<?xml version="1.0" encoding="utf-8"?>
<feed xmlns="http://www.w3.org/2005/Atom">
	<title type="html"><![CDATA[DriverPacks.net Forum - [solved] False Positive (trojan horse) in MUTE.EXE (DPbase 7.05.2)]]></title>
	<link rel="self" href="http://forum.driverpacks.net/extern.php?action=feed&amp;tid=2180&amp;type=atom"/>
	<updated>2007-11-25T20:39:36Z</updated>
	<generator>PunBB</generator>
	<id>http://forum.driverpacks.net/viewtopic.php?id=2180</id>
		<entry>
			<title type="html"><![CDATA[Re: [solved] False Positive (trojan horse) in MUTE.EXE (DPbase 7.05.2)]]></title>
			<link rel="alternate" href="http://forum.driverpacks.net/viewtopic.php?pid=15806#p15806"/>
			<content type="html"><![CDATA[<p>McAfee isn&#039;t doing as hot as it used to.&nbsp; It&#039;s sub-Norton at the moment (just barely - there&#039;s almost no difference).</p><p>NOD32 &gt; Kaspersky &gt; Avast &gt; Norton &gt; McAfee &gt; Trend Micro &gt; OneCare &gt; AVG</p>]]></content>
			<author>
				<name><![CDATA[TigerC10]]></name>
				<uri>http://forum.driverpacks.net/profile.php?id=2350</uri>
			</author>
			<updated>2007-11-25T20:39:36Z</updated>
			<id>http://forum.driverpacks.net/viewtopic.php?pid=15806#p15806</id>
		</entry>
		<entry>
			<title type="html"><![CDATA[Re: [solved] False Positive (trojan horse) in MUTE.EXE (DPbase 7.05.2)]]></title>
			<link rel="alternate" href="http://forum.driverpacks.net/viewtopic.php?pid=15803#p15803"/>
			<content type="html"><![CDATA[<p>or check with your broadband provider.&nbsp; Often they have special subscriber deals (some even free) for McAfee antivirus.</p>]]></content>
			<author>
				<name><![CDATA[newsposter]]></name>
				<uri>http://forum.driverpacks.net/profile.php?id=2993</uri>
			</author>
			<updated>2007-11-25T20:00:44Z</updated>
			<id>http://forum.driverpacks.net/viewtopic.php?pid=15803#p15803</id>
		</entry>
		<entry>
			<title type="html"><![CDATA[Re: [solved] False Positive (trojan horse) in MUTE.EXE (DPbase 7.05.2)]]></title>
			<link rel="alternate" href="http://forum.driverpacks.net/viewtopic.php?pid=15802#p15802"/>
			<content type="html"><![CDATA[<p>AVG Antivirus doesn&#039;t catch anything.&nbsp; Rather, it catches so few that I&#039;ve decided it&#039;s a gateway virus.&nbsp; It lulls the user into a false sense of security and lets all the really bad viruses in.</p><p>If you want a good free antivirus - go with Avast Antivirus.&nbsp; Their home edition is free, all you have to do is request a home key from their website and they give it to you.&nbsp; You have to renew that free home key every year, but it&#039;s at least a good antivirus.</p>]]></content>
			<author>
				<name><![CDATA[TigerC10]]></name>
				<uri>http://forum.driverpacks.net/profile.php?id=2350</uri>
			</author>
			<updated>2007-11-25T18:27:56Z</updated>
			<id>http://forum.driverpacks.net/viewtopic.php?pid=15802#p15802</id>
		</entry>
		<entry>
			<title type="html"><![CDATA[Re: [solved] False Positive (trojan horse) in MUTE.EXE (DPbase 7.05.2)]]></title>
			<link rel="alternate" href="http://forum.driverpacks.net/viewtopic.php?pid=15799#p15799"/>
			<content type="html"><![CDATA[<p>AVG Free v7.5 Did indeed report it as a trojan...</p><p>But it&#039;s not it disables the beep for the driversigning popup window (very annoying if KTD is on.)</p><p>Either create an exception or report it as a false positive to AVG </p><p>you can delete it if you want its not mission critical</p>]]></content>
			<author>
				<name><![CDATA[OverFlow]]></name>
				<uri>http://forum.driverpacks.net/profile.php?id=1097</uri>
			</author>
			<updated>2007-11-25T17:11:20Z</updated>
			<id>http://forum.driverpacks.net/viewtopic.php?pid=15799#p15799</id>
		</entry>
		<entry>
			<title type="html"><![CDATA[Re: [solved] False Positive (trojan horse) in MUTE.EXE (DPbase 7.05.2)]]></title>
			<link rel="alternate" href="http://forum.driverpacks.net/viewtopic.php?pid=15798#p15798"/>
			<content type="html"><![CDATA[<p>It&#039;s because we use AutoIt. AutoIt can easily be used to create malicious scripts. Unfortunately, pretty much every anti-virus app has once flagged *any* AutoIt executable as a virus because of that. Simply because their algorithms suck that bad.</p><p>Not much we can do about it.</p>]]></content>
			<author>
				<name><![CDATA[Wim Leers]]></name>
				<uri>http://forum.driverpacks.net/profile.php?id=2</uri>
			</author>
			<updated>2007-11-25T16:27:48Z</updated>
			<id>http://forum.driverpacks.net/viewtopic.php?pid=15798#p15798</id>
		</entry>
		<entry>
			<title type="html"><![CDATA[Re: [solved] False Positive (trojan horse) in MUTE.EXE (DPbase 7.05.2)]]></title>
			<link rel="alternate" href="http://forum.driverpacks.net/viewtopic.php?pid=15797#p15797"/>
			<content type="html"><![CDATA[<p>I just downloaded the DP Base package again (same MD5 hash), decompressed ALL the files then scanned the lot with Symantec Endpoint Protection v11 (supersedes SAV and SCS) and all files were clean.</p><p>Then to be safe, scanned the files again in VirtualPC using ESET Smart Security v3, also clean.</p><p>False positive.</p>]]></content>
			<author>
				<name><![CDATA[mr_smartepants]]></name>
				<uri>http://forum.driverpacks.net/profile.php?id=1602</uri>
			</author>
			<updated>2007-11-25T16:16:25Z</updated>
			<id>http://forum.driverpacks.net/viewtopic.php?pid=15797#p15797</id>
		</entry>
		<entry>
			<title type="html"><![CDATA[Re: [solved] False Positive (trojan horse) in MUTE.EXE (DPbase 7.05.2)]]></title>
			<link rel="alternate" href="http://forum.driverpacks.net/viewtopic.php?pid=15796#p15796"/>
			<content type="html"><![CDATA[<p>&quot;DPs_BASE_7052.exe&quot;:&nbsp; &nbsp;804c193146f3fe37334bc2afd79c11d6, with md5deep</p><p>Everything the latest, dpbase and driver packs, and also AVG. You must extract the contents of the 7-zipped file, otherwise the virus scan will fail.</p>]]></content>
			<author>
				<name><![CDATA[pillerstol]]></name>
				<uri>http://forum.driverpacks.net/profile.php?id=3077</uri>
			</author>
			<updated>2007-11-25T14:18:24Z</updated>
			<id>http://forum.driverpacks.net/viewtopic.php?pid=15796#p15796</id>
		</entry>
		<entry>
			<title type="html"><![CDATA[Re: [solved] False Positive (trojan horse) in MUTE.EXE (DPbase 7.05.2)]]></title>
			<link rel="alternate" href="http://forum.driverpacks.net/viewtopic.php?pid=15795#p15795"/>
			<content type="html"><![CDATA[<p>that file hasnt been touched in 6 months (we log)</p><p>its a false positve did you verify the hash on your download ?</p><p>i have avg on a UBCD4win disk im loading it now... which engine and definition dates?</p>]]></content>
			<author>
				<name><![CDATA[OverFlow]]></name>
				<uri>http://forum.driverpacks.net/profile.php?id=1097</uri>
			</author>
			<updated>2007-11-25T14:14:10Z</updated>
			<id>http://forum.driverpacks.net/viewtopic.php?pid=15795#p15795</id>
		</entry>
		<entry>
			<title type="html"><![CDATA[Re: [solved] False Positive (trojan horse) in MUTE.EXE (DPbase 7.05.2)]]></title>
			<link rel="alternate" href="http://forum.driverpacks.net/viewtopic.php?pid=15794#p15794"/>
			<content type="html"><![CDATA[<p>If you extract &quot;\DPbase\bin\DPsFnshr.7z&quot;, to a folder and enter that directory, AVG finds a trojan horse in &quot;mute.exe&quot;. Tried it 3 times</p>]]></content>
			<author>
				<name><![CDATA[pillerstol]]></name>
				<uri>http://forum.driverpacks.net/profile.php?id=3077</uri>
			</author>
			<updated>2007-11-25T14:13:04Z</updated>
			<id>http://forum.driverpacks.net/viewtopic.php?pid=15794#p15794</id>
		</entry>
		<entry>
			<title type="html"><![CDATA[Re: [solved] False Positive (trojan horse) in MUTE.EXE (DPbase 7.05.2)]]></title>
			<link rel="alternate" href="http://forum.driverpacks.net/viewtopic.php?pid=15793#p15793"/>
			<content type="html"><![CDATA[<p>from a clean system redownload base from us and verify the hash... then scan <br />(not the same machine as before unless you format)</p><p>thousands of other users have not reported anything... </p><p>what virus scanner / version / definition dates supplied this positive... <br />what is the SARC or other description of this payload</p>]]></content>
			<author>
				<name><![CDATA[OverFlow]]></name>
				<uri>http://forum.driverpacks.net/profile.php?id=1097</uri>
			</author>
			<updated>2007-11-25T14:08:23Z</updated>
			<id>http://forum.driverpacks.net/viewtopic.php?pid=15793#p15793</id>
		</entry>
		<entry>
			<title type="html"><![CDATA[[solved] False Positive (trojan horse) in MUTE.EXE (DPbase 7.05.2)]]></title>
			<link rel="alternate" href="http://forum.driverpacks.net/viewtopic.php?pid=15792#p15792"/>
			<content type="html"><![CDATA[<p>In this package DPsFnshr.7z, &quot;mute.exe&quot; contains a troja horse. It changes the homepage in internet explorer.. to something else. I don&#039;t know to where, but I wouldn&#039;t visit it with my computer............</p><p>Version: 7.05.2</p>]]></content>
			<author>
				<name><![CDATA[pillerstol]]></name>
				<uri>http://forum.driverpacks.net/profile.php?id=3077</uri>
			</author>
			<updated>2007-11-25T13:58:46Z</updated>
			<id>http://forum.driverpacks.net/viewtopic.php?pid=15792#p15792</id>
		</entry>
</feed>
