22nd, 2005, 05:48 PM
RuntimeWare's Avatar
RuntimeWare RuntimeWare is offline
Infrequent Poster
 
Join Date: Nov 2002
Posts: 24
Default Re: What's your opinion on this A2 findings?

This A-Squared app sounds very interesting - for those of us too lazy to google it, could someone provide a link?
  #10  
Old December 22nd, 2005, 06:02 PM
Mongol's Avatar
Mongol Mongol is offline
Very Frequent Poster
 
Join Date: Jul 2004
Location: Houston, TX
Posts: 1,581
Default Re: What's your opinion on this A2 findings?

Quote:
Originally Posted by RuntimeWare
This A-Squared app sounds very interesting - for those of us too lazy to google it, could someone provide a link?

Here yah go: http://www.emsisoft.com/en/software/personal/
__________________
"We are here on Earth to fart around. Don't let anybody tell you any different." –Kurt Vonnegut

Look N' Stop Firewall, Webroot Security Essentials, and AD Muncher 4.93
  #11  
Old December 23rd, 2005, 07:19 AM
sweater's Avatar
sweater sweater is offline
Very Frequent Poster
 
Join Date: Jun 2005
Location: Philippines, the Political Dynasty Capital of the World
Posts: 1,596
Default Re: What's your opinion on this A2 findings?

Startup Mechanic 2.5 and Foxie Suite are both anti-spyware programs and also free. I was then now thinking that there's really some kind of cold war between and among anti-spywares programs.. .. and maybe, some of them will try knocking out one another..
  #12  
Old December 23rd, 2005, 07:59 AM
peter.ewido's Avatar
peter.ewido peter.ewido is offline
former ewido team
 
Join Date: Nov 2003
Location: Brno, Czech Republic
Posts: 737
Default Re: What's your opinion on this A2 findings?

We just had a look at the uninst.exe of the foxie installation we have in our whitelist and this file is definitely clean - looks like a false positive of a² on the NSIS installer... And CCleaner should also not get detected, at least not by the filescanner.
 

Wilders Security Forums > Security Products > other anti-trojan software « Previous Thread | Next Thread »

Thread Tools Search this Thread
Search this Thread:

Advanced Search

Posting Settings
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

vB code is On
Smilies are On
[IMG] code is On
HTML code is Off
Forum Jump


All times are GMT -4. The time now is 04:33 AM.


Powered by vBulletin® Copyright ©2000 - 2013, Jelsoft Enterprises Ltd.
Copyright ©2002 - 2013, Wilders Security Forums