Results 1 to 4 of 4

Thread: false positive spyware hit msvcr80.dll?

  1. #1
    vulcanusa Guest

    Default false positive spyware hit msvcr80.dll?

    ZoneAlarm Security Suite version 8.0.298.035
    TrueVector security engine version 8.0.298.035
    Driver version 8.0.298.035
    Anti-virus engine version 6.0.2.678, DAT file version 997853591
    Anti-spyware engine version 5.0.209.0, DAT file version 01.200912.6975
    AntiSpam version 6.0.0.1429

    I have anti-virus, anti-spyware settings set to update every 3 hours, however, I only run a scan 2 or 3 times per week. After an update and scan yesterday I was presented with a spyware detection citing file:

    C:\WINDOWS\system32\ZoneLabs\avsys\mscvr80.dll

    That file had the same modified date as other files in the directory (i.e. 3/31/2009 5:18 PM).

    The trojan noted is: Win32.Worm.IrcBot.60416.6

    I have quarantined the file. ZA required me to reboot. ZA seems to be working okay, but I have not - of course - exercised every feature. Could I please obtain confirmation whether this hit is indeed a false positive? There is another recent thread entitled: "hoax or threat". The guru responding seems to indicate this is a false positive, but I would like to receive clear and unambiguous confirmation that it is indeed a false positive. And if it is a false positive, when can we expect spyware definitions to be updated to eliminate this false positive?

    Thanks.

  2. #2
    Join Date
    Dec 2002
    Location
    San Carlos, California
    Posts
    1,636

    Default Re: false positive spyware hit msvcr80.dll?

    8.x is not supported.

    Please upgrade to 9.1.008.000 then try scanning and if you still have a false positive let us know then.


    Forum Moderator
    Click here for ZA Support
    Monday-Saturday__ 6am to 10pm Central time
    Closed Sundays and Holidays

  3. #3
    spurkza Guest

    Default Default false positive spyware hit msvcr80.dll?

    I am a second user similar to vulcanusa, who has this same issue. Hope there is a better response to this soon.

    vulcanusa vulcanusa is offline
    Junior Member

    Join Date: Dec 2009
    Posts: 1
    Default false positive spyware hit msvcr80.dll?
    ZoneAlarm Security Suite version 8.0.298.035
    TrueVector security engine version 8.0.298.035
    Driver version 8.0.298.035
    Anti-virus engine version 6.0.2.678, DAT file version 997853591
    Anti-spyware engine version 5.0.209.0, DAT file version 01.200912.6975
    AntiSpam version 6.0.0.1429

    I have anti-virus, anti-spyware settings set to update every 3 hours, however, I only run a scan 2 or 3 times per week. After an update and scan yesterday I was presented with a spyware detection citing file:

    C:\WINDOWS\system32\ZoneLabs\avsys\mscvr80.dll

    That file had the same modified date as other files in the directory (i.e. 3/31/2009 5:18 PM).

    The trojan noted is: Win32.Worm.IrcBot.60416.6

    I have quarantined the file. ZA required me to reboot. ZA seems to be working okay, but I have not - of course - exercised every feature. Could I please obtain confirmation whether this hit is indeed a false positive? There is another recent thread entitled: "hoax or threat". The guru responding seems to indicate this is a false positive, but I would like to receive clear and unambiguous confirmation that it is indeed a false positive. And if it is a false positive, when can we expect spyware definitions to be updated to eliminate this false positive?

    Thanks.
    vulcanusa
    View Public Profile
    Send a private message to vulcanusa
    Find all posts by vulcanusa
    #2
    Old Today, 07:02 PM
    Forum-Moderator Forum-Moderator is offline

    Forum Moderator

    Join Date: Dec 2002
    Location: Redwood City, California, S.F. Bay Area
    Posts: 179
    Default Re: false positive spyware hit msvcr80.dll?
    8.x is not supported.

    Please upgrade to 9.1.008.000 then try scanning and if you still have a false positive let us know then.


    Forum Moderator

  4. #4
    Join Date
    Nov 2004
    Location
    localhost
    Posts
    17,286

    Default Re: Default false positive spyware hit msvcr80.dll?

    Quote Originally Posted by spurkza View Post
    I would like to receive clear and unambiguous confirmation that it is indeed a false positive. And if it is a false positive, when can we expect spyware definitions to be updated to eliminate this false positive?
    Yes, it is a false positive. No, updates are unlikely since definitions have been replaced totally in ZA 9. Please update as already suggested. All workaround possible have already been detailed here

    Thanks,
    Fax
    Last edited by fax; December 3rd, 2009 at 02:43 AM.

    Click here for ZA Support
    Monday-Saturday 6am to 10pm Central time
    Closed Sundays and Holidays

Thread Information

Users Browsing this Thread

There are currently 1 users browsing this thread. (0 members and 1 guests)

Bookmarks

Posting Permissions

  • You may not post new threads
  • You may not post replies
  • You may not post attachments
  • You may not edit your posts
  •