4 Replies Latest reply on Dec 22, 2010 11:07 AM by bcaseiro

    cmdow.exe - why delete now?

      Running VSE8.7i Patch 3

      Ref Generic.dx!vei (cmdow.exe version 1.4.2)  - found in threat library under http://www.mcafee.com/threat-intelligence/malware/default.aspx?id=325341, but  and Generic.Tra!cd4d4e9b8f8a (cmdow.exe version 1.4.3) not found in the threat library.

      Following the update from DAT 6202, the file cmdow.exe (detected as above) is being deleted from my customers machines.  This becomes a problem since we use this for hiding windows during automated installs.  We understand that this has been marked as a potential hacking tool (for sometime).  We can add an exclusion, but what we are specifically wish to understand is what has changed to elevate this to being detected and the file being deleted as I cannot find any further information or details?