Worm.Downloader.cl quarantined, remove?

Discussion in 'ewido anti-spyware forum' started by Caine, Dec 16, 2007.

Thread Status:
Not open for further replies.
  1. Caine

    Caine Registered Member

    Joined:
    Nov 11, 2005
    Posts:
    63
    Threat - Worm.Downloader.cl Action - Quarantine Risk - High

    Location - C:\Program Files\ESET\Setup\setup.exe

    Is this a false NOD32 file, or a false positive?

    What signs should I be looking for in the registry and what files/folders may it have created/modified to let me know it is this worm?
     
  2. ASpace

    ASpace Guest

    :D

    Of course , it is false positive alarm and the file should be a legitimate one . Ignore the alarm and report it to Grisoft technicalsupport@grisoft.com
     
  3. Caine

    Caine Registered Member

    Joined:
    Nov 11, 2005
    Posts:
    63
    Restored and reported! :)

    I was 99% sure it was false but just needed some reassurance. Thanks for the help and the contact address HiTech. And a merry christmas to you.
     
  4. karl.ewido

    karl.ewido former ewido team

    Joined:
    Dec 9, 2005
    Posts:
    236
    Location:
    Germany
  5. karl.ewido

    karl.ewido former ewido team

    Joined:
    Dec 9, 2005
    Posts:
    236
    Location:
    Germany
    This false detection of the NOD32 file will be fixed with the next new Signature Update.

    We are sorry for the inconvenience.
     
  6. Caine

    Caine Registered Member

    Joined:
    Nov 11, 2005
    Posts:
    63
    The detection is fixed now.

    Thank you and a happy christmas to the ewido team. :D
     
Thread Status:
Not open for further replies.