Since a few days NOD doesn't let me copy the file CMDOW.exe any longer. It seems that eset added this file as Win32/CMDOW.143 How can I fix this, or exclude this file since excluding it at AMON doesn't work?! Strange that eset added a perfectly legal file to their database
I would suggest it would be detected as a Tool or Potentially Dangerous Application (I see now that it is detected as 'Win32/CMDOW.143 application'), either of which would be correct based on the description here. If you wish to add an exclusion, you may need to exclude both the long full path and short full path since the AMON exclusions compare explicitly to the call. It does look like it could be a very useful admin utility though. Cheers
For example... "long" path: C:\Documents and Settings\user\My Documents\cmdow.exe "short" path: C:\DOCUME~1\user\MYDOCU~1\cmdow.exe . If you are not sure how to get the "short" version, go to the Command Prompt and use the dir /x command.