Beta Build 5.3.80.758b shows Norton virus threat: WS:Reputation.1

bpratt

Member
Tried to install Build 5.3.80.758b and got a Norton Security threat WS.Reputation.1

Filename: vrdtvsh264-5-3-80-758b.exe
Threat name: WS.Reputation.1Full Path: d:\downloads\videoredo\tv suite version 5\vrdtvsh264-5-3-80-758b.exe

____________________________

____________________________


On computers as of*
11/2/2017 at 10:57:05 AM

Last Used*
11/2/2017 at 10:59:18 AM

Startup Item*
No

Launched*
No

Threat type: Insight Network Threat. There are many indications that this file is untrustworthy and therefore not safe


____________________________


vrdtvsh264-5-3-80-758b.exe Threat name: WS.Reputation.1
Locate


Very Few Users
Fewer than 5 users in the Norton Community have used this file.

Very New
This file was released less than 1 week *ago.

Medium
This file risk is medium.


____________________________


http://www.videoredo.net/beta/VRDTVSH264-5-3-80-758b.exe
Downloaded File from videoredo.net
Source: External Media

vrdtvsh264-5-3-80-758b.exe

____________________________


File Thumbprint - SHA:
2c9016da009ffdd0f03676962a5d501257652d8d63e828511e0c9225dd0f3816
File Thumbprint - MD5:
ade0064c28bb180462765a348752a253
 

Dan203

Senior Developer
Staff member
It's a false positive. Happens all the time. The security software we use to protect VideoReDo encrypts some of the DLLs. Encryption causes random sequences of bytes. Sometimes these random sequences of bytes match the antivirus pattern for some known virus and triggers a warning. But the actual code isn't run until it's decrypted so the bytes being executed aren't actually the ones the AV software detected as a threat. It's random, and the keys are changed with every build, so we never know which bytes are going to be generated so there is no way for us to prevent these false positives. All I can do is assure you there is no threat and suggest that you add an exception to your AV software for the VRD install folder to prevent this in the future.
 

bdg2

Member
If your anti-virus is any good it will automatically submit the file (or the relevant part of it) as a sample to the AV company and the false positive will be corrected in a day or two if not quicker.
 
Top Bottom