This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

Mal/Packer query

Just want to ask your advice on something that was detected on a few desktops. The particular file in question is - C:\Program Files\Theorica Divx ;-) Codecs\AviSpeedInfo.exe being detected as Mal/Packer.

This piece of software was installed a few years ago on a select few developer machines (before my time); but was flagged up on two desktops last week and another one this week.

Any idea why Sophos would suddenly detect it as a virus after all these years? It has been cleaned by Sophos so I can't upload it for analysis. 

Thanks,

Mike

:25599


This thread was automatically locked due to age.
Parents
  • Hello Mike,

    quite a number of detections are generic in nature and are from time to time updated (both for detection and performance improvements). Sometimes the result is a few false positives/suspects (usually it hits "old" files - this can be caused by either more aggressive detection or removal of "exonerating" rules).
    Check.the analysis for the detection and note the updated date.

    Well, a sample would help ... Don't you have backups? ;-)

    Christian
    :25609
Reply
  • Hello Mike,

    quite a number of detections are generic in nature and are from time to time updated (both for detection and performance improvements). Sometimes the result is a few false positives/suspects (usually it hits "old" files - this can be caused by either more aggressive detection or removal of "exonerating" rules).
    Check.the analysis for the detection and note the updated date.

    Well, a sample would help ... Don't you have backups? ;-)

    Christian
    :25609
Children
No Data