Jump to content

StudioLine "Ransomware Detected"


Andy_Schmidt

Recommended Posts

Hi,

what is the process of registering commercial software to avoid being "detected".

The StudioLine (www.StudioLine.net) suite of Windows products (same code base for all) has been around for over 20 years. As a photo/media asset software, it can frequently process many hundreds of photos that were taken at a single event, and/or share portfolios of hundreds of pictures on the client's web presence.

This week was the first time, that we saw this:

1019760988_mwb-falsepositiveStudioLine.jpg.bc633e12c0527d2e0d1635a7a6f296fc.jpg

We are the developer of that software and certainly wouldn't want our customer base to receive inappropriate warnings.

Best Regards,

Andy Schmidt
www.StudioLine.net 

Link to post
Share on other sites

Here is the attached executable that matches the process that was reported. I'm a little confused, because I thought the Ransomware tool didn't rely on "signatures" of .EXEs but rather examines behavior patterns?

PS: It's only the application's launcher - but will the be process reported in Task Manager for the duration the application is used.

SLStartC.zip

Link to post
Share on other sites

Create an account or sign in to comment

You need to be a member in order to leave a comment

Create an account

Sign up for a new account in our community. It's easy!

Register a new account

Sign in

Already have an account? Sign in here.

Sign In Now
  • Recently Browsing   0 members

    • No registered users viewing this page.
Back to top
×
×
  • Create New...

Important Information

This site uses cookies - We have placed cookies on your device to help make this website better. You can adjust your cookie settings, otherwise we'll assume you're okay to continue.