BlackBerry Forums Support Community               

Closed Thread
 
LinkBack Thread Tools
Old 10-06-2008, 02:31 PM   #1 (permalink)
Thumbs Must Hurt
 
Join Date: Jul 2008
Location: Leeds
Model: 8800
OS: 4.5.0.124
Carrier: Orange
Posts: 84
Post Thanks: 0
Thanked 0 Times in 0 Posts
Exclamation Spyware in desktop manager

Please Login to Remove!

I have dm version 4.2.2.12 March 19 2007 installed and the application loader kept disappearing, if I did an install/repair everything would be ok for a few days and then the same would happen. I eventually found that it was the anti-spyware part of system mechanic pro 8 that was reporting, and deleting, spyware called Trustinbar in the desktop manager, and thus removing the application loader. I have put Trustinbar in to the forum search with no result, am I the only one?, is it spyware or false detection.
Offline  
Old 10-06-2008, 02:43 PM   #2 (permalink)
Crimson Tide Moderator
 
JSanders's Avatar
 
Join Date: Oct 2004
Location: North of the moss line
Model: 9xx0
OS: 7.0sumtin
PIN: t low
Carrier: Verizon
Posts: 41,907
Post Thanks: 60
Thanked 244 Times in 182 Posts
Default

False detection, I expect.

If you downloaded the DM installer file from the RIM sites, you won't be getting any spyware.
Offline  
Old 10-06-2008, 02:56 PM   #3 (permalink)
Thumbs Must Hurt
 
Join Date: Jul 2008
Location: Leeds
Model: 8800
OS: 4.5.0.124
Carrier: Orange
Posts: 84
Post Thanks: 0
Thanked 0 Times in 0 Posts
Default

As far as I remember I just followed the link in Blackberry FAQ, I've just had a look now with a view to downloading it again but it takes about 90 minutes so I will do it tomorrow.
Thanks.
Offline  
Old 10-06-2008, 09:01 PM   #4 (permalink)
BBF Spam Killer Moderator
 
daphne's Avatar
 
Join Date: May 2007
Location: on a sunny beach
Model: Z30
OS: 10.2.1.12
PIN: X1ZPY34K
Carrier: VZW
Posts: 9,169
Post Thanks: 122
Thanked 146 Times in 116 Posts
Default

That had to be a false positive.

Unless you downloaded Desktop Manager from a warez or p2p site, then it could be infected with anything.

From what I see on their website, it looks like System Mechanic Pro is using Microsoft's One Care anti-virus/anti-spyware. There shouild be a way within the program to report false positives, but I don't use One Care so I'm not sure.

If you get that detection again, you can upload the file in question to this site where it will be scanned by 36 anti-virus programs.

VirusTotal - Free Online Virus and Malware Scan
__________________
Report spam text messages to 7726
#BlackBerry by choice #BlacBerry 10 is here!
Offline  
Old 10-10-2008, 02:12 PM   #5 (permalink)
Thumbs Must Hurt
 
Join Date: Jul 2008
Location: Leeds
Model: 8800
OS: 4.5.0.124
Carrier: Orange
Posts: 84
Post Thanks: 0
Thanked 0 Times in 0 Posts
Default

Just to be on the safe side I downloaded DM again and SM Pro still detects spyware in the Roxio media manager, I have another problem with SM Pro which they are trying to sort out so I will go along with what you guys are saying and assume it is false reporting. When Iolo have sorted the other problem I will ask about this specific threat reporting.
Thanks
Offline  
Old 10-11-2008, 12:56 AM   #6 (permalink)
BBF Spam Killer Moderator
 
daphne's Avatar
 
Join Date: May 2007
Location: on a sunny beach
Model: Z30
OS: 10.2.1.12
PIN: X1ZPY34K
Carrier: VZW
Posts: 9,169
Post Thanks: 122
Thanked 146 Times in 116 Posts
Default

Is it detecting a file, or a registry key? Is there a scan report or log you can post?
__________________
Report spam text messages to 7726
#BlackBerry by choice #BlacBerry 10 is here!
Offline  
Old 10-11-2008, 01:44 PM   #7 (permalink)
Thumbs Must Hurt
 
Join Date: Jul 2008
Location: Leeds
Model: 8800
OS: 4.5.0.124
Carrier: Orange
Posts: 84
Post Thanks: 0
Thanked 0 Times in 0 Posts
Default

Hi Daphne,
The closest I can get to a log is a screen print, in my last post I refered to the Roxio media manager as being the problem part, this is not true, it's the app loader.
Attached Files
File Type: doc Doc3.doc (87.0 KB, 5 views)
Offline  
Old 10-11-2008, 04:20 PM   #8 (permalink)
BBF Spam Killer Moderator
 
daphne's Avatar
 
Join Date: May 2007
Location: on a sunny beach
Model: Z30
OS: 10.2.1.12
PIN: X1ZPY34K
Carrier: VZW
Posts: 9,169
Post Thanks: 122
Thanked 146 Times in 116 Posts
Default

Hi ackers,

Here's a screenshot of the actual file shown in your picture.



You can see it is labeled with Research In Motion's name, and it's digitally signed by RIM also.

You can view the file on your PC by navigating to this location in Windows:
C:\Program Files\Common Files\Research In Motion\AppLoader

Your file should look the same as mine. Right-click the file and go to Properties and you should see the same thing that's in my screenshot. Mine may be a slightly different version of the file depending on what version of Desktop Manager you have installed.

But I'm 100% sure that System Mechanic Pro is giving you a false positive. There should be a way in the program to tell it to not detect that -- to mark it as safe so you don't keep getting the false positive results. But Iolo needs to fix that because it's really a bad false positive.

If you want to contact them and send them a link to this thread, it might help.

Edit to add...
I scanned the file online with 36 anti-virus scanners and none of them detect it. It's definitely not spyware and Iolo is giving you a false positive.

Virustotal. MD5: afa1040f4b31fb61cc9eb25a1849a55f
__________________
Report spam text messages to 7726
#BlackBerry by choice #BlacBerry 10 is here!

Last edited by daphne : 10-11-2008 at 04:27 PM. Reason: to add...
Offline  
Old 10-12-2008, 05:09 AM   #9 (permalink)
Thumbs Must Hurt
 
Join Date: Jul 2008
Location: Leeds
Model: 8800
OS: 4.5.0.124
Carrier: Orange
Posts: 84
Post Thanks: 0
Thanked 0 Times in 0 Posts
Default

Hi daphne, my apploader file is the same as yours, I can choose to ignore it, which I have done, I will let them know about this as it may be related to the current problem I have. I will post the result but you know what tech support is like, it could take some time.
Thanks, Ackers
Offline  
Closed Thread


Thread Tools

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

vB code is On
Smilies are On
[IMG] code is On
HTML code is Off
Trackbacks are On
Pingbacks are On
Refbacks are On





Copyright 2004-2014 BlackBerryForums.com.
The names RIM and BlackBerry are registered Trademarks of BlackBerry Inc.