<?xml version="1.0" encoding="UTF-8"?>
<!-- generator="bbPress/1.2" -->
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom">
	<channel>
		<title>Giveaway of the Day Forums &#187; User Favorites: loopy</title>
		<link>https://www.giveawayoftheday.com/forums/profile/3193</link>
		<description>Giveaway of the Day Forums &#187; User Favorites: loopy</description>
		<language>en-US</language>
		<pubDate>Tue, 09 Jun 2026 07:54:31 +0000</pubDate>
		<generator>http://bbpress.org/?v=1.2</generator>
		<atom:link href="https://www.giveawayoftheday.com/forums/rss/profile/3193" rel="self" type="application/rss+xml" />

		<item>
			<title>dondon4u on "Review Trojan/Virus Reports"</title>
			<link>https://www.giveawayoftheday.com/forums/topic/719/page/10#post-582198</link>
			<pubDate>Thu, 28 May 2020 07:32:18 +0000</pubDate>
			<dc:creator>dondon4u</dc:creator>
			<guid isPermaLink="false">582198@https://www.giveawayoftheday.com/forums/</guid>
			<description><p>There is good software that is provided free of charge to monitor and cure Trojan &#38; Virus.</p>
<p>◈  ALYac Internet Security Pro</p>
<p>01. Employeed Triple Engines<br />
* Uses Tera Engine(developed by ESTSecurity), Bitdefender, Sophos Engine<br />
* Powerful detection of malicious codes</p>
<p>02. Less resource utilization through engine optimization and weight lightening<br />
* Optimized Scanning Engine<br />
* Less resource utilization through weight lightening</p>
<p>03. Smart Scanning and Minimizing False Positive<br />
* Fast and efficient scanning based on the white list<br />
* Fast scanning time<br />
* Minimize false positives by using various criteria</p>
<p>04. Various OS Support<br />
* Full support for 64bit OS<br />
* Full support for Windows 10</p>
<p>Free : <a href="http://links.giveawayoftheday.com/s/en.estsecurity.com/product%2Falyac">https://en.estsecurity.com/product/alyac</a><br />
Thanks To : <a href="http://links.giveawayoftheday.com/s/onca3535.com/">https://www.onca3535.com</a>
</p></description>
		</item>
		<item>
			<title>Redphantom on "Review Trojan/Virus Reports"</title>
			<link>https://www.giveawayoftheday.com/forums/topic/719/page/10#post-581661</link>
			<pubDate>Sat, 11 Jan 2020 16:13:06 +0000</pubDate>
			<dc:creator>Redphantom</dc:creator>
			<guid isPermaLink="false">581661@https://www.giveawayoftheday.com/forums/</guid>
			<description><p><a href="https://game.giveawayoftheday.com/mountain-crime-requital-2/">https://game.giveawayoftheday.com/mountain-crime-requital-2/</a> is being blocked by Malwarebytes. I know the site works hard to keep the downloads safe, and it&#39;s probably a false positive, but where the installers also have false flags from other A V Programs, if this is also a false positive, maybe it&#39;s time to look into a different format for the installers so we don&#39;t have to strip out computers of all protection to be able to install the software.
</p></description>
		</item>
		<item>
			<title>ChrisS on "Review Trojan/Virus Reports"</title>
			<link>https://www.giveawayoftheday.com/forums/topic/719/page/10#post-551286</link>
			<pubDate>Tue, 17 Nov 2015 13:47:25 +0000</pubDate>
			<dc:creator>ChrisS</dc:creator>
			<guid isPermaLink="false">551286@https://www.giveawayoftheday.com/forums/</guid>
			<description><p>It&#39;s almost certainly a false positive. </p>
<p>As I understand your post, you installed SIW (System Information for Windows) in January 2015 (or maybe Apr 2014) in a system running Windows 7 and some security software.  Presumably, you ran periodic virus scans on the old system and, if not, it&#39;s a fair bet that somebody who installed the software ran a virus scan with no reported problems.  Then, later, you upgraded to Windows 10 with its security software and the new security software found an issue.  The only things that changed were the OS and the virus scanner you used, the file stayed the same. </p>
<p>It&#39;s common for one anti-virus program to find stuff that other programs &#34;missed&#34;.  If you know you&#39;re going to change A/V programs it&#39;s a good idea to run a full scan before you change and another full scan after the change to get the false positives out of the way. </p>
<p>If you want greater peace of mind, retrieve the file from quarantine and send it to the links Anonymous provided above: <a href="http://links.giveawayoftheday.com/virustotal.com/">http://www.virustotal.com/</a> and/or <a href="http://links.giveawayoftheday.com/virusscan.jotti.org/en-gb">http://virusscan.jotti.org/en-gb</a>
</p></description>
		</item>
		<item>
			<title>TechyCanuck on "Review Trojan/Virus Reports"</title>
			<link>https://www.giveawayoftheday.com/forums/topic/719/page/10#post-551036</link>
			<pubDate>Tue, 17 Nov 2015 03:52:11 +0000</pubDate>
			<dc:creator>TechyCanuck</dc:creator>
			<guid isPermaLink="false">551036@https://www.giveawayoftheday.com/forums/</guid>
			<description><p>Microsoft Windows Defender just quarantined the following: SIW gotd\unins000.exe</p>
<p><img src="http://i64.tinypic.com/2w5rho8.jpg"></p>
<p>I had just uninstalled this program yesterday.  I&#39;m running Windows 10 Pro and program was originally installed on Windows 7 Pro.
</p></description>
		</item>
		<item>
			<title>mikiem2 on "Review Trojan/Virus Reports"</title>
			<link>https://www.giveawayoftheday.com/forums/topic/719/page/10#post-330916</link>
			<pubDate>Sun, 31 Aug 2014 16:29:27 +0000</pubDate>
			<dc:creator>mikiem2</dc:creator>
			<guid isPermaLink="false">330916@https://www.giveawayoftheday.com/forums/</guid>
			<description><p><blockquote>Norton Internet Security sees Altercam 1.5 setup/install files as SONAR.SuspBeh!gen3 and promptly removes the software.</blockquote></p>
<p>Altercam looks like it was developed using a Visioforge SDK -- IOW that&#39;s the company that Altercam&#39;s developers licensed the video-related code from. Don&#39;t see anything bad Googling on different terms including visioforge -- they&#39;re even listed on Microsoft&#39;s dev site. Since it was heuristic behavior analysis that flagged it, IMHO maybe something dual-use that could be used by good software as well as bad, e.g. hooking. Microsoft&#39;s Security Essentials &#38; Bitdefender both give Altercam a green light.</p>
<p>While it&#39;s too late of course to do anything about it [the GOTD was different than the trial download], maybe a good future strategy when/if that sort of thing happens might be to check the trial download with Norton too. If it doesn&#39;t object, it probably doesn&#39;t like the GOTD wrapper. If it does flag the trial you could submit it to as many on-line AV scanners as you wanted.
</p></description>
		</item>
		<item>
			<title>speedracerxt on "Review Trojan/Virus Reports"</title>
			<link>https://www.giveawayoftheday.com/forums/topic/719/page/10#post-330662</link>
			<pubDate>Sat, 30 Aug 2014 04:42:04 +0000</pubDate>
			<dc:creator>speedracerxt</dc:creator>
			<guid isPermaLink="false">330662@https://www.giveawayoftheday.com/forums/</guid>
			<description><p>Norton Internet Security sees Altercam 1.5 setup/install files as SONAR.SuspBeh!gen3 and promptly removes the software. It is actually the SONAR heuristic detection that detected/removed it:</p>
<p><a href="http://links.giveawayoftheday.com/symantec.com/security_response%2Fwriteup.jsp%3Fdocid%3D2013-111415-1843-99">http://www.symantec.com/security_response/writeup.jsp?docid=2013-111415-1843-99</a>
</p></description>
		</item>
		<item>
			<title>Ashara on "Review Trojan/Virus Reports"</title>
			<link>https://www.giveawayoftheday.com/forums/topic/719/page/10#post-328735</link>
			<pubDate>Tue, 19 Aug 2014 13:15:57 +0000</pubDate>
			<dc:creator>Ashara</dc:creator>
			<guid isPermaLink="false">328735@https://www.giveawayoftheday.com/forums/</guid>
			<description><p>I think I&#39;m getting a false positive, but I can&#39;t be sure.  I tried to install AthTek Registry Cleaner and Norton said there was a trojan virus in it.  Now, if someone can reassure me there is no threat, I can disable Norton and go ahead with the installation.  Please, if you were able to download this with Norton, let me know.  </p>
<p>Thanks so much,<br />
Judy
</p></description>
		</item>
		<item>
			<title>graylox on "Review Trojan/Virus Reports"</title>
			<link>https://www.giveawayoftheday.com/forums/topic/719/page/10#post-325619</link>
			<pubDate>Thu, 31 Jul 2014 19:30:31 +0000</pubDate>
			<dc:creator>graylox</dc:creator>
			<guid isPermaLink="false">325619@https://www.giveawayoftheday.com/forums/</guid>
			<description><p><blockquote><em>@ <a href="//www.giveawayoftheday.com/forums/topic/719/page/10?view=all#post-95571&#34;" rel="nofollow">Please see the new project intended to fix...</a> </em></blockquote></p>
<p>It seems the link Jeremy Collake posted is no longer valid.</p>
<p>In case you have problems with <strong><a href="&#34;//www.techsupportalert.com/content/how-report-malware-or-false-positives-multiple-antivirus-vendors.htm&#34;&#34;" rel="&#34;nofollow&#34;">False Positives</a></strong> you may find following article from gizmo&#39;s Techsupportalert helpful:</p>
<p><font size="2"><strong><a href="http://links.giveawayoftheday.com/techsupportalert.com/content%2Fhow-report-malware-or-false-positives-multiple-antivirus-vendors.htm">http://www.techsupportalert.com/content/how-report-malware-or-false-positives-multiple-antivirus-vendors.htm</a></strong></font>
</p></description>
		</item>
		<item>
			<title>Whiterabbit-uk on "Review Trojan/Virus Reports"</title>
			<link>https://www.giveawayoftheday.com/forums/topic/719/page/9#post-325551</link>
			<pubDate>Thu, 31 Jul 2014 11:34:56 +0000</pubDate>
			<dc:creator>Whiterabbit-uk</dc:creator>
			<guid isPermaLink="false">325551@https://www.giveawayoftheday.com/forums/</guid>
			<description><p>The links posted by anonymous three years ago are   still valid, only false positive report.com has gone.  I will delete the comment to save confusion.  :)
</p></description>
		</item>
		<item>
			<title>wendypeterson on "Review Trojan/Virus Reports"</title>
			<link>https://www.giveawayoftheday.com/forums/topic/719/page/9#post-325525</link>
			<pubDate>Thu, 31 Jul 2014 09:47:15 +0000</pubDate>
			<dc:creator>wendypeterson</dc:creator>
			<guid isPermaLink="false">325525@https://www.giveawayoftheday.com/forums/</guid>
			<description><p>This site is no longer operational.
</p></description>
		</item>
		<item>
			<title>jcollake on "Review Trojan/Virus Reports"</title>
			<link>https://www.giveawayoftheday.com/forums/topic/719/page/9#post-95571</link>
			<pubDate>Tue, 27 Sep 2011 21:49:43 +0000</pubDate>
			<dc:creator>jcollake</dc:creator>
			<guid isPermaLink="false">95571@https://www.giveawayoftheday.com/forums/</guid>
			<description><p>Please see the new project intended to fix and PREVENT false positive and mis-rated sites through TRANSPARENCY and ACCOUNTABILITY. By submitting reports to a CENTRAL location, security vendors can find them easily, communicate with affected parties, and USERS can see which security vendors are trying to AVOID COLLATERAL DAMAGE. </p>
<p>Remember, once a false positive or mis-rating happens, the damage is already done. So, in addition to fixing them rapidly, security vendors must be interested in working to AVOID them. Some are, some aren&#39;t. This non-profit, all volunteer site will help show which security vendors care the most.</p>
<p>Please see: <strike><a href="http://links.giveawayoftheday.com/falsepositivereport.com/">http://falsepositivereport.com</a></strike></p>
<p><strong>...EDITED...</strong> <em><font size="0">by graylox 31-07-2014</font></em></p>
<p>It seems the link Jeremy Collake posted is no longer valid.</p>
<p>In case you have problems with <strong><a href="&#34;//www.techsupportalert.com/content/how-report-malware-or-false-positives-multiple-antivirus-vendors.htm&#34;&#34;" rel="&#34;nofollow&#34;">False Positives</a></strong> you may find following article from gizmo&#39;s Techsupportalert helpful:</p>
<p><font size="2"><strong><a href="http://links.giveawayoftheday.com/techsupportalert.com/content%2Fhow-report-malware-or-false-positives-multiple-antivirus-vendors.htm">http://www.techsupportalert.com/content/how-report-malware-or-false-positives-multiple-antivirus-vendors.htm</a></strong></font>
</p></description>
		</item>
		<item>
			<title>Anonymous on "Review Trojan/Virus Reports"</title>
			<link>https://www.giveawayoftheday.com/forums/topic/719/page/9#post-92618</link>
			<pubDate>Sun, 03 Jul 2011 02:46:32 +0000</pubDate>
			<dc:creator>Anonymous</dc:creator>
			<guid isPermaLink="false">92618@https://www.giveawayoftheday.com/forums/</guid>
			<description><p><a href="http://links.giveawayoftheday.com/virustotal.com/">http://www.virustotal.com/</a></p>
<p><a href="http://links.giveawayoftheday.com/virusscan.jotti.org/en-gb">http://virusscan.jotti.org/en-gb</a></p>
<p>scan on line and see if it virus or not
</p></description>
		</item>
		<item>
			<title>luca23 on "Review Trojan/Virus Reports"</title>
			<link>https://www.giveawayoftheday.com/forums/topic/719/page/9#post-92541</link>
			<pubDate>Fri, 01 Jul 2011 12:26:36 +0000</pubDate>
			<dc:creator>luca23</dc:creator>
			<guid isPermaLink="false">92541@https://www.giveawayoftheday.com/forums/</guid>
			<description><p>Ho appena installato &#34;Immagine Downloader&#34; ed è stato consigliato dal mio AVG is 9.0<br />
che conteneva un malware.<br />
uso windows 7 sp1.<br />
l&#39;antivirus è aggiornato,l&#39;ultimo aggiornamento è stato fatto oggi,il 17\2011
</p></description>
		</item>
		<item>
			<title>Luckyman on "Review Trojan/Virus Reports"</title>
			<link>https://www.giveawayoftheday.com/forums/topic/719/page/9#post-92538</link>
			<pubDate>Fri, 01 Jul 2011 11:10:08 +0000</pubDate>
			<dc:creator>Luckyman</dc:creator>
			<guid isPermaLink="false">92538@https://www.giveawayoftheday.com/forums/</guid>
			<description><p>Hi,<br />
I just installed &#34;Picture Downloader&#34; and was advised by my AVG Anti-Virus Free software that it contained a trojan horse.</p>
<p>1) I use AVG Anti-Virus Free 9.0.901 with virus database 271.1.1/3737<br />
2) PD.exe contained a Trojan horse called SHeur3.CHKN<br />
3) I&#39;m running Windows Vista SP2</p>
<p>My scanner signature/database is up to date and current.
</p></description>
		</item>
		<item>
			<title>kenojunk on "Review Trojan/Virus Reports"</title>
			<link>https://www.giveawayoftheday.com/forums/topic/719/page/9#post-91297</link>
			<pubDate>Fri, 27 May 2011 08:07:34 +0000</pubDate>
			<dc:creator>kenojunk</dc:creator>
			<guid isPermaLink="false">91297@https://www.giveawayoftheday.com/forums/</guid>
			<description><p>I have the very same Malware message as Samizdat, except with Google Chrome right after downloading Photostitcher, and it ultimately prevented me from accessing internet with ANY browser. Turned out I had a nasty virus in OS that required reimage.
</p></description>
		</item>
		<item>
			<title>Anonymous on "Review Trojan/Virus Reports"</title>
			<link>https://www.giveawayoftheday.com/forums/topic/719/page/9#post-91245</link>
			<pubDate>Wed, 25 May 2011 08:59:58 +0000</pubDate>
			<dc:creator>Anonymous</dc:creator>
			<guid isPermaLink="false">91245@https://www.giveawayoftheday.com/forums/</guid>
			<description><p>noscript, you don&#39;t need flashblock as noscript will stop flash as for uninstall firefox with revo uninstaller, I don&#39;t like as no need and you can refit firefox and it will pick up all the old ad-ons if you think ad-ons are bad you can click Help Restart with Add-ons Disabled test and add one at a time to find the bad one
</p></description>
		</item>
		<item>
			<title>Vany@ on "Review Trojan/Virus Reports"</title>
			<link>https://www.giveawayoftheday.com/forums/topic/719/page/9#post-91187</link>
			<pubDate>Mon, 23 May 2011 14:34:38 +0000</pubDate>
			<dc:creator>Vany@</dc:creator>
			<guid isPermaLink="false">91187@https://www.giveawayoftheday.com/forums/</guid>
			<description><p>hi AP.</p>
<p>maybe i&#39;m of some help. excuse me if i post something that has already been posted by someone.</p>
<p>first of all. check if you has a multiple AV/antispyware with resident shield enabled. </p>
<p>if you have it disable ALL (SO WE CAN VIEW if it&#39;s their fault)</p>
<p>i&#39;ve read you has AVG 2011. it has done the same thing to me. check the quarantine and disable the check of the web temporarily. the try again. if it&#39;s fault of avg who checks and quarantine the files probably you pc has been infected by some malware who infect all the files you  download (and so you avg quarantine it) </p>
<p>check even your zero day protection sw (generally it acts in background) particularly if you use threathfire (very good but invasive)</p>
<p>however i don&#39;t think is this the reason. yeah. all this was a preliminary check to exlude the most common reason and establish you pc is sane (check also with malwarebytes, spyware doctor and super antispyware in a row). </p>
<p>i think indeed you use firefox with a lot of security extension malconfigured.</p>
<p>for example noscript, adkiller, flashblock, flasblock, betterprivacy and ghostery</p>
<p>all this very useful extension are designed to &#34;monitor and eventually block java content in some way. you see ... the download is performed by a script and so if you has malconfigured your extension these can conflict each other. </p>
<p>try disabling ALL  reboot your firefox (or chrome) and try to download again.</p>
<p>it can be also a fault in the updating of your firefox. i love firefox is my favourite browser but he can be erratic in his update process. ultimately if all fails try to uninstall firefox with revo uninstaller (which removes all trace of the sw with the last option) and reinstall firefox. then try to download if all is fine was a updating error. now reinstall your extension and configure them one by one trying if there is a download issue.</p>
<p>hoping to help.
</p></description>
		</item>
		<item>
			<title>Anonymous on "Review Trojan/Virus Reports"</title>
			<link>https://www.giveawayoftheday.com/forums/topic/719/page/9#post-91167</link>
			<pubDate>Mon, 23 May 2011 04:40:34 +0000</pubDate>
			<dc:creator>Anonymous</dc:creator>
			<guid isPermaLink="false">91167@https://www.giveawayoftheday.com/forums/</guid>
			<description><p>update now look&#39;s like false positives.  may be in a few days all good with a update</p>
<p><a href="http://links.giveawayoftheday.com/virustotal.com/file-scan%2Freport.html%3Fid%3D28c3e2aa9c5e67cf6f41e00eee10e7f5b588964fbb24485ce9a6c5ceca5a579e-1306014612">http://www.virustotal.com/file-scan/report.html?id=28c3e2aa9c5e67cf6f41e00eee10e7f5b588964fbb24485ce9a6c5ceca5a579e-1306014612</a></p>
<p>File name:ASTROAVENGER.EXE<br />
Submission date:2011-05-21 21:50:12 (UTC)<br />
Result:2 /42 (4.8%)<br />
ClamAV and Ikarus are not good.
</p></description>
		</item>
		<item>
			<title>graylox on "Review Trojan/Virus Reports"</title>
			<link>https://www.giveawayoftheday.com/forums/topic/719/page/9#post-91141</link>
			<pubDate>Sat, 21 May 2011 19:54:20 +0000</pubDate>
			<dc:creator>graylox</dc:creator>
			<guid isPermaLink="false">91141@https://www.giveawayoftheday.com/forums/</guid>
			<description><p>Well NoVirus has only 6 test tools yet.<br />
I have tested with VirusTotal and got 3 red out of 43.</p>
<p><a href="http://links.giveawayoftheday.com/virustotal.com/file-scan%2Freport.html%3Fid%3D28c3e2aa9c5e67cf6f41e00eee10e7f5b588964fbb24485ce9a6c5ceca5a579e-1305967450">http://www.virustotal.com/file-scan/report.html?id=28c3e2aa9c5e67cf6f41e00eee10e7f5b588964fbb24485ce9a6c5ceca5a579e-1305967450</a></p>
<p>And this is the report of Jotti&#39;s Malwarescan.<br />
<a href="http://links.giveawayoftheday.com/virusscan.jotti.org/en%2Fscanresult%2Fb14b37d74fdfbc33344223923f9616cf3cad081e">http://virusscan.jotti.org/en/scanresult/b14b37d74fdfbc33344223923f9616cf3cad081e</a></p>
<p>You can be sure, that these three are false positives. </p>
<p>GOTD always scans the packages their give away - otherwise it would be a bad reputation.<br />
Please read the FAQ: <a href="http://www.giveawayoftheday.com/faq/">Viruses detection</a></p>
<p>graylox
</p></description>
		</item>
		<item>
			<title>mark94 on "Review Trojan/Virus Reports"</title>
			<link>https://www.giveawayoftheday.com/forums/topic/719/page/9#post-91140</link>
			<pubDate>Sat, 21 May 2011 15:57:04 +0000</pubDate>
			<dc:creator>mark94</dc:creator>
			<guid isPermaLink="false">91140@https://www.giveawayoftheday.com/forums/</guid>
			<description><p>Hi,</p>
<p>sorry for my bad english (I&#39;m german^^).<br />
Today I&#39;ve downloaded &#34;Astro Avenger&#34; and my virus scanner told me that &#34;AstroAvenger.exe&#34; is spyware. I&#39;m using &#34;Ashampoo Anti-Malware&#34;. </p>
<p>Further informations:<br />
System: Win7 64bit</p>
<p><em>File Info</em></p>
<p>Report date: 2011-05-21 17:44:41 (GMT 1)<br />
File name: <strong>astroavenger-exe</strong><br />
File size: 1785856 bytes<br />
MD5 Hash: 590dbdb889fb347a71372f70f75e570f<br />
SHA1 Hash: 4e69d6b78858a3e81a3db4d56722b1e75e215713<br />
Detection rate: <font color="red">2</font> on 6 (<font color="red">33%</font>)<br />
Status: <font color="red">INFECTED</font> </p>
<p><em>Detections</em></p>
<p>AVG - <font color="red">[/color]<br />
Avira AntiVir - [color=red]</font><br />
ClamAV - <font color="red">[/color]<br />
Emsisoft - [color=red]Trojan.Win32.Buzus!IK</font><br />
TrendMicro - <font color="red">[/color]<br />
Zoner - [color=red]Trojan.Ardamax.JLF</font></p>
<p><em>Scan report generated by<br />
<a href="http://links.giveawayoftheday.com/novirusthanks.org/">NoVirusThanks.org</a></em></p>
<p>Yours Sincerely<br />
Mark
</p></description>
		</item>
		<item>
			<title>Anonymous on "Review Trojan/Virus Reports"</title>
			<link>https://www.giveawayoftheday.com/forums/topic/719/page/9#post-91095</link>
			<pubDate>Thu, 19 May 2011 23:16:13 +0000</pubDate>
			<dc:creator>Anonymous</dc:creator>
			<guid isPermaLink="false">91095@https://www.giveawayoftheday.com/forums/</guid>
			<description><p>had Malwarebytes said bad Adware on my Antivirus so I said fix it and it take off the ad for %30 off Price to buy may be some ad&#39;s not so bad ?
</p></description>
		</item>
		<item>
			<title>samizdat on "Review Trojan/Virus Reports"</title>
			<link>https://www.giveawayoftheday.com/forums/topic/719/page/9#post-90990</link>
			<pubDate>Mon, 16 May 2011 09:24:00 +0000</pubDate>
			<dc:creator>samizdat</dc:creator>
			<guid isPermaLink="false">90990@https://www.giveawayoftheday.com/forums/</guid>
			<description><p>Like I said, I hope GOTD would contact fireheart and maybe even scan it with Malwarebytes&#39; Anti-Malware first.  </p>
<p>It&#39;s Fireheart that ultimately should contact Malwarebytes who pride themselves in finding malware that other programs don&#39;t find.  </p>
<p>I have the #1 AV as rated by AV-Comparatives.org (F-Secure) and it didn&#39;t find anything.</p>
<p>  It&#39;s funny how people give positive reviews of anti-malware products as &#39;It found malware that other programs didn&#39;t!&#39; yet when one of the top #2 &#39;second line of defense&#39; anti-malware products finds something, it&#39;s discarded because other programs didn&#39;t find anything.</p>
<p>Like I stated earlier, adware doesn&#39;t scare me and I left it on my computer.  My wife loves it and uses it at start-up on hers, but <strong>I think GOTD should notify Fireheart that a leading anti-malware program is reporting a product they distributed as malicious.</strong>  That&#39;s not asking too much.  I could understand blowing this off if some unknown program found it but this is a respected product.  It&#39;s in both companies best interest that they communicate about this.</p>
<p>A lot of people would have just let malwarebytes remove the program and left a nasty revie of GOTD at WOT.  This was just a friendly FYI that I thought would be appreciated and handled swiftly.  I guess I will email Fireheart.  <em>Sigh</em>  :-)</p>
<p>PS - I noticed the 01-11-2011 giveaway, Inpaint&#39;s registration has already expired.  I wonder where I post that info.  It will clean up pics but when you try to save it it tell you to purchase it now.  Shame...I liked that program.
</p></description>
		</item>
		<item>
			<title>graylox on "Review Trojan/Virus Reports"</title>
			<link>https://www.giveawayoftheday.com/forums/topic/719/page/9#post-90964</link>
			<pubDate>Sun, 15 May 2011 02:31:18 +0000</pubDate>
			<dc:creator>graylox</dc:creator>
			<guid isPermaLink="false">90964@https://www.giveawayoftheday.com/forums/</guid>
			<description><p>Hotdoge I don&#39;t know what scan you have posted - the link is broken, therefore I deleted it.</p>
<p>This is the scan of fireheart.exe by VirusTotal: <a href="http://links.giveawayoftheday.com/virustotal.com/file-scan%2Freport.html%3Fid%3D3b24ab1c90364d1a2f20ef3bbccfac2415f6710e4c61cd2c0333c6eae224cae0-1305087721">fireheart.exe</a></p>
<p><blockquote>File name:<br />
fireheart.exe<br />
Submission date:<br />
2011-05-11 04:22:01 (UTC)<br />
Current status:<br />
finished<br />
Result:<br />
<font color="#ff0000">0 /42 (0.0%)</font></blockquote></p>
<p>And this is the scan on the NoVirusThanks site UrlVoid: <a href="http://links.giveawayoftheday.com/vscan.novirusthanks.org/analysis%2Fd2c8013aef802756c6d01291de827868%2FZmlyZWhlYXJ0LWV4ZQ%3D%3D%2F">fireheart-exe</a></p>
<p><blockquote><em>File Info</em></p>
<p>Report date: 2011-05-15 04:41:56 (GMT 1)<br />
File name: <strong>fireheart-exe</strong><br />
File size: 2316800 bytes<br />
MD5 Hash: d2c8013aef802756c6d01291de827868<br />
SHA1 Hash: 2bf8050d10a0d6178dd54d3d5edfef31c767071d<br />
Detection rate: 0 on 6 (0%)<br />
Status: <font color="green">CLEAN</font> </p>
<p><em>Detections</em></p>
<p>AVG - <font color="red">[/color]<br />
Avira AntiVir - [color=red]</font><br />
ClamAV - <font color="red">[/color]<br />
Emsisoft - [color=red]</font><br />
TrendMicro - <font color="red">[/color]<br />
Zoner - [color=red]</font></p>
<p><em>Scan report generated by<br />
<a href="http://links.giveawayoftheday.com/novirusthanks.org/">NoVirusThanks.org</a></em></blockquote></p>
<p>graylox
</p></description>
		</item>
		<item>
			<title>graylox on "Review Trojan/Virus Reports"</title>
			<link>https://www.giveawayoftheday.com/forums/topic/719/page/9#post-90869</link>
			<pubDate>Wed, 11 May 2011 05:04:03 +0000</pubDate>
			<dc:creator>graylox</dc:creator>
			<guid isPermaLink="false">90869@https://www.giveawayoftheday.com/forums/</guid>
			<description><p>@ samizdat<br />
We didn&#39;t get any other report about this issue.  GOTD scans all their zip files before they release them.<br />
I too have installed this programme and scanned with several AV &#38; AntiMalware tools and didn&#39;t find anything.<br />
It is most likely a false positive, you should report it to Malwarebytes&#39; Anti-Malware as it is related to your system and you have the log file.</p>
<p>graylox
</p></description>
		</item>
		<item>
			<title>samizdat on "Review Trojan/Virus Reports"</title>
			<link>https://www.giveawayoftheday.com/forums/topic/719/page/9#post-90868</link>
			<pubDate>Wed, 11 May 2011 04:43:51 +0000</pubDate>
			<dc:creator>samizdat</dc:creator>
			<guid isPermaLink="false">90868@https://www.giveawayoftheday.com/forums/</guid>
			<description><p>hotdoge3, VirusTotal doesn&#39;t find anything but those programs are looking for viruses.  Yes, some find adware but Malwarebytes&#39; Anti-Malware, Ad-Aware, SuperAntiSpyware, etc. are different from anti-viruses in their approach to finding malware and adware.  This may be a false positive but I thought I would bring it to the attention of giveawayoftheday.com since they distributed the software and Malwarebytes&#39; Anti-Malware is one of the top three 2nd line of defense in malware and adware.</p>
<p>As for symptoms on my computer?  I just use Firefox with several ad-ons to block ads and pop-ups.  I haven&#39;t seen an internet ad or pop-up in a long time, so, even if I was infected, I wouldn&#39;t see any symptoms.  </p>
<p>The best thing to do would be for GOTD to contact the software company, notify them of the detection and if it&#39;s a false positive, Malwarebytes&#39; Anti-Malware will correct this.   Adware doesn&#39;t scare me so I left it on my system but hopefully, in a week, my scan results will be different.
</p></description>
		</item>
		<item>
			<title>Anonymous on "Review Trojan/Virus Reports"</title>
			<link>https://www.giveawayoftheday.com/forums/topic/719/page/9#post-90865</link>
			<pubDate>Wed, 11 May 2011 00:34:17 +0000</pubDate>
			<dc:creator>Anonymous</dc:creator>
			<guid isPermaLink="false">90865@https://www.giveawayoftheday.com/forums/</guid>
			<description><p>That Found Malware ? Looks like Adware to me not that bad  PC do you get Adware pop-ups ?<br />
try as scan with,<br />
<a href="http://links.giveawayoftheday.com/virustotal.com/">http://www.virustotal.com/</a></p>
<p>or</p>
<p><a href="http://links.giveawayoftheday.com/virusscan.jotti.org/">http://virusscan.jotti.org</a>
</p></description>
		</item>
		<item>
			<title>samizdat on "Review Trojan/Virus Reports"</title>
			<link>https://www.giveawayoftheday.com/forums/topic/719/page/9#post-90837</link>
			<pubDate>Tue, 10 May 2011 10:59:19 +0000</pubDate>
			<dc:creator>samizdat</dc:creator>
			<guid isPermaLink="false">90837@https://www.giveawayoftheday.com/forums/</guid>
			<description><p><strong>Subject:</strong> Fire Heart Desktop Gadget<br />
<strong>Giveaway Date:</strong> 05-01-11<br />
<strong>OS:</strong> Windows 7 x64<br />
<strong>Program That Found Malware:</strong> Malwarebytes&#39; Anti-Malware (Using Full Scan)<br />
<strong>Results:</strong> Adaware.Dropper<br />
<img src="http://www.picdepict.com/images/34084395324608086629.png">
</p></description>
		</item>
		<item>
			<title>kenojunk on "Review Trojan/Virus Reports"</title>
			<link>https://www.giveawayoftheday.com/forums/topic/719/page/9#post-90755</link>
			<pubDate>Sun, 08 May 2011 13:32:17 +0000</pubDate>
			<dc:creator>kenojunk</dc:creator>
			<guid isPermaLink="false">90755@https://www.giveawayoftheday.com/forums/</guid>
			<description><p>Has anyone experienced any virus/trojan issues with an GOTD programs lately? Last thing I downloaded was the PhotoStitcher on 5/2/11, and after that I got hit something that invaded my entire OS. It looked like a virus alert &#38; kept me from even using any browsers. Had to reimage my hard drive even after trying to clean it up. I don&#39;t download much &#38; am very careful about what I do download or click on. I realize it could have been attached to something else for a period of time before activating. Just investigating to figure out where it came from...
</p></description>
		</item>
		<item>
			<title>Anonymous on "Review Trojan/Virus Reports"</title>
			<link>https://www.giveawayoftheday.com/forums/topic/719/page/9#post-90728</link>
			<pubDate>Sat, 07 May 2011 06:13:47 +0000</pubDate>
			<dc:creator>Anonymous</dc:creator>
			<guid isPermaLink="false">90728@https://www.giveawayoftheday.com/forums/</guid>
			<description><p>not fix only update &#38; update next windows 8 come &#38; it not be fix as well</p>
<p><a href="http://links.giveawayoftheday.com/microsoft.com/technet%2Fsecurity%2Fbulletin%2FMS11-029.mspx%3FpubDate%3D2011-04-12">http://www.microsoft.com/technet/security/bulletin/MS11-029.mspx?pubDate=2011-04-12</a></p>
<p>Microsoft Security Bulletin MS11-029 - Critical<br />
Vulnerability in GDI+ Could Allow Remote Code Execution (2489979)<br />
Published: April 12, 2011</p>
<p>and good luck with finding the file to download all you get it will up date with luck on my PC Agent Ransack find PS NEW Setup 12 February 2011 and all auto updates XPsp3 fist .NET Framework 1.1 &#38; 2 a no to 3 , 3.5 &#38; 4 not like.</p>
<p>C:\Program Files\Ashampoo\Ashampoo WinOptimizer 6\gdiplus.dll 1,606.00 KB 20/03/2009 10:10:46 a.m.(ver 5.1.3102.1360)<br />
5.1.3102.1360 (xpsp2.040109-1800) gdiplus (Free ashampoo WinOptimizer 6 Timestamp Friday, 20 March 2009 ashampoo GmbH &#38; Co. KG)</p>
<p>C:\WINDOWS\system32\gdiplus.dll 1,667.00 KB 25/07/2010 9:23:22 p.m.</p>
<p>C:\WINDOWS\WinSxS\x86_Microsoft.Windows.GdiPlus_6595b64144ccf1df_1.0.0.0_x-ww_8d353f13\GdiPlus.dll 1,661.00 KB 28/08/2010 8:35:48 p.m.</p>
<p>C:\WINDOWS\WinSxS\x86_Microsoft.Windows.GdiPlus_6595b64144ccf1df_1.0.2600.5512_x-ww_dfb54e0c\GdiPlus.dll 1,684.00 KB 28/08/2010 8:35:54 p.m.</p>
<p>C:\WINDOWS\WinSxS\x86_Microsoft.Windows.GdiPlus_6595b64144ccf1df_1.0.6001.22319_x-ww_f0b4c2df\GdiPlus.dll 1,708.00 KB 14/08/2009 1:55:04 a.m.</p>
<p>C:\WINDOWS\WinSxS\x86_Microsoft.Windows.GdiPlus_6595b64144ccf1df_1.0.6002.22509_x-ww_c7dad023\GdiPlus.dll 1,708.00 KB 23/10/2010 12:51:27 p.m.
</p></description>
		</item>
		<item>
			<title>Fredward on "Review Trojan/Virus Reports"</title>
			<link>https://www.giveawayoftheday.com/forums/topic/719/page/9#post-90131</link>
			<pubDate>Sat, 16 Apr 2011 09:11:10 +0000</pubDate>
			<dc:creator>Fredward</dc:creator>
			<guid isPermaLink="false">90131@https://www.giveawayoftheday.com/forums/</guid>
			<description><p><strong>DANGER:   GDI+/JPEG Vulnerability  -  Yes, Again in 2011</strong></p>
<p>(Here&#39;s the utter joke)<br />
Microsoft Security Bulletin MS04-028<br />
Issued: September 14, 2004<br />
Updated: December 14, 2004<br />
Version: 3.0<br />
(/end joke)</p>
<p>Today is Saturday, April 16th, 2011 and yes I am referencing a document from BACK IN 2004 !</p>
<p>I&#39;m going to bet everyone reading this on the forum (bar the few who still have gdiscan.exe from SANS), has this Vulnerability again, Yes I said Again.  Even though you patched up on patch Tuesday several years ago, the chances are pretty high you have this same vulnerability again, and it&#39;s again a ticking time bomb. And the sad part is there&#39;s no simple patch then, today, nor into the future.  </p>
<p>Just a scan from my own system, and I came up with these.</p>
<p>   C:\Program Files\Alchemy Mindworks\Pagan Daybook 3\GDIPLUS.dll<br />
   Version: 5.1.3097.0 &#60;-- Vulnerable version<br />
   C:\Program Files\CS Odessa\ConceptDraw 7 Professional\gdiplus.dll<br />
   Version: 5.1.3079.3 &#60;-- Vulnerable version<br />
   C:\Program Files\Daniusoft\Video Converter\gdiplus.dll<br />
   Version: 5.1.3097.0 &#60;-- Vulnerable version<br />
   C:\Program Files\iSkysoft\FLV Converter\gdiplus.dll<br />
   Version: 5.1.3097.0 &#60;-- Vulnerable version<br />
   C:\Program Files\Maizesoft\Maize Studio\gdiplus.dll<br />
   Version: 5.1.3097.0 &#60;-- Vulnerable version<br />
   C:\Program Files\Pinnacle\VideoSpin\Programs\gdiplus.dll<br />
   Version: 5.1.3097.0 &#60;-- Vulnerable version<br />
   C:\Program Files\Power CD DVD Recovery\GdiPlus.dll<br />
   Version: 5.1.3101.0 &#60;-- Vulnerable version<br />
   C:\Program Files\TVUPlayer\GDIPLUS.DLL<br />
   Version: 6.0.3260.0 &#60;-- Vulnerable version </p>
<p>As you can see some of these came from right here on GOTD / GGOTD<br />
While, nothing sinister there, what is sinister is some of these are media related, and could have zapped me.</p>
<p><em>I have some opinion, then I will give the fix -- for now, I say for now, because who knows what happens EVERY TIME YOU INSTALL SOMETHING I GUESS WE NEED TO RESCAN?! </em></p>
<p>I post here in hopes that the software developers can be forced to get the message. And at the same time it&#39;s not an excuse to upgrade to a new version. Each of these developers ought to provide a fix, without an upgrade!  This is important, as it should not be allowed to punish the users (with an upgraded, and now non-functional de-registered vaporware trial) because of their own sloppy mistakes and work!  </p>
<p>The second thing here is the Microsoft end of the deal beginning with their lame excuse for a fix. <a href="http://links.giveawayoftheday.com/microsoft.com/technet%2Fsecurity%2Fbulletin%2Fms04-028.mspx">http://www.microsoft.com/technet/security/bulletin/ms04-028.mspx</a><br />
Frankly at this point I would not even go to Microsoft for the fix, because god only knows what you might do to your system.  Yet, We need to go there for the fix.  Yeah psyop mind game I hear ya, that&#39;s what I call it too..  </p>
<p><strong>What We need from Microsoft is the file gdiplus.dll that&#39;s it. Go Get it. Extract it, get that file gdiplus.dll your going to copy it to each place the scanner found.<br />
<a href="http://links.giveawayoftheday.com/microsoft.com/downloads%2Fen%2Fdetails.aspx%3FFamilyId%3D6A63AB9C-DF12-4D41-933C-BE590FEAA05A%26displaylang%3Den%26pf%3Dtrue">http://www.microsoft.com/downloads/en/details.aspx?FamilyId=6A63AB9C-DF12-4D41-933C-BE590FEAA05A&#38;displaylang=en&#38;pf=true</a></strong></p>
<p>Then there&#39;s the SANS Scanner.  Wonderful they pumped the tool out during all the confusion back in the day. But then for some unknown reason for a few years, it was unavailable. I mean literally a 404 error. Then suddenly today in 2011 I noticed it&#39;s back again from the twilight zone. <strong> <a href="http://links.giveawayoftheday.com/isc.sans.edu/tools%2Fgdiscan.html">http://isc.sans.edu/tools/gdiscan.html</a> You want to download the GUI cause it will just make things simpler. </strong></p>
<p><strong>Okay, you have your scanner, you have the file to fix the files scanned.<br />
You run your scanner, you rename the existing files to something else gdiplus.dll to gdiplus.dll.JUNK Pick your own named system, I don&#39;t care, delete them if you want. If you backup, then you can rollback if need be, but I don&#39;t have a need personally, so I would just delete for security sake.  Then copy the new gdiplus.dll to the same directory.  Rescan, Rinse, Repeat until the errors are gone.  </strong></p>
<p>I&#39;m sure I&#39;m missing something, and so you are welcome to fill in the blanks.  It really is lame that I have to even take the time to bring this to people&#39;s attention, but what can I say, I just found it, what am I to do, be quiet about it, watch as my friends get zapped by it?  If this thing doesn&#39;t work in your Windows 7, I don&#39;t know what to tell you to do, try setting the compatibility mode to XP, or else upgrade to WIN XP SP3 (Yeah, I am being very sarcastic.)</p>
<p>URL / TOOLS / RECAP<br />
-------------------</p>
<p>Well laid out fix Info. Helps to understand what&#39;s happening.<br />
<a href="http://links.giveawayoftheday.com/lafn.org/webconnect%2Fmentor%2FGdiJpegVulnerability%2Findex.html">http://www.lafn.org/webconnect/mentor/GdiJpegVulnerability/index.html</a></p>
<p>GDI Scan (tool) from SANS<br />
<a href="http://links.giveawayoftheday.com/isc.sans.edu/tools%2Fgdiscan.html">http://isc.sans.edu/tools/gdiscan.html</a></p>
<p>Microsoft Security Bulletin MS04-028  Horribly laid out info, adds confusion.<br />
<a href="http://links.giveawayoftheday.com/microsoft.com/technet%2Fsecurity%2Fbulletin%2Fms04-028.mspx">http://www.microsoft.com/technet/security/bulletin/ms04-028.mspx</a></p>
<p>Platform SDK Redistributable: GDI+<br />
<a href="http://links.giveawayoftheday.com/microsoft.com/downloads%2Fen%2Fdetails.aspx%3FFamilyId%3D6A63AB9C-DF12-4D41-933C-BE590FEAA05A%26displaylang%3Den%26pf%3Dtrue">http://www.microsoft.com/downloads/en/details.aspx?FamilyId=6A63AB9C-DF12-4D41-933C-BE590FEAA05A&#38;displaylang=en&#38;pf=true</a></p>
<p>In any effect, Go patch up, your welcome, enjoy! ,  or not. ;o)
</p></description>
		</item>

	</channel>
</rss>
