I believe I’ve got more false positives. They have been on the pc for some time and like the ones I sent in a couple of weeks ago they are part of the slipstreaming I do. At present Jotti and Virus Total are backed up badly. I’ll forward the files when I can get in and check them at one of those sites. For what’s it’s worth this is a beta addon pack for the Net Framework software, and here is the log from today.
11/18/2007 10:32:24 AM Joe_1 3460 Sign of “Win32:Subot-H [trj]” has been found in
“C:\Documents and Settings\Joe_1\My Documents\Downloads\dotnetaio.exe” file.
11/18/2007 11:07:41 AM Joe_1 3460 Sign of “Win32:Subot-H [trj]” has been found in
“H:\My Documents\Backups\Ryan’s Stuff\dotnetaio.exe” file.
11/18/2007 11:23:57 AM Joe_1 3460 Sign of “Win32:Subot-H [trj]” has been found in
"H:\System Volume
Information_restore{BAC570EC-A4E1-41CC-9CF6-BFED2D0AF7D7}\RP263\A0088862.exe" file.
11/18/2007 11:29:35 AM Joe_1 3460 Sign of “Win32:Subot-H [trj]” has been found in
“J:\Backups\Ryan’s Stuff\dotnetaio.exe” file.
11/18/2007 11:47:07 AM Joe_1 3460 Sign of “Win32:Subot-H [trj]” has been found in
"J:\System Volume
Information_restore{BAC570EC-A4E1-41CC-9CF6-BFED2D0AF7D7}\RP263\A0088863.exe" file.
Thanks for the help
Joe