Possible false positive

Discussion in 'ewido anti-spyware forum' started by Die Hard, Feb 27, 2006.

Thread Status:
Not open for further replies.
  1. Die Hard

    Die Hard Registered Member

    Joined:
    Feb 27, 2006
    Posts:
    5
    Location:
    Sweden
    Pete :)

    I have a user that has this in the report:
    HKLM\SYSTEM\CurrentControlSet\Enum\USB\Vid_0781&Pid_5150\SNDK1EDA7502DC706504\\Service
    No action taken.

    Why is Ewido detecting this, as far as I can see it´s not malicious ?
    It´s related to a mass-storage device via the USB

    Die Hard :)
     
    Last edited by a moderator: Mar 2, 2006
  2. peter.ewido

    peter.ewido former ewido team

    Joined:
    Nov 10, 2003
    Posts:
    737
    Location:
    Brno, Czech Republic
    Is the user running the latest version of ewido? I'm pretty sure that this false positive has been fixed a long time ago :)
     
  3. Die Hard

    Die Hard Registered Member

    Joined:
    Feb 27, 2006
    Posts:
    5
    Location:
    Sweden
    Thx Pete :)

    The user had recently downloaded the program. I´m not sure from where, though.
    I asked her about the version of the program, and the # of the detection file.

    Die Hard :)
     
  4. Die Hard

    Die Hard Registered Member

    Joined:
    Feb 27, 2006
    Posts:
    5
    Location:
    Sweden
    Pete :)

    This is the reply from the user:
    I asked for the full report and will post it asap.

    Die Hard :)
     
  5. Die Hard

    Die Hard Registered Member

    Joined:
    Feb 27, 2006
    Posts:
    5
    Location:
    Sweden
    Ok, here´s the report. This entry is all that´s found:

    Die Hard :)
     
  6. Die Hard

    Die Hard Registered Member

    Joined:
    Feb 27, 2006
    Posts:
    5
    Location:
    Sweden
    A polite bump :)
     
Thread Status:
Not open for further replies.