Please note that VisualCron support is not actively monitoring this community forum. Please use our contact page for contacting the VisualCron support directly.


pavel85
2016-02-10T06:18:10Z
Hi,
Just got Windows Defender alert "Malware found" with VisualCronService.exe
Setup:
  • Windws 10
  • VisualCon 8.01 Trial
  • Windows Defender:

Quote:

Antimalware Client Version: 4.9.10586.0
Engine Version: 1.1.12400.0
Antivirus definition: 1.213.5746.0
Antispyware definition: 1.213.5746.0
Network Inspection System Engine Version: 2.1.11804.0
Network Inspection System Definition Version: 115.35.0.0




Reports:
Quote:

Category: Trojan

Description: This program is dangerous and executes commands from an attacker.

Recommended action: Remove this software immediately.

Items:
file:C:\Program Files (x86)\VisualCron\VisualCronService.exe
service:VisualCron

Get more information about this item online.
 



Windows Event Viewer:

Warning
Quote:

Windows Defender has detected malware or other potentially unwanted software.
For more information please see the following:
http://go.microsoft.com/...e=Trojan:Win32/Pocyx.gen !B!plock&threatid=2147707587&enterprise=0
Name: Trojan:Win32/Pocyx.gen!B!plock
ID: 2147707587
Severity: Severe
Category: Trojan
Path: file:_C:\Program Files (x86)\VisualCron\VisualCronService.exe;service:_VisualCron
Detection Origin: Local machine
Detection Type: FastPath
Detection Source: System
User: NT AUTHORITY\SYSTEM
Process Name: Unknown
Signature Version: AV: 1.213.5746.0, AS: 1.213.5746.0, NIS: 115.35.0.0
Engine Version: AM: 1.1.12400.0, NIS: 2.1.11804.0


Information
Quote:

Windows Defender has taken action to protect this machine from malware or other potentially unwanted software.
For more information please see the following:
http://go.microsoft.com/...e=Trojan:Win32/Pocyx.gen !B!plock&threatid=2147707587&enterprise=0
Name: Trojan:Win32/Pocyx.gen!B!plock
ID: 2147707587
Severity: Severe
Category: Trojan
Path: file:_C:\Program Files (x86)\VisualCron\VisualCronService.exe;service:_VisualCron
Detection Origin: Local machine
Detection Type: FastPath
Detection Source: System
User: NT AUTHORITY\SYSTEM
Process Name: Unknown
Action: Quarantine
Action Status: To finish removing malware and other potentially unwanted software, restart the computer.
Error Code: 0x00000000
Error description: The operation completed successfully.
Signature Version: AV: 1.213.5746.0, AS: 1.213.5746.0, NIS: 115.35.0.0
Engine Version: AM: 1.1.12400.0, NIS: 2.1.11804.0

Sponsor
Forum information
Support
2016-02-10T08:19:51Z
This is a false/positive detect - but if you can please submit it so they can remove it. http://www.techsupportal...-antivirus-detection.htm 
Henrik
Support
http://www.visualcron.com 
Please like  VisualCron on facebook!
Support
2016-02-10T12:53:56Z
Please update to the latest Virus definitions. We could not detect anything with that version.
Henrik
Support
http://www.visualcron.com 
Please like  VisualCron on facebook!
pavel85
2016-03-28T15:22:32Z
Just got another false-positive detection with latest Virus definitions.

Quote:

Antimalware Client Version: 4.9.10586.0
Engine Version: 1.1.12505.0
Antivirus definition: 1.215.3137.0
Antispyware definition: 1.215.3137.0
Network Inspection System Engine Version: 2.1.11804.0
Network Inspection System Definition Version: 115.44.0.0




VisualCron 8.0.2

Quote:

Category: Trojan

Description: This program is dangerous and executes commands from an attacker.

Recommended action: Remove this software immediately.

Items:
file:C:\Program Files (x86)\VisualCron\VisualCronService.exe
service:VisualCron

Get more information about this item online.



When I try to restore item from quarantine, I get error
Capture.PNG
Help opens this LINK 
Scroll to Top