Help - Search - Members - Calendar
Full Version: shmnview.exe is being reported as WIN32.TROJAN-DROPPER.DELF
Lavasoft Support Forums > Archived Topics > Archives: Resolved/Inactive Topics > Resolved/Inactive False Postive Issues
dazedcrazed
I'm using Ad-Aware SE Professional and have the latest definitions for it.

I didn't think about saving the log so instead I save the quantised file information that includes the relevant details. There's another item in it but I'm not including it because it seems unrelated and it's in System Restore so I'll just disable and re enable it later.

CODE
ArchiveData(auto-quarantine- 2008-11-27 14-54-26.bckp)
Referencefile : SE1R312 24.11.2008
======================================================

WIN32.TROJAN-DROPPER.DELF
��������������������������ï¿
½ï¿½ï¿½ï¿½ï¿½ï¿½ï¿½ï¿½ï¿½ï¿½ï¿½ï¿½
obj[0]=File : C:\shmnview\shmnview.exe[/n]


I got the file(program) from this link.
http://www.nirsoft.net/utils/shexview.html

I chose to download the zip file version at the time but I don't think I have it anymore.

I searched the net and found no evidence it was any form of malware.
Also looking up on the malware it reports it as I found an article about it that showed no sign of this file as part of it.
The links for it is here
LS Andy
Hi dazedcrazed,

Thanks for your report. I downloaded the shmnview.exe file although I was unable to recreate the detection. It looks like the version of the file downloadable from the website is different to the one that was detected during your scan. Could I ask you to zip the shmnview.exe file up and uploaded it with your next post? Thanks!

Regards,

Andy
Lavasoft Research
dazedcrazed
It's weird because I still have the original zip file I downloaded from that site and it isn't detected by the program as malware like that file. Anyway I've zipped the file like you asked.


LS Anders
Hello dazedcrazed

Thank you for the upload. We have re-investigated the file and it will be removed from detection with the next definition update.


Regards
LS Anders
This is a "lo-fi" version of our main content. To view the full version with more information, formatting and images, please click here.
Invision Power Board © 2001-2010 Invision Power Services, Inc.