ZoneAlarm Security Suite version 8.0.298.035
TrueVector security engine version 8.0.298.035
Driver version 8.0.298.035
Anti-virus engine version 184.108.40.2068, DAT file version 997853591
Anti-spyware engine version 220.127.116.11, DAT file version 01.200912.6975
AntiSpam version 18.104.22.1689
I have anti-virus, anti-spyware settings set to update every 3 hours, however, I only run a scan 2 or 3 times per week. After an update and scan yesterday I was presented with a spyware detection citing file:
That file had the same modified date as other files in the directory (i.e. 3/31/2009 5:18 PM).
The trojan noted is: Win32.Worm.IrcBot.60416.6
I have quarantined the file. ZA required me to reboot. ZA seems to be working okay, but I have not - of course - exercised every feature. Could I please obtain confirmation whether this hit is indeed a false positive? There is another recent thread entitled: "hoax or threat". The guru responding seems to indicate this is a false positive, but I would like to receive clear and unambiguous confirmation that it is indeed a false positive. And if it is a false positive, when can we expect spyware definitions to be updated to eliminate this false positive?