  IGGY No Guru Just Here To Help Premium,MVM join:2001-03-30 Chatham, IL
1 edit | Kaspersky warns Screenshot Captor trojan
I just received an alert from my Kaspersky antivirus that Screenshot Captor includes Trojan program Backdoor.Win32.Delf.cue File: ScreenshotCaptor.exe/MouseHook.dll
Is this a false positive or a definite hit?
»www.donationcoder.com/Software/M···dex.html
»www.snapfiles.com/get/screenshotcator.html
In the past Kaspersky never alerted me to this. The file was a zip file from a DVD backup. I've used this program in the past to do screen captures. Looks as if that may have been a mistake. I'm not going to bother downloading a newer version of course if this alert is valid.
I decided to download the latest version and do a scan. That build gets a pass from Kaspersky. Not sure why it would alert on an older version. When it never gave pig squeal when it was installed a few years back. -- Test PC Security Cable Diagnostics Blog ZoneAlarm Help Vista x64 Comcast BroadVox Direct |
|
  NanDog The Pup Was Female, I'M Not Premium join:2003-12-28 Tacoma, WA
·Rainier Connect fr..
| Although I use KIS 7, I don't use Screenshot Captor. Have you posted the question on the Kaspersky forums? Link here if needed: »forum.kaspersky.com/ -- See ya across the Rainbow Bridge, my good and faithful friend! |
|
  Thug21 Just Chillin' Premium join:2005-08-21 | Have you submitted the file to Kaspersky so they can have a look at it and determine if its a false positive or not? |
|
  Name Game Premium join:2002-07-07 North Myrtle Beach, SC
| reply to IGGY And have you also tried to see what jotti or virus total has to say about the file.
»virusscan.jotti.org/
»www.virustotal.com/ -- Gladiator Security Forum »www.gladiator-antivirus.com/ Missing Kids »www.missingkids.com/ |
|
  Name Game Premium join:2002-07-07 North Myrtle Beach, SC
| reply to IGGY I can tell you that VB32 in 2006 during a AV comparative test by Andreas Clementi found in the screenshotcaptor suspected trojan:delf.51 with its heuristics and it was a false positive.
Now since you have Backdoor.Win32.Delf.cue when scanning it..I think you have KAV set to high heuristic and that type of name cue..is a false positive.
here is the pdf of that test.
»www.av-comparatives.org/seiten/e···rt12.pdf -- Gladiator Security Forum »www.gladiator-antivirus.com/ Missing Kids »www.missingkids.com/ |
|