false positive for Java?

Discussion in 'ESET NOD32 Antivirus' started by jftuga, Mar 16, 2011.

Thread Status:
Not open for further replies.
  1. jftuga

    jftuga Registered Member

    Joined:
    Mar 9, 2007
    Posts:
    64
    Location:
    Athens, GA
    Is anyone else seeing a FP today for:

    rt.jar java/security/SecureClassLoader.class
    is infected with a variant of Java/Agent.AG trojan.

    Def version 5959, Nod32 version 2.

    Thanks,
    -John
     
  2. winchester73

    winchester73 Registered Member

    Joined:
    Feb 15, 2006
    Posts:
    29
    Location:
    Somewhere along Tobacco Road, North Carolina
    I got it with 5958 ...

    C:\Program Files\Java\jre6\lib\rt.jar » ZIP » java/security/SecureClassLoader.class - a variant of Java/Agent.AG trojan
     
  3. Geosoft

    Geosoft Registered Member

    Joined:
    Jan 7, 2009
    Posts:
    270
    Location:
    Toronto, Ontario, Canada
    Noticing the same
     
  4. DrewD

    DrewD Eset Staff Account

    Joined:
    Feb 19, 2010
    Posts:
    88
  5. janseid

    janseid Registered Member

    Joined:
    Aug 1, 2008
    Posts:
    1
    same for me
     
  6. DrewD

    DrewD Eset Staff Account

    Joined:
    Feb 19, 2010
    Posts:
    88
    This False Positive has been resolved in signature 5960 or higher.

    Thanks for your patience.
     
  7. stardreamer0228

    stardreamer0228 Registered Member

    Joined:
    Mar 16, 2011
    Posts:
    1
    I have received this error too, including some within QuickBooks components, in my daily virus scan. I have virus signature database # 5960. This is the first time I've gotten this warning. So, I'm assuming these are still false positives and that the issue isn't fixed in 5960.
     
  8. tony_m

    tony_m Eset Staff Account

    Joined:
    Nov 22, 2010
    Posts:
    239
    Hi stardreamer0228,

    Can you please confirm if you are still having any issues? Currently version of virus signature is 5966. The Java FP was fixed in version 5960, so it has to be something different.

    Please let us know.
     
  9. dsi-ap

    dsi-ap Registered Member

    Joined:
    Jul 4, 2005
    Posts:
    118
    Location:
    UK
    Hi

    Today we encountered the same issue as highlgited on this threat, in our case its Dell Open Manage web-end that been flagged up as running a infected jar file.

    Product version: 4.0.437
    Virust Signature: 5971

    Please advice, thank you.
     

    Attached Files:

    Last edited: Mar 21, 2011
  10. Marcos

    Marcos Eset Staff Account

    Joined:
    Nov 22, 2002
    Posts:
    14,374
    Please submit the file to ESET as per the instructions here to find out if it's an actual threat or FP.
     
Thread Status:
Not open for further replies.