Upgraded from Symantec Client Security 3.1.8. But now, SEP is not working right.
These files keep showing up, to update flash player type of messages. The files are NOT from Adobe.
I am really concerned at this point. Endpoint 11.0.5 the latest release as of today is not identifying viruses that are in files that tell you to update your flash player. According to Virus Total:
The file "adobeflashplayerv10.0.45.2.exe" is shown as:
DrWeb 5.0.1.12222 2010.02.19 shows as "Trojan.Packed.19705"
eTrust-Vet |
35.2.7313 |
2010.02.19 |
Win32/TDSS.G!packed |
eTrust-Vet |
35.2.7313 |
2010.02.19 |
Win32/TDSS.G!packed |
eTrust-Vet 35.2.7313 2010.02.19 shows as "Win32/TDSS.G!packed"
eTrust-Vet |
35.2.7313 |
2010.02.19 |
Win32/TDSS.G!packed |
F-Secure 9.0.15370.0 2010.02.19 shows as "Suspicious:W32/Malware!Gemini"
Panda 10.0.2.2 2010.02.19 shows as "Suspicious file"
Sophos 4.50.0 2010.02.19 shows as "Sus/UnkPack-C"
Symantec 20091.2.0.41 2010.02.19 "Suspicious.Insight"
TrendMicro 9.120.0.1004 2010.02.19 shows as "TROJ_TDSS.SMAL'
or
flashvidplugin.45047.exe
Shown as on Virus Total:
McAfee |
5897 |
2010.02.19 |
FakeAlert-MA.gen |
McAfee 5897 2010.02.19 shows as "FakeAlert-MA.gen"
McAfee+Artemis 5897 2010.02.19 shows as "FakeAlert-MA.gen"
Prevx 3.0 2010.02.19 shows as "Medium Risk Malware Dropper"
Sophos 4.50.0 2010.02.19 shows as "Mal/FakeAV-CO"
Symantec 20091.2.0.41 2010.02.19 shows as "Suspicious.Insight"
TheHacker 6.5.1.5.202 2010.02.19 shows as "Trojan/FakeAV.gen"
Thanks.
GLOrchard