Latest webroot update MIS-IDENTIFYING a lot of valid programs

  • 25 April 2017
  • 1 reply
  • 7 views

Userlevel 1
Update that happened i assume sometime yesterday has generated a raft of FALSE POSITIVES quarantining many program files from HCSS, security software DVR software, HP protect tools, HP Pagewide driver(scanning andother) and many more.
 
this is  a critical issue - will be logging a support incident but posting here as well.
 
SAMPLES
 
SCANTOPCACTIVATIONAPP.EXE, %programfiles%hphp pagewide pro 577 mfpin, W32.Trojan.Gen,   http://snup.webrootcloudav.com/SkyStoreFileUploader/upload.aspx?MD5=8DA110FE3353EFDE7C034C6BDC0EDE1E 8DA110FE3353EFDE7C034C6BDC0EDE1E, 1 hour 7 mins 43 secs
HP PAGEWIDE PRO 577 MFP.EXE, %programfiles%hphp pagewide pro 577 mfpin, W32.Trojan.Gen,   http://snup.webrootcloudav.com/SkyStoreFileUploader/upload.aspx?MD5=C49C01AD41589F45F5CE68DD6FA61A32 C49C01AD41589F45F5CE68DD6FA61A32, 1 hour 6 mins 26 secs
HPQDTSS.EXE, %programfiles%hphp pagewide pro 577 mfpin, W32.Trojan.Gen,   http://snup.webrootcloudav.com/SkyStoreFileUploader/upload.aspx?MD5=AA6454A353549F847AA03B5BFD3429F6 AA6454A353549F847AA03B5BFD3429F6, 1 hour 6 mins 29 secs
DEVICESETUP.EXE, %programfiles%hphp pagewide pro 577 mfpin, W32.Trojan.Gen,   http://snup.webrootcloudav.com/SkyStoreFileUploader/upload.aspx?MD5=EF7873BD3FFC021083893858B001C738 EF7873BD3FFC021083893858B001C738, 1 hour 6 mins 29 secs  
INSTANCEFINDERDLG.EXE, %programfiles%hphp pagewide pro 577 mfpin, W32.Trojan.Gen,   http://snup.webrootcloudav.com/SkyStoreFileUploader/upload.aspx?MD5=579A200E172A1470A1A5E98411471433 579A200E172A1470A1A5E98411471433, 1 hour 6 mins 29 secs
SENDAFAX.EXE, %programfiles%hphp pagewide pro 577 mfpin, W32.Trojan.Gen,   http://snup.webrootcloudav.com/SkyStoreFileUploader/upload.aspx?MD5=03CF061E770F303BDF661DE8FBD5D491 03CF061E770F303BDF661DE8FBD5D491, 1 hour 6 mins 29 secs
HPQLPVWR.EXE, %programfiles%hphp pagewide pro 577 mfpinhelpviewer, W32.Trojan.Gen,   http://snup.webrootcloudav.com/SkyStoreFileUploader/upload.aspx?MD5=E0D325B53A3F11D952C8A1FE22180989 E0D325B53A3F11D952C8A1FE22180989, 1 hour 6 mins 29 secs
HPSCAN.EXE, %programfiles%hphp pagewide pro 577 mfpin, W32.Trojan.Gen,   http://snup.webrootcloudav.com/SkyStoreFileUploader/upload.aspx?MD5=E47744F615B5C580415934496696E977 E47744F615B5C580415934496696E977, 1 hour 6 mins 29 secs  
SETUP.EXE, %programfiles%sis uninstall information{32c8e300-bdb4-4398-92c2-e9b7d8a233db}, W32.Trojan.Gen,   http://snup.webrootcloudav.com/SkyStoreFileUploader/upload.aspx?MD5=2B1018AEB5F2A856B42D6675A0503065 2B1018AEB5F2A856B42D6675A0503065, 4 hours 55 mins 24 secs                
HPSMARTDEALS.EXE, %programfiles%hphp pagewide pro 577 mfpin, W32.Trojan.Gen,   http://snup.webrootcloudav.com/SkyStoreFileUploader/upload.aspx?MD5=D8714B72DB0ABD27517B5F52870B2F48 D8714B72DB0ABD27517B5F52870B2F48, 1 hour 6 mins 29 secs
 
MB3-SETUP-CONSUMER-3.0.6.1469 CU3 FEB24.EXE, ?:11 deletable junk11-clean, W32.Trojan.Gen,   http://snup.webrootcloudav.com/SkyStoreFileUploader/upload.aspx?MD5=70B26971A406B49D4EE659539EBD895F 70B26971A406B49D4EE659539EBD895F, 56 days 22 hours 58 mins 57 secs          
CLOUDMANAGEMENTCONSOLE.EXE, %programfiles%cloudmanagementconsole, W32.Trojan.Gen,   http://snup.webrootcloudav.com/SkyStoreFileUploader/upload.aspx?MD5=A3442F5DAEDEC5D7D1770996D66224CC A3442F5DAEDEC5D7D1770996D66224CC, 17 days 23 hours 49 mins 25 secs        
UNINSTALL.EXE, %programfiles%cloudmanagementconsole, W32.Trojan.Gen,   http://snup.webrootcloudav.com/SkyStoreFileUploader/upload.aspx?MD5=3DA78E6EC17EAA03969B414209D793FC 3DA78E6EC17EAA03969B414209D793FC, 17 days 23 hours 49 mins 24 secs         
BACKUPMANAGER.EXE, %programfiles%cloudmanagementconsole, W32.Trojan.Gen,   http://snup.webrootcloudav.com/SkyStoreFileUploader/upload.aspx?MD5=C7BE4B9C71E9129DDADB32B90045AAA6 C7BE4B9C71E9129DDADB32B90045AAA6, 17 days 23 hours 49 mins 24 secs       
WEBACTIVEEXE.EXE, %programfiles%webrecweb30dvr323.1.0.5, W32.Trojan.Gen,   http://snup.webrootcloudav.com/SkyStoreFileUploader/upload.aspx?MD5=9CA28A8FB9D22C6D18B191CC8677618D 9CA28A8FB9D22C6D18B191CC8677618D, 169 days 4 hours 2 mins 6 secs
HPINKINSD611.EXE, %temp%7zs39d8amd64, W32.Trojan.Gen,   http://snup.webrootcloudav.com/SkyStoreFileUploader/upload.aspx?MD5=EFEE7DF6CF58069B49A1E9D93042D99E EFEE7DF6CF58069B49A1E9D93042D99E, 61 days 4 hours 3 mins 8 secs  
HP-DQEX5.EXE, %temp%7zs39d8, W32.Trojan.Gen,   http://snup.webrootcloudav.com/SkyStoreFileUploader/upload.aspx?MD5=77109D6454EEA2523C2CFE762A6E440C 77109D6454EEA2523C2CFE762A6E440C, 61 days 4 hours 3 mins 8 secs  
HPPE.EXE, %temp%7zs39d8amd64, W32.Trojan.Gen,   http://snup.webrootcloudav.com/SkyStoreFileUploader/upload.aspx?MD5=C084A538EB007F5CE0C98260938A7B6F C084A538EB007F5CE0C98260938A7B6F, 61 days 4 hours 3 mins 8 secs  
HPPE.EXE, %temp%7zs39d8x86, W32.Trojan.Gen,   http://snup.webrootcloudav.com/SkyStoreFileUploader/upload.aspx?MD5=0F6FAD9DE0A23728CAD13730B70ECF93 0F6FAD9DE0A23728CAD13730B70ECF93, 61 days 4 hours 3 mins 8 secs
SETUP.EXE, %temp%7zs39d8, W32.Trojan.Gen,   http://snup.webrootcloudav.com/SkyStoreFileUploader/upload.aspx?MD5=066F33173425960E721DF5264A5E60E2 066F33173425960E721DF5264A5E60E2, 61 days 4 hours 3 mins 8 secs  
HPCUSTPARTICUI.EXE, %programfiles%hphp pagewide pro 577 mfpin, W32.Trojan.Gen,   http://snup.webrootcloudav.com/SkyStoreFileUploader/upload.aspx?MD5=E3E4CAFC1ABC1B2B047E7BE2EB13885D E3E4CAFC1ABC1B2B047E7BE2EB13885D, 61 days 3 hours 59 mins 54 secs            
HPCUSTPARTIC.EXE, %programfiles%hphp pagewide pro 577 mfpin, W32.Trojan.Gen,   http://snup.webrootcloudav.com/SkyStoreFileUploader/upload.aspx?MD5=8DD2DD7D3BAAECD63C7CCAC1E1F16FDB 8DD2DD7D3BAAECD63C7CCAC1E1F16FDB, 61 days 3 hours 59 mins 36 secs
DPAGENT.EXE, %programfiles%hphp protecttools security managerin, W32.Trojan.Gen,   http://snup.webrootcloudav.com/SkyStoreFileUploader/upload.aspx?MD5=972D70517585B148E197968CECE26E44 972D70517585B148E197968CECE26E44, 54 days 1 hour 57 mins 28 secs               
DIGITALPERSONA.HPPT.CONSOLE.EXE, %programfiles%hphp protecttools security managerin, W32.Trojan.Gen,   http://snup.webrootcloudav.com/SkyStoreFileUploader/upload.aspx?MD5=99B9AF07D36B00E621012CC5407B84E3 99B9AF07D36B00E621012CC5407B84E3, 54 days 1 hour 55 mins 21 secs              
HPWORKWISEPRINTER.EXE, %programfiles%hphp workwise, W32.Trojan.Gen,   http://snup.webrootcloudav.com/SkyStoreFileUploader/upload.aspx?MD5=E5908721FA54882710F69440CD83EEB5 E5908721FA54882710F69440CD83EEB5, 54 days 1 hour 55 mins 21 secs               
HPWORKWISETRAY.EXE, %programfiles%hphp workwise, W32.Trojan.Gen,   http://snup.webrootcloudav.com/SkyStoreFileUploader/upload.aspx?MD5=58D3AB85229A40AF39CB03883F03A29A 58D3AB85229A40AF39CB03883F03A29A, 54 days 1 hour 54 mins 57 secs

1 reply

Userlevel 7
Hello @,
 
Please view our updated thread for the most up-to-date information relating to this.

Reply