Jump to content
gamecock

Clamwin Detected As Trojan

Recommended Posts

After upgrading from Clamwin ver 0.96.4 to version 0.97, Immunet ver 3.0.1.6112 upgraded from version 2.0.17.31 now detects Clamwin temp files as a trojan. The temp files are located in c:\documents and settings\admin\local settings\temp. The files that end in *.clamtmp are detected as trojans

 

I'm currently using Windows XP pro. Service pack 3. English.

 

I have run the system diagnostic tool and sent the report to support@immunet.com

post-4491-007311800 1304948355_thumb.jpg

Share this post


Link to post
Share on other sites

I assume you have already added that Temp file into Immunet's Exclusion List and that had no effect, right?

 

I thought about that but I didn't want to add the temp folder as an exclusion. I still want the folder scanned incase a virus drops a file in there. Is there a way to change where clamwin stores it's temp files. If so then I can just exclude that folder.

Share this post


Link to post
Share on other sites

I understand your concern there. Malware can sometimes use the Temp folder to hide in. Have you looked to see if the ClamWin Temp definition files are located in their own folder? The folder may be hidden. Go into Folder Options, click on View and click on Show hidden files,folders and drives and then look. If the folder exists then you could exclude just that folder but looking at your screenshot and reading the file path I don't think that is the case. It looks like they're individual definition files. You could check with ClamWin's support/forums to see if there is a way to change the file path that the definition updates use but I wouldn't hold your breath on that one. Are you using the paid version of ClamWin? If not then another option you could explore would be to switch to another free anti-virus that is known to be compatible with Immunet and there are a number of good ones to choose from. P.S. - Don't forget to click off Show hidden files, folders and drives. It is a security feature of your operating system and should normally remain off.

Share this post


Link to post
Share on other sites

Gamecock, I read in your False Positive post that it looks like Orlando is looking into the situation for you so wait and see what he says and if he can resolve this before doing anything else.

Share this post


Link to post
Share on other sites

Join the conversation

You can post now and register later. If you have an account, sign in now to post with your account.

Guest
Reply to this topic...

×   Pasted as rich text.   Paste as plain text instead

  Only 75 emoji are allowed.

×   Your link has been automatically embedded.   Display as a link instead

×   Your previous content has been restored.   Clear editor

×   You cannot paste images directly. Upload or insert images from URL.

Loading...

×
×
  • Create New...