Jump to content

Recommended Posts

The file has multiple False Positives by different anti virus vendors.

I saw no malicious activity and I see no reason why MBAM should detect it.

https://www.virustotal.com/file/18446663a971289734949154f1c41bb6966f08f757eef888258606a2416861d0/analysis/1328974569/

post-14644-0-17075800-1328975339.jpeg

post-14644-0-58192500-1328975355.jpeg

Link to post
Share on other sites

This is for Avira AntiVir v12.x

Right-Click on the Avira Tray icon --> Configure... --> Expert mode

system scanner --> scan --> exceptions

You have to point it to the fully qualified name and path to the Desktop Locker EXE file.

realtime protection --> scan --> exceptions --> file objects to be omitted...

You have to point it to the fully qualified name and path to the Desktop Locker EXE file.
Link to post
Share on other sites

wow,, thanks,, that's really help me,,

but, is it safe?,, and why it detect this program as trojan?

I think trojan is the program to steal your data from your computer with sealth mode,, n how do you know this program is safe??

do you have some program or a way to detect an activity trojan in your computer?

or do you have a program to read a real source code of some program?

. . .

Link to post
Share on other sites

"Is it safe ?"

Yes, I think so.

It is detected as a trojan because it has characteristics of a trojan or a signature for real real trojan just happens to be the same as found in this file. All anti malware software generate False Positive detections on legitimate files at one time or another. Yes, even Malwarebytes. Just recently Microsoft's Security Essential's created a False Positive declaration for the Tr/Blacole.ref script on Google.Com .

Trojan is a name for any malicious program that does not self replicate and performs malicious activity on your computer which includes, but not limited to....

* Browser redirection and hijacking

* Advertisement generation

* Identity theft

* Hold data for ransom/cryptovirology

* Steal passwords

* Steal key codes

* Log your activities and/or keystrokes

* Create a backdoor into your computer

* Force you computer to perform an attack (such DDoS) on another Internet system.

* Force your computer to create email spam

* Force a computer to dial 900 pay-service numbers.

* Perform a confidence job (con job) such to get you to pay for services you do NOT need.

I know this utility is safe because I analyzed it under Windows XP and Windows Vista sandboxes. I checked for malicious activity and communication with the internet and I saw nothing that could be perceived as "malicious".

I do not know what you mean by...

"do you have some program or a way to detect an activity trojan in your computer?

or do you have a program to read a real source code of some program?"

Can you please elaborate on your thoughts/questions.

Link to post
Share on other sites

what I mean is, a program to analyze "malicious program", and you use "sandboxes" program, right?,

but I have another problem,, after I make exception in avira n after run this program again n close it,,

I don't have any problem,,

but after several hours,, when I chatting on facebook,, my laptop got shutdown by it self,, I mean automatic shutdown, all program closed n it's shutdown normally,,

is it because facebook? or chating? or because this program exception? or because there is another trojan active in my laptop,,

but it never happens before,,

because I already use desktop locker for several month,, and after avira update and detect this program as trojan, I never use it until today,,

so, can u figure out , what is my real problem here,,

sorry my english was very bad :(

thanks. . .

. . .

Link to post
Share on other sites

I use specialized analytical software which places the suspect in a SandBox - Yes.

You say "...after several hours,, when I chatting on facebook,, my laptop got shutdown by it self,,."

That could be indicative of a thermal shutdown. The notebook reaches a preset temperature and the system is shutdown in an act of self preservation. Often caused when dust builds up in the notebook's air vents used with a fan to cool the notebook's processor. No aitflow and the notebook gets too warm and automatically thermally shutsdown.

Get a new can of compressed air and release an air jet in the notebooks air vents and see if you can see dust come out.

Verify that the fan actually "turns" when the notebook is used consistently and gets quite warm.

Link to post
Share on other sites

may be you are right,,

but that's never happen before, and until now after I remove the exception, I use my laptop for 24 hours for download and browsing, it's never autoshutdown again,,

it's just happen that night,,

and I always use the cooler pad, so I think it's impossible happen because thermal autoshutdown,, and this laptop is stil new, I just bought it september 2011

Do u have any idea?

. . .

Link to post
Share on other sites

Did you... "Get a new can of compressed air and release an air jet in the notebooks air vents and see if you can see dust come out. "..." Verify that the fan actually "turns" when the notebook is used consistently and gets quite warm" ?

Link to post
Share on other sites

sorry, I dont know where I could buy a new can of compressed air, because I never heard it before,,

but, my notebook fan is working finely until now,,

hm,,

may be I must try to make exception again and run that program again,,

to make sure what is the problem actually,,

but is it safe? or , may be I must always run this program in the sandboxie if I want to used it,,

but, can sandbox prevent the infection virus?

what I mean is, is it safe? if I run the suspicious program in the sandboxie, such as keygen or trainer game or something??

. . .

Link to post
Share on other sites

Create an account or sign in to comment

You need to be a member in order to leave a comment

Create an account

Sign up for a new account in our community. It's easy!

Register a new account

Sign in

Already have an account? Sign in here.

Sign In Now
  • Recently Browsing   0 members

    • No registered users viewing this page.
Back to top
×
×
  • Create New...

Important Information

This site uses cookies - We have placed cookies on your device to help make this website better. You can adjust your cookie settings, otherwise we'll assume you're okay to continue.