 vrettePremium join:2000-07-22 Lombard, IL | New Avast flags TrueCrypt as a Trojan I just downloaded the new version of Avast Pro 4.8.1290, and as soon as I fired up TrueCrypt 6.0a, I got the following:
11/25/2008 7:06:19 PM SYSTEM 1336 Sign of "Win32:Swizzor-N [Trj]" has been found in "C:\Program Files (x86)\TrueCrypt\TrueCrypt.exe" file.
Anyone else getting this?
Thanks -- Chairman of the Bored... |
|
 als @verizon.net | Yes, I'm getting this too. I've been using Avast for a long time and last night it updated to a newer version. When I logged on this evening, it flagged my Truecrypt as Swizzor-N [Trj]. I'm thinking this has to be a mistake, but I would like the input of others. |
|
 ironwalker World RenownedPremium,MVM join:2001-08-31 Keansburg, NJ | reply to vrette False positive and will be fixed soon as they find out about it...just like every other anti virus software.....none is perfect. |
|
|
|
 | reply to vrette I just got the pop up of Swizzor-N as well using TrueCrypt 6.1a. |
|
 | reply to vrette I got this also with version 5.1a of truecrypt. I uninstalled truecrypt and installed the latest 6.1. Thus far, I am not getting the warning from Avast! |
|
 als @verizon.net | Same here. I was running 6.0a of TrueCrypt. I just downloaded 6.1 and Avast has no problem with it. Works for me. |
|
 vrettePremium join:2000-07-22 Lombard, IL | reply to vrette I've been very happy with Avast and realize that sh!t happens. I just wanted to make sure it just wasn't me. Thanks to all that responded. -- Chairman of the Bored... |
|
 | reply to vrette Not only did the new Avast detect my TrueCrypt 6.0a as "Win32:Swizzor-N", but a couple of other programs seem to have been infected with the same Trojan as well. The programs also "infected" are various Hewlett-Packard Games that came with my HP notebook that I've never run(WildTangent, Chuzzle Deluxe, Belle's Beauty Boutique, Mystery P.I. - The Lottery Ticket).
Also, another 4 files that were infected with the same trojan are located in the "c:\ProgramData\WildTangent" folder, one of which has the rather worrying name of "6E7DD52D-205E-4D6D-AF6A-0C34703DFA61-extr.exe", and the other two have similar names with different numbers but end in-extr.exe as well.
This all seems like pretty suspicious behaviour..maybe there is a real trojan in there somewhere.. |
|