PSPX7_Cleanup_v1.0.zip contains a Trojan
Moderator: Kathy_9
PSPX7_Cleanup_v1.0.zip contains a Trojan
Avast claims this file contains Win32:Malware-gen and I can't download an run it.
I have a failed install of PSP X7 Ultimate that I need to clean so I can reinstall.
When I run the installer, it extracts and as soon as I see the "Initializing the Installation Wizard" screen I get:
"your system has not been modified. to complete installation at another time, please run setup again."
OS: Windows 10 64 bit
What can I do?
Thanks
I have a failed install of PSP X7 Ultimate that I need to clean so I can reinstall.
When I run the installer, it extracts and as soon as I see the "Initializing the Installation Wizard" screen I get:
"your system has not been modified. to complete installation at another time, please run setup again."
OS: Windows 10 64 bit
What can I do?
Thanks
-
JoeB
- Posts: 2778
- Joined: Fri Mar 28, 2008 10:04 pm
- System_Drive: C
- 32bit or 64bit: 64 Bit
- motherboard: LENOVO 4524PE4 ThinkCentre M91p
- processor: 3.10 gigahertz Intel Quad Core i5-2400
- ram: 8 GB
- Hard_Drive_Capacity: 4.6 TB
- Corel programs: PSP 9, X7 to 2019, 32 & 64-bit
- Location: Canada
Re: PSPX7_Cleanup_v1.0.zip contains a Trojan
Temporarily disable your anti-virus before running the cleanup tool. The cleanup tool will remove some registry entries related to PSP and because it will be making those changes to the registry your anti-virus thinks it is malware. You can start your anti-virus again after you have done the cleanup.
Regards,
JoeB
Using PSP 2019 64bit
JoeB
Using PSP 2019 64bit
Re: PSPX7_Cleanup_v1.0.zip contains a Trojan
Thanks for the thought... but I downloaded the others to see if that might be the case, and they are came up clean. As well, the PSP7 zip has a different internal structure than the others. I'm guessing it's hacked.
-
JoeB
- Posts: 2778
- Joined: Fri Mar 28, 2008 10:04 pm
- System_Drive: C
- 32bit or 64bit: 64 Bit
- motherboard: LENOVO 4524PE4 ThinkCentre M91p
- processor: 3.10 gigahertz Intel Quad Core i5-2400
- ram: 8 GB
- Hard_Drive_Capacity: 4.6 TB
- Corel programs: PSP 9, X7 to 2019, 32 & 64-bit
- Location: Canada
Re: PSPX7_Cleanup_v1.0.zip contains a Trojan
If it came from the Corel link than I doubt that it was hacked, but it could have been corrupted during the download. But glad to see that you got it sorted.r_jeff_m wrote:Thanks for the thought... but I downloaded the others to see if that might be the case, and they are came up clean. As well, the PSP7 zip has a different internal structure than the others. I'm guessing it's hacked.
Regards,
JoeB
Using PSP 2019 64bit
JoeB
Using PSP 2019 64bit
Re: PSPX7_Cleanup_v1.0.zip contains a Trojan
Nope.... Not sorted... running PSPX7_Cleanup_v1.0.zip through https://www.virustotal.com results in virus hits as well
so does https://www.metascan-online.com
I believe it has a trojan
VirusTotal
SHA256: e70109807359c2d0a8e761efe0767899481a2f4976bbe5c6b7059bc751b85c77
File name: PSPX7_Cleanup_v1.0.zip
Detection ratio: 10 / 56
Analysis date: 2015-09-23 12:31:21 UTC ( 0 minutes ago )
0 0
Analysis
File detail
Additional information
Comments
Votes
Antivirus Result Update
AVware Trojan.Win32.Generic!BT 20150923
Avast Win32:Malware-gen 20150923
DrWeb Trojan.KillFiles.19713 20150923
Ikarus Trojan.Agent 20150923
McAfee Artemis!5D7E364024AD 20150923
McAfee-GW-Edition BehavesLike.Downloader.gc 20150923
NANO-Antivirus Trojan.Win32.KillFiles.dmpoga 20150923
Qihoo-360 HEUR/QVM11.1.Malware.Gen 20150923
TheHacker Trojan/Cosmu.bizd 20150922
VIPRE Trojan.Win32.Generic!BT 20150923
From https://www.metascan-online.com
DrWebGateway
2387 ms
Sep 22 2015 (More than 13 hours ago)
Trojan.KillFiles.19713
Ikarus
203 ms
Sep 22 2015 (More than 13 hours ago)
Trojan.Agent
McAfee-Gateway
1903 ms
Sep 22 2015 (More than 13 hours ago)
BehavesLike.Win32.Trojan.gc
NANO
297 ms
Sep 22 2015 (More than 13 hours ago)
Trojan.Win32.KillFiles.dmpoga
STOPzilla
5772 ms
Sep 10 2015 (More than 13 days ago)
Trojan.Win32.Mal.Gen.42112
ThreatTrack
967 ms
Sep 22 2015 (More than 13 hours ago)
Trojan.Win32.Generic!BT
Xvirus
4072 ms
Sep 21 2015 (More than 2 days ago)
Suspicious:NewThreat
so does https://www.metascan-online.com
I believe it has a trojan
VirusTotal
SHA256: e70109807359c2d0a8e761efe0767899481a2f4976bbe5c6b7059bc751b85c77
File name: PSPX7_Cleanup_v1.0.zip
Detection ratio: 10 / 56
Analysis date: 2015-09-23 12:31:21 UTC ( 0 minutes ago )
0 0
Analysis
File detail
Additional information
Comments
Votes
Antivirus Result Update
AVware Trojan.Win32.Generic!BT 20150923
Avast Win32:Malware-gen 20150923
DrWeb Trojan.KillFiles.19713 20150923
Ikarus Trojan.Agent 20150923
McAfee Artemis!5D7E364024AD 20150923
McAfee-GW-Edition BehavesLike.Downloader.gc 20150923
NANO-Antivirus Trojan.Win32.KillFiles.dmpoga 20150923
Qihoo-360 HEUR/QVM11.1.Malware.Gen 20150923
TheHacker Trojan/Cosmu.bizd 20150922
VIPRE Trojan.Win32.Generic!BT 20150923
From https://www.metascan-online.com
DrWebGateway
2387 ms
Sep 22 2015 (More than 13 hours ago)
Trojan.KillFiles.19713
Ikarus
203 ms
Sep 22 2015 (More than 13 hours ago)
Trojan.Agent
McAfee-Gateway
1903 ms
Sep 22 2015 (More than 13 hours ago)
BehavesLike.Win32.Trojan.gc
NANO
297 ms
Sep 22 2015 (More than 13 hours ago)
Trojan.Win32.KillFiles.dmpoga
STOPzilla
5772 ms
Sep 10 2015 (More than 13 days ago)
Trojan.Win32.Mal.Gen.42112
ThreatTrack
967 ms
Sep 22 2015 (More than 13 hours ago)
Trojan.Win32.Generic!BT
Xvirus
4072 ms
Sep 21 2015 (More than 2 days ago)
Suspicious:NewThreat
-
LeviFiction
- Advisor
- Posts: 6831
- Joined: Thu Oct 02, 2008 1:07 pm
- System_Drive: C
- 32bit or 64bit: 64 Bit
- motherboard: Alienware M17xR4
- processor: Intel Core i7-3630QM CPU - 2_40GH
- ram: 6 GB
- Video Card: NVIDIA GeForce GTX 660M
- sound_card: Sound Blaster Recon3Di
- Hard_Drive_Capacity: 500GB
- Corel programs: PSP: 8-2023
- Location: USA
Re: PSPX7_Cleanup_v1.0.zip contains a Trojan
It keeps showing up as a "generic threat" in all of those. This isn't the first time Anti-virus has flagged something of Corel's. You need to keep in mind that Anti-Virus doesn't match whole viruses, it matches virus patterns and similar code through heuristics. False positive are possible. And not all anti-virus will see the same thing. As shown in your scan.
If you don't trust it, send it to Avast for testing. Often times after a file has been sent to Avast as a false-positive an exception is made for that program and Avast doesn't complain about it any longer.
If you don't trust it, send it to Avast for testing. Often times after a file has been sent to Avast as a false-positive an exception is made for that program and Avast doesn't complain about it any longer.
https://levifiction.wordpress.com/
-
skier-hughes
- Microsoft MVP
- Posts: 2659
- Joined: Thu Jul 21, 2005 10:09 am
- System_Drive: C
- 32bit or 64bit: 64 Bit
- motherboard: gigabyte
- processor: Intel core 2 6420 2.13GHz
- ram: 4GB
- Video Card: NVidia GForce 8500GT
- sound_card: onboard
- Hard_Drive_Capacity: 36GB 2TB
- Location: UK
Re: PSPX7_Cleanup_v1.0.zip contains a Trojan
As Corel rarely if ever visit and read these forums, it is best to use the Facebook page, which they do monitor, to alert them, so they can look into it and see at the same time as Avast do.
Re: PSPX7_Cleanup_v1.0.zip contains a Trojan
Well, I'll send it off to avast. Odd thing is though, the other files do NOT cause the antivirus programs to react.
-
trueblue
- Moderator
- Posts: 1563
- Joined: Sat Dec 30, 2006 1:43 am
- System_Drive: C
- 32bit or 64bit: 64 Bit
- motherboard: ASUS Z97M Plus
- processor: Intel Core i7-4790 CPU 3.60 GHz
- ram: 12GB
- Video Card: NVIDIA GeForce GTX 750
- sound_card: NVIDIA High Def Audio Realtek High Def
- Hard_Drive_Capacity: 1.740GB
- Monitor/Display Make & Model: Benq E2420HD 24" wide x 2 monitors
- Corel programs: PSPX8-VideoStudio-AfterShot
- Location: Australia
- Contact:
Re: PSPX7_Cleanup_v1.0.zip contains a Trojan
Even though it is showing as having a virus it does not contain a trojan or virus. As a previous poster suggested to disable your anti-virus.
~~~~Maureen~~~~
Tutorial Writer for PaintShop Pro
Creative-Designs
Free! PaintShop Pro Tutorials
PaintShop Pro - VideoStudio Pro - AfterShot - CorelDraw - Painter
Tutorial Writer for PaintShop Pro
Creative-Designs
Free! PaintShop Pro Tutorials
PaintShop Pro - VideoStudio Pro - AfterShot - CorelDraw - Painter
Re: PSPX7_Cleanup_v1.0.zip contains a Trojan
Avast agrees that it was a false positive.
-
JoeB
- Posts: 2778
- Joined: Fri Mar 28, 2008 10:04 pm
- System_Drive: C
- 32bit or 64bit: 64 Bit
- motherboard: LENOVO 4524PE4 ThinkCentre M91p
- processor: 3.10 gigahertz Intel Quad Core i5-2400
- ram: 8 GB
- Hard_Drive_Capacity: 4.6 TB
- Corel programs: PSP 9, X7 to 2019, 32 & 64-bit
- Location: Canada
Re: PSPX7_Cleanup_v1.0.zip contains a Trojan
I say again that the reason for the false positive is that the tool deletes several registry entries. Most anti-virus software will raise a warning when software appears to make registry changes like that unless it is a known program that the anti-virus is programmed to ignore. When anti-virus software first started to become widespread they often didn't recognize even some well known legitimate programs and the installer would warn that you should turn off your anti-virus before installation or the installation might fail - and it often would. That problem is very much less prevalent today but still an issue with some things like cleanup tools.r_jeff_m wrote:Avast agrees that it was a false positive.
Regards,
JoeB
Using PSP 2019 64bit
JoeB
Using PSP 2019 64bit
-
joeb1
- Posts: 1
- Joined: Fri Jul 10, 2015 3:36 am
- System_Drive: C
- 32bit or 64bit: 64 Bit
- motherboard: Gateway IPISB-VR 1.01
- processor: 3.00 gigahertz Intel Core i5-3330
- ram: 8146 Megab
- Video Card: NVIDIA GeForce GTX 650
- sound_card: Realtek High Definition Audio
- Hard_Drive_Capacity: 8146 Megab
- Monitor/Display Make & Model: Gateway FHD2400
- Corel programs: pspx7
- Location: Phoenix USA
Re: PSPX7_Cleanup_v1.0.zip contains a Trojan
Don't know much about this stuff. But if my anti-virus programs quarantines a file, I'm NOT using it.
-
JoeB
- Posts: 2778
- Joined: Fri Mar 28, 2008 10:04 pm
- System_Drive: C
- 32bit or 64bit: 64 Bit
- motherboard: LENOVO 4524PE4 ThinkCentre M91p
- processor: 3.10 gigahertz Intel Quad Core i5-2400
- ram: 8 GB
- Hard_Drive_Capacity: 4.6 TB
- Corel programs: PSP 9, X7 to 2019, 32 & 64-bit
- Location: Canada
Re: PSPX7_Cleanup_v1.0.zip contains a Trojan
Well, if you think that they're smarter than you - and the many of us who have used the tools with no ill effects whatsoever - then that's your choice. As for me, I even get vaccinations!joeb1 wrote:Don't know much about this stuff. But if my anti-virus programs quarantines a file, I'm NOT using it.
Regards,
JoeB
Using PSP 2019 64bit
JoeB
Using PSP 2019 64bit
