Jump to content

[Solved] Kaspersky Pure 3.0 flags wintoolkit a malware


Recommended Posts

Posted

Just a thought - if you are going to advise folk to disable their AV it might be worth recommending disconnecting from the internet while they have it disabled. That recommendation troubled me somewhat,

Posted

Many thanks for doing that. YOu will have a full apology from me once wireshark gives me a clean log. I want to do this the right way this time ;-)

Posted

I'll suggest that to the author. It is a common recommendation for applications like this though (nLite, vLite, Xplite and so-on) as av programs can really slow the process down and occasionally screw up the source your trying to modify.

Posted

I began with a Windows 7 retail ISO image and integrated all security updates downloaded my Windows Updates Downloader. There is no traffic of any concern in my Wireshark capture. I did some of the run with my VM's antivirus disabled and it all looked OK. It seemed a lot faster in the VM - perhaps this is due to my using different antivirus.

 

Total time for the integration run was 50mins 5 secs. I did not attempt to run Windows Updates Downloader at any point - I simply used files that it downloaded previously. My next step is to run Windows Updates Downloader in a VM with Kaspersky Pure 3.0, then WinToolkit in a VM with Kaspersky Pure 3.0 to see what happens.

 

I found no evidence that there is anything untoward about WinToolkit. I am satisfied that WinToolkit contains nothing untoward, and is safe to use. I have therefore issued a full retraction on my website, and I apologise unreservedly for the problems I have caused here this evening.

 

Andrew Pattison.

Posted

I have put a request on the Kaspersky forums for an explanation as to why Pure 3.0 is red flagging the installer version of WinToolkit. I suspect that it doesn't like the crapware that the installer contains, since the portable version is not getting red flagged.

Join the conversation

You can post now and register later. If you have an account, sign in now to post with your account.

Guest
Reply to this topic...

×   Pasted as rich text.   Paste as plain text instead

  Only 75 emoji are allowed.

×   Your link has been automatically embedded.   Display as a link instead

×   Your previous content has been restored.   Clear editor

×   You cannot paste images directly. Upload or insert images from URL.

×
×
  • Create New...