 siliconman01 Premium join:2005-05-08 Saint Albans, WV
1 edit | NIS 2008 - Another False Positive- Weather Pulse V2.05 B36
NIS 2008 has started detecting program Weather Pulse as Trojan.AdClicker as 21-Nov-07. I've been running Weather Pulse for over 2 years and it has never been detected by any security program as a security risk. Weather Pulse 2.05, Build 36 on Vista Business
»www.tropicdesigns.net
Note: It does NOT detect WP V2.10 Beta 4 as Trojan.AdClicker. |
|
  amysheehan Premium,VIP,MVM join:1999-12-21 Huntington Beach, CA
·RoadRunner Cable
3 edits |  All's well so far |
I downloaded the file and submitted to VirusTotal:
Only -- Rising 20.19.20.00 2007.11.21 Trojan.Spy.Win32.Delf.a flagged the install file.
I ran the setup program and so far no alerts.
EDIT TO ADD Ran full system scan and no problems.
Could you provide the log details?? DSLR Phishtracker |
|
 siliconman01 Premium join:2005-05-08 Saint Albans, WV
| Risk category: Virus Overall Risk Impact: High Performance: High Privacy: High Removal: High Stealth: High Click for more information about this risk : Trojan.Adclicker Action taken: Process Termination Required Affected Areas: Files & Directories c:\program files\weather pulse\weatherpulse.exe Registry Entries HKEY_USERS\S-1-5-21-1191123195-845806041-362966033-500\Software\Microsoft\Windows\CurrentVersion\Run->Weather Pulse Processes & Start-Up Items c:\program files\weather pulse\weatherpulse.exe Network & Browser Items Browser Cache |
|
 siliconman01 Premium join:2005-05-08 Saint Albans, WV
1 edit | reply to siliconman01 When I attempted to Restore the quarantined file, NIS hung for over 5 minutes and the program was not restored correctly. I attempted to re-install it, but NIS 2008 kicked it out during the installation at Trojan.Adclicker.
I installed V2.10 Beta4 with no problems. |
|
 roddy32
join:2005-12-10 Augusta, KS
| Same problem here also. As soon as NAV did today's weekly update I got an alert. I had to use the task manager to end BOTH weatherpulse and NAV because the alert would not go away. I uninstalled weatherpulse and had to reboot because the alert would still not let me do anything.
I just did a TrojanHunter scan which is done. It is clean but I had already uninstalled the offending program program. I am scanning with NAV now. I am sure this is a false positive, I have had this program on the computer for about 3 years. My version of NAV is older but the defs are the same. |
|
  sashwa Pixie Cat Crunchin' n Foldin' Premium,Mod join:2001-01-29 Alcatraz clubs: 
·Comcast
·Alameda Power & Te..
Host: Broadband Modem (H.. MSN DSL Extreme Windstream Southeast Asian Br..
| reply to siliconman01 They also have a thread about this at the Tropic Designs forums:
»tropicdesigns.net/modules.php?na···c&t=1069
It's not just NIS 2008 that this is happening with. I'm using NAV2006 and just got hit with it this evening. It completely disabled WeatherPulse. I was able to download and install the 2.10 Beta 4 with no problems and no hits.
I tried to submit the file to Symantec but I wasn't able to. The submit button was greyed out. -- TH ~ NE ~ EPN ~ NC ~ TD |
|
 zog_2005
join:2004-10-25 Santa Monica, CA 1 edit | reply to siliconman01 I just sent this link to the guys on the Symantec Response team. They will start looking at it right away. |
|
 zog_2005
join:2004-10-25 Santa Monica, CA | reply to siliconman01 Just heard back.. fix will be out tomorrow. |
|
  amysheehan Premium,VIP,MVM join:1999-12-21 Huntington Beach, CA
·RoadRunner Cable
| reply to zog_2005 Thanks for the update !!!
said by zog_2005 :I just sent this link to the guys on the Symantec Response team. They will start looking at it right away. Thanks zog_2005 !!!
-amy-
 -- DSLR Phishtracker |
|
 roddy32
join:2005-12-10 Augusta, KS
| said by zog_2005 :Just heard back.. fix will be out tomorrow. Thanks zog_2005  |
|
 BTWUR
join:2004-04-07 Blue Ridge, VA | reply to siliconman01 Re: NIS 2008 - Another False Positive- Weather Pulse V2.05 B36
Sorry I posted in the wrong thread Amy. It's been a long time since I stopped by. =)
I reported this to Symantec too. |
|
 BTWUR
join:2004-04-07 Blue Ridge, VA | This false positive issue with Weather Pulse V2.05 B36 has been resolved.  |
|