Webroot SecureAnywhere Discussion & Update Thread

Discussion in 'other anti-virus software' started by Triple Helix, Jun 6, 2014.

  1. kdcdq

    kdcdq Registered Member

    Joined:
    Apr 19, 2002
    Posts:
    815
    Location:
    A Non-Sh*thole State
    I've got two semi-bricked systems with WSA Complete on them after applying Microsoft roll-up update KB3000850 yesterday.:mad::mad::mad: After a successful boot, I get a message that Msimg32.dll is missing and WSA won't start up. It appears that this dll has been quarantined and because WSA won't start, I can't "unquarantine" the missing DLL.

    Yes, I HAVE opened a support ticket about 20 minutes ago. Not ONE BIT happy with Webroot at the moment... :cautious::mad::thumbd:
     
  2. FleischmannTV

    FleischmannTV Registered Member

    Joined:
    Apr 7, 2013
    Posts:
    1,093
    Location:
    Germany
    I can confirm a second issue with KB3000850. After application of this update, injection of WRUSR.dll causes Chrome x64 to crash (haven't tried 32bit, though)

    The issue kdcdq is describing should already be fixed.

    On a positive sidenote, the memory consumption bug seems to be gone.
     
  3. Triple Helix

    Triple Helix Specialist

    Joined:
    Nov 20, 2004
    Posts:
    13,275
    Location:
    Ontario, Canada
    Sorry to hear but you must of allowed it to remove the FP? Did you get a warning? Support will help you for sure and if you can send me your email via PM I can get it push faster to the top! Also have you tried to go into Safe Mode with Networking and try to restore the file from Quarantine? Also some info from the Community:


    Daniel

    I have mine set to show all messages:

    2014-11-19_10-52-00.png
     
  4. kjdemuth

    kjdemuth Registered Member

    Joined:
    Jul 29, 2005
    Posts:
    2,974
    Location:
    Boston, MA
    Fleischmantv....the explorer memory bug.
     
  5. kdcdq

    kdcdq Registered Member

    Joined:
    Apr 19, 2002
    Posts:
    815
    Location:
    A Non-Sh*thole State
    These systems MAY have been set to "auto-quarantine" because I received NO messages from WSA about the missing msimg32.dll being moved to quarantine.

    Also, even in Safe Mode with Networking, WSA will not start or run, so I can NOT restore the file from quarantine. Darn hard to use any of the WSA's functions when it won't run.
     
  6. FleischmannTV

    FleischmannTV Registered Member

    Joined:
    Apr 7, 2013
    Posts:
    1,093
    Location:
    Germany
    Yes, that one.
     
  7. kjdemuth

    kjdemuth Registered Member

    Joined:
    Jul 29, 2005
    Posts:
    2,974
    Location:
    Boston, MA
    awesome. Is it really or just the one time you checked
     
  8. Triple Helix

    Triple Helix Specialist

    Joined:
    Nov 20, 2004
    Posts:
    13,275
    Location:
    Ontario, Canada
    Thank I would go into advance settings at uncheck the 2 boxes in the picture above and click save!

    Daniel
     
  9. kdcdq

    kdcdq Registered Member

    Joined:
    Apr 19, 2002
    Posts:
    815
    Location:
    A Non-Sh*thole State
    That is the FIRST thing I am gonna do if/when WSA is running again!!!! :blink:
     
  10. Triple Helix

    Triple Helix Specialist

    Joined:
    Nov 20, 2004
    Posts:
    13,275
    Location:
    Ontario, Canada
    Really on Win 8.1 x64 and Win 10 Preview x64? I will look at them within the next hour to confirm!

    Thanks,

    Daniel :)
     
  11. Triple Helix

    Triple Helix Specialist

    Joined:
    Nov 20, 2004
    Posts:
    13,275
    Location:
    Ontario, Canada
    Roy will get you sorted!

    Daniel
     
  12. kdcdq

    kdcdq Registered Member

    Joined:
    Apr 19, 2002
    Posts:
    815
    Location:
    A Non-Sh*thole State
    Joy, Joy, Joy!!! The system scan that Roy had me run successfully restored msimg32.dll to c:\windows\sysWOW64 and Webroot is running great!
    After checking the Webroot quarantine, the missing file msimg32.dll was, indeed, quarantined by WSA; the files were in the Windows 8.1 System32 and sysWOW64 subdirectories.

    I have, indeed, made the two changes that TH suggested to not allow WSA to automatically quarantine files in the future.
     
  13. Triple Helix

    Triple Helix Specialist

    Joined:
    Nov 20, 2004
    Posts:
    13,275
    Location:
    Ontario, Canada
    Awesome and fast as always!

    Thanks,

    Daniel :)
     
  14. Triple Helix

    Triple Helix Specialist

    Joined:
    Nov 20, 2004
    Posts:
    13,275
    Location:
    Ontario, Canada
    v8.0.5.109 is out to Beta testers!

    TH
     
  15. Rakanisheu

    Rakanisheu Guest

    Glad to hear your back in action. We are still looking into the original FP at the moment. Thanks for your patience -Roy
     
  16. kdcdq

    kdcdq Registered Member

    Joined:
    Apr 19, 2002
    Posts:
    815
    Location:
    A Non-Sh*thole State
    I had to uninstall WSA Complete on my three systems (and tell several customers to do the same thing) to eliminate IE crashes on Windows 8.1 after installing MS update KB3000850; Fleischmantv mentioned this bug earlier in this thread. Also, I would like to mention that the 2015 versions of AVG and Avira are running great after the install of the KB3000850 "Windows 8.1 refresh" with no issues seen on mine or my customer's machines.
     
  17. kjdemuth

    kjdemuth Registered Member

    Joined:
    Jul 29, 2005
    Posts:
    2,974
    Location:
    Boston, MA
    has the explorer high usage in win 8.1 Pro been fixed with this newest update?
     
  18. Dermot7

    Dermot7 Registered Member

    Joined:
    Dec 20, 2009
    Posts:
    3,430
    Location:
    Surrey, England.
  19. Triple Helix

    Triple Helix Specialist

    Joined:
    Nov 20, 2004
    Posts:
    13,275
    Location:
    Ontario, Canada
  20. FleischmannTV

    FleischmannTV Registered Member

    Joined:
    Apr 7, 2013
    Posts:
    1,093
    Location:
    Germany
    Yeah, I suspect it's because Microsoft has changed something on their end, as since of KB3000850 (at least I think it's because of this one) I can no longer reproduce this on my end.
     
  21. Triple Helix

    Triple Helix Specialist

    Joined:
    Nov 20, 2004
    Posts:
    13,275
    Location:
    Ontario, Canada
    I agree as I can confirm Explorer.exe is back to normal on Win 8.1 Pro x64 and was never a WSA problem but it continues on the latest Build of Win 10 Preview x64 though? Anyone else?

    TH
     
  22. Der Alte

    Der Alte Registered Member

    Joined:
    Apr 4, 2012
    Posts:
    125
  23. Triple Helix

    Triple Helix Specialist

    Joined:
    Nov 20, 2004
    Posts:
    13,275
    Location:
    Ontario, Canada
    It's hard to say as I don't get any detection at this time of post and I scanned it and it says Good: [G] c:\users\daniel\downloads\detekt.exe [MD5: AF1F99B161D7B7DBECEE2B8A25029F65] [Flags: 00000000.0]

    TH
     
  24. Der Alte

    Der Alte Registered Member

    Joined:
    Apr 4, 2012
    Posts:
    125
    I just tryed downloading again and this time it seems allright, and a scan with WSA shoved nothing – so i guess it`s good to go.

    Thank`s for looking into it :)
     
  25. Triple Helix

    Triple Helix Specialist

    Joined:
    Nov 20, 2004
    Posts:
    13,275
    Location:
    Ontario, Canada
    When you got it maybe the Cloud didn't know it and now it does!

    Cheers,

    Daniel :)
     
  1. This site uses cookies to help personalise content, tailor your experience and to keep you logged in if you register.
    By continuing to use this site, you are consenting to our use of cookies.