Menu

#167 Windows Defender reports Trojan: Win32/Maltule.C!cl

v1.0.3
closed-rejected
nobody
None
v1.0.3
5
2016-05-29
2016-05-28
StephanH
No

Just download the fixed 1.0.3 release. As soon as I installed it, I tried browsing a couple of websites from the preinstalled history list in ZDT. Windows Defender popped up and said I had Trojan: Win32/Maltule.C!cl in zdt.exe and removed the exe.

I mention the web links in case the malware somehow came from there.

I installed a second time, but Windows Defender deleted the zdt.exe file before I could even test or do a screen shot.

This is the link about that
https://www.microsoft.com/security/portal/threat/encyclopedia/entry.aspx?name=Trojan%3aWin32%2fMaltule.C!cl&threatid=2147709295&enterprise=0

Not sure what else I can test.

Discussion

  • kaya

    kaya - 2016-05-29
    • status: open --> closed-rejected
     
  • kaya

    kaya - 2016-05-29

    Thanks for the report. However, there is no trojan or virus or anything else harmful in zdt. Windows Defender is simply wrong. I just scanned zdt.exe online: 0 of 56 anti-virus programs found anything harmful.
    Here is the detailed result:
    https://www.virustotal.com/de/file/4dfc618e0c187e9c71266a6d55a04a2db6bbf32201ac56bf5e68951add5ee7fb/analysis/1464535322/
    Do your own scan with any other anti-virus program if you don't trust me.
    In order to be able to use zdt, you either have to wait until windows defender has been updated with an actual patch or you need to disable windows defender while installing zdt.

     

Log in to post a comment.