Welcome to SecurityForumz.com!
FAQFAQ      ProfileProfile    Private MessagesPrivate Messages   Log inLog in

AVG Disables Suspected Application?

 
   Security Forums (Home) -> AVG RSS
Next:  Merry Christmas!  
Author Message
enaitee

External


Since: Dec 25, 2007
Posts: 2



(Msg. 1) Posted: Tue Dec 25, 2007 8:16 pm
Post subject: AVG Disables Suspected Application?
Archived from groups: alt>comp>virus (more info?)

Hi...I use free AVG 7.5.446, Virus base 269.17.8/1195. Recently it
detected a Trojan SHeur.AllJ in a USB stick memory password application JF-
Utility and also in the provider's USB stick CD password application
install program. I chose the "Heal" option on the virus vault listed
SHeur. I didn't relaize it meant to delete the JF-Utility if it was unable
to fix it.

Searching the web I've found others finding different suffixes of the same
Trojan i.e. afs, jh, ned, qsn etc. More than one forum post concluded
Sheur is a false positive and none suggested a cure other than updating the
AVG virus base. One post on this group recommended "BUGHUNTER". It wasn't
for my particular AllJ suffix and didn't find the trojan. Neither could
Trend Housecall, Kaperski, or www.virustotal.com. I decided to just turn
off AVG when I wanted to use my memory stick password protected content and
there my problem presented here arises.

Restoring JF-Utility from the Virus Vault and attempting to use it pops up
the error "Access to the specified device, path or file is denied". My web
searching hasn't come up with a fix for this although there are lots of
different files that can so afflicted and cured. I have a multi-boot
system with another Windows 2000 OS. With AVG disabled there my memory
stick works fine so I'm guessing something in the process of AVG "healing"
the JF-Utility and my restoring it has made JF-Utility unavailable. Anyone
have a similar experience with AVG Virus Vault?

 >> Stay informed about: AVG Disables Suspected Application? 
Back to top
Login to vote
Brian Gregory [UK]

External


Since: May 26, 2005
Posts: 7



(Msg. 2) Posted: Wed Dec 26, 2007 12:07 am
Post subject: Re: AVG Disables Suspected Application? [Login to view extended thread Info.]
Archived from groups: per prev. post (more info?)

"enaitee" <u617ix49o002 DeleteThis @sneakemail.com> wrote in message
news:Xns9A11874FDA4F0enaiteecableone@216.168.3.44...
> Hi...I use free AVG 7.5.446, Virus base 269.17.8/1195. Recently it
> detected a Trojan SHeur.AllJ in a USB stick memory password application
> JF-
> Utility and also in the provider's USB stick CD password application
> install program. I chose the "Heal" option on the virus vault listed
> SHeur. I didn't relaize it meant to delete the JF-Utility if it was
> unable
> to fix it.
>
> Searching the web I've found others finding different suffixes of the same
> Trojan i.e. afs, jh, ned, qsn etc. More than one forum post concluded
> Sheur is a false positive and none suggested a cure other than updating
> the
> AVG virus base. One post on this group recommended "BUGHUNTER". It
> wasn't
> for my particular AllJ suffix and didn't find the trojan. Neither could
> Trend Housecall, Kaperski, or www.virustotal.com. I decided to just turn
> off AVG when I wanted to use my memory stick password protected content
> and
> there my problem presented here arises.
>
> Restoring JF-Utility from the Virus Vault and attempting to use it pops up
> the error "Access to the specified device, path or file is denied". My
> web
> searching hasn't come up with a fix for this although there are lots of
> different files that can so afflicted and cured. I have a multi-boot
> system with another Windows 2000 OS. With AVG disabled there my memory
> stick works fine so I'm guessing something in the process of AVG "healing"
> the JF-Utility and my restoring it has made JF-Utility unavailable. Anyone
> have a similar experience with AVG Virus Vault?

That's what happens when you get a false positive (or a real one).
Let Grisoft know and they'll probably tell you to email them the file
(Zipped in an encrypted ZIP) and if it's a false positive they'll fix it in
a later virus database in a few days.

In the mean time you'll have to disable the AVG Resident Shield when you
need to use this file.

--

Brian Gregory. (In the UK)
ng DeleteThis @bgdsv.co.uk
To email me remove the letter vee.

 >> Stay informed about: AVG Disables Suspected Application? 
Back to top
Login to vote
enaitee

External


Since: Dec 25, 2007
Posts: 2



(Msg. 3) Posted: Wed Dec 26, 2007 1:03 pm
Post subject: Re: AVG Disables Suspected Application? [Login to view extended thread Info.]
Archived from groups: per prev. post (more info?)

"Brian Gregory [UK]" <ng.DeleteThis@bgdsv.co.uk> wrote in
news:xuGdnYICqJHaBuzanZ2dnUVZ8qugnZ2d@pipex.net:

> "enaitee" <u617ix49o002.DeleteThis@sneakemail.com> wrote in message
> news:Xns9A11874FDA4F0enaiteecableone@216.168.3.44...
>> Hi...I use free AVG 7.5.446, Virus base 269.17.8/1195. Recently it
>> detected a Trojan SHeur.AllJ in a USB stick memory password
>> application JF-
>> Utility and also in the provider's USB stick CD password application
>> install program. I chose the "Heal" option on the virus vault listed
>> SHeur. I didn't relaize it meant to delete the JF-Utility if it was
>> unable
>> to fix it.
>>
>> Searching the web I've found others finding different suffixes of the
>> same Trojan i.e. afs, jh, ned, qsn etc. More than one forum post
>> concluded Sheur is a false positive and none suggested a cure other
>> than updating the
>> AVG virus base. One post on this group recommended "BUGHUNTER". It
>> wasn't
>> for my particular AllJ suffix and didn't find the trojan. Neither
>> could Trend Housecall, Kaperski, or www.virustotal.com. I decided to
>> just turn off AVG when I wanted to use my memory stick password
>> protected content and
>> there my problem presented here arises.
>>
>> Restoring JF-Utility from the Virus Vault and attempting to use it
>> pops up the error "Access to the specified device, path or file is
>> denied". My web
>> searching hasn't come up with a fix for this although there are lots
>> of different files that can so afflicted and cured. I have a
>> multi-boot system with another Windows 2000 OS. With AVG disabled
>> there my memory stick works fine so I'm guessing something in the
>> process of AVG "healing" the JF-Utility and my restoring it has made
>> JF-Utility unavailable. Anyone have a similar experience with AVG
>> Virus Vault?
>
> That's what happens when you get a false positive (or a real one).
> Let Grisoft know and they'll probably tell you to email them the file
> (Zipped in an encrypted ZIP) and if it's a false positive they'll fix
> it in a later virus database in a few days.
>
> In the mean time you'll have to disable the AVG Resident Shield when
> you need to use this file.
>

Thanks for the reply. This is how I fixed my problem. I downloaded new
install software from the USB stick seller. It works fine and doesn't
trigger any virus alerts from AVG so I'm able to use my setup without
needing to disable AVG. No doubt though, something in the manufacturer's
original CD install software looked like a Trojan to AVG. I had used the
offending file for two years without any virus problems so perhaps some
new detection capability in AVG was alerted. I'll try to contact AVG and
see if they are interested.
 >> Stay informed about: AVG Disables Suspected Application? 
Back to top
Login to vote
Display posts from previous:   
Related Topics:
AVG July 4th update - Virus Database 296

one_half reported by AVG but not AVP or F-Prot? - Yesterday a message popped up on my computer from Norton AV that something was messing with my boot disk. I scanned with AVG which reported the presence of one_half, a boot disk virus. When AVG gave no options for removal or treatment I searched for..

AVG update Jul 14th - AVG core 501 / database 299

AVG update July 18th - Program version 6.0.502 Virus database 300

AVG update July 30th - Update AVG 7.0 - AVI 259.9.4 and Update AVG 6.0 - 505 Added detection of BAT/Mosquito, VBS/Mfile, VBS/Nof, I-Worm/Babybear, I-Worm/Jantic, Win32/Casal, Worm/Milcan, Worm/Tofaced, trojan PSW.VB, trojan BackDoor.LH, trojan Dropper.Mimail, trojan..
   Security Forums (Home) -> AVG All times are: Pacific Time (US & Canada) (change)
Page 1 of 1

 
You can post new topics in this forum
You can reply to topics in this forum
You cannot edit your posts in this forum
You cannot delete your posts in this forum
You cannot vote in polls in this forum



[ Contact us | Terms of Service/Privacy Policy ]