amartino
Aug 25 2009, 10:14 AM
Hi
adaware 2008 full scan shows Win32.TrojanPWS.Stealer every time i scan, even though i removed it with the previous adaware full scan.
norton 360 shows nothing when it scans, but the firewall says it's blocking/blocked a keystroke logger. The keystroke logger entry shows up in different files with log dates weeks and months apart.
I have attached the adaware scan log.
Is this a real infection or a false positive? If real, how do i get rid of it?
Thanks,
AM
LS Anders
Aug 25 2009, 10:48 AM
Hello amartino
Thank you for posting this issue. We will re-investigate the file referenced and if it is found to be a false positive it will be removed from detection. From the log I can see that the file is located in a system restore point. Removing this system restore point should solve the problem with the file reoccouring in every scan. If you prefer to keep the restore point you can put the file on ignore.
If you suspect that you are infected with any type of malware you can seek further help in the support forum:
http://www.lavasoftsupport.com/index.php?showforum=61Regards
LS Anders
LS Anders
Aug 25 2009, 10:56 AM
Update.
The file is considered to be a false positive and will be removed from the detection with the next definition file update.
Regards
LS Anders
amartino
Aug 25 2009, 12:18 PM
should i then delete all restore points or can i just delete the one? How do i determine which restore point is the issue?
Thanks,
AM
LS Anders
Aug 25 2009, 03:38 PM
Hello
As the file is a false positive it will no longer be detected after the next update. You do not need to remove any restore point then.
Regards
LS Anders