Avid Pro Audio Community

Avid Pro Audio Community

How to Join & Post  •  Community Terms of Use  •  Help Us Help You

Knowledge Base Search  •  Community Search  •  Learn & Support


Avid Home Page

Go Back   Avid Pro Audio Community > General Discussion & Off Topic > General Discussion
Register FAQ Today's Posts Search

Reply
 
Thread Tools Search this Thread Display Modes
  #1  
Old 09-18-2017, 05:02 PM
risey's Avatar
risey risey is offline
Member
 
Join Date: Jul 2009
Location: United Kingdom
Posts: 160
Default Urgent admin attention needed (security)

Hi there, Norton is flagging all AVID links including the forum as unsafe, I investigated further by going to https://safeweb.norton.com/report/show?url=avid.com and a zip file on your server has a trojan in it. All users with Norton will get this unsafe message. I also noticed AVID server was down for a while today as I could not sign in....
__________________
http://www.PhatMonkey.me
Windows 10 64bit | Asus Rog Hero Xi | Intel i9-9900K | Corsair LPX Vengeance 64g DDR4 RAM | Avid Mbox Pro 3 | Focusrite 18i20 2nd Gen | MSI RTX 2080TI Gaming X Trio | Acer Z35 Predator Monitor
Reply With Quote
  #2  
Old 09-18-2017, 05:19 PM
Carl Kolchak Carl Kolchak is offline
Member
 
Join Date: Dec 2004
Location: U.K.
Posts: 2,201
Default Re: Urgent admin attention needed (security)

Funnily enough, I encountered the same thing - several downloads were taking hours, and failing.

I ended up trying to download at another facility, and they encountered the Norton problem - their admin got in a flap, and refused to allow me to visit the site, let alone log in and download anything.

Don't know if it was just today, or if Norton always has this problem - but as a precaution, it made me think twice about accessing Avid.com on the studios Mac.


Sent from my iPhone using Tapatalk
Reply With Quote
  #3  
Old 09-18-2017, 07:01 PM
Darryl Ramm Darryl Ramm is offline
Member
 
Join Date: Nov 2010
Location: USA
Posts: 19,657
Default Urgent admin attention needed (security)

You should be treating these warnings as likely wrong. Lots of false positives that waste you time. Although, sure Avid should check.

Most software vendors, and I hope Avid as well do pretty thoughtful AV inspection of files they publish. It's pretty standard practice to run ever file though multiple AV checkers before publishing, and I would hope Avid does that.

But in general I have an easy solution. Uninstall Norton from your PC. Poor quality AV software *is* the virus destroying your computer.



Sent from my iPhone using Tapatalk
Reply With Quote
  #4  
Old 09-19-2017, 02:37 AM
risey's Avatar
risey risey is offline
Member
 
Join Date: Jul 2009
Location: United Kingdom
Posts: 160
Default Re: Urgent admin attention needed (security)

As you can see Norton has found the suspicious zip file on their server causing the problems, whether false positive or not. As for uninstalling Norton, no chance, I been using Norton since 1999 and along side Malwarebytes they have saved my ass many times :P

__________________
http://www.PhatMonkey.me
Windows 10 64bit | Asus Rog Hero Xi | Intel i9-9900K | Corsair LPX Vengeance 64g DDR4 RAM | Avid Mbox Pro 3 | Focusrite 18i20 2nd Gen | MSI RTX 2080TI Gaming X Trio | Acer Z35 Predator Monitor
Reply With Quote
  #5  
Old 09-19-2017, 03:57 AM
Raphie Raphie is offline
Member
 
Join Date: Jul 2014
Location: NL
Posts: 71
Default Re: Urgent admin attention needed (security)

False positive

Trojan.Gen is a generic detection for many individual but varied Trojans for which specific definitions have not been created. A generic detection is used because it protects against many Trojans that share similar characteristics.

Trojan horse programs pose as legitimate programs or files that users may recognize and want to use. They rely on this trick to lure a user into inadvertently running the Trojan. Often a Trojan will mimic a well known legitimate file name or pose as a particular type of file, like a .jpg or .doc file to trick a user.

Distribution of Trojans on to compromised computers occurs in a variety of ways. From email attachments and links to instant messages, drive-by downloads and being dropped by other malicious software. Once installed on the compromised computer, the Trojan begins to perform the predetermined actions that it was designed for.
Antivirus Protection Dates
Reply With Quote
  #6  
Old 09-19-2017, 05:05 AM
JoelG's Avatar
JoelG JoelG is offline
Moderator
 
Join Date: Mar 2010
Location: Canada
Posts: 2,115
Default Re: Urgent admin attention needed (security)

I'm not sure whether there is anything to be worried about (probably not), but that file appears to be a time server setup file used for Avid Interplay, in case anyone was curious: http://resources.avid.com/SupportFil...ms%20Rev.E.pdf

I would never run a Windows system without an AV, but I would agree that Norton is probably more of a problem then solution..

Joel
__________________
Jam Space:
HP Elite 6300 / Core i5 3770 / 24GB RAM / Win 11 Pro
Pro Tools HD / Focusrite 18i20 + M-Audio ProFire 2626

Home:
Asus B450 Pro4 / Ryzen 5 2600 / 32GB RAM / Win 11 Pro
Pro Tools HD / Focusrite 18i20 + M-Audio ProFire 2626

Rig:
Eleven Rack / ART SLA1 / Two 2x10 Passive Monitors / FCB1010 w/ EurekaPROM
Reply With Quote
  #7  
Old 09-19-2017, 05:35 AM
DJ Hellfire DJ Hellfire is offline
Member
 
Join Date: Jul 2008
Location: New Jersey
Posts: 2,072
Default Re: Urgent admin attention needed (security)

Norton sucks. It uses a ridiculous amount of system resources. In my PC days, I ran AVG Free and never had an issue. It's lightweight and doesn't require you to install a bunch of bloatware, at least not the last time I used it. Haven't ran a PC since 2013, and even then, 2011-2013 I ran it with no anti-virus at all and just stayed away from any suspect sites. Never had an issue outside of one client bringing an infected flash drive. A quick google search and I was able to find and remove that virus manually, and never plugged anyone's drive into the computer again. That $1000 PC build ran exceptionally well until I sold it for barely $200 (minus ebay/paypal fees) two years after building it.
__________________
www.HellfireBeats.com

UAD 2 Apollo Quad w/Thunderbolt 3, UAD 2 Satellite Octo TB3, UAD 2 Octo PCIe, Avid S1, Neve R6 500 Chasis, Neve Portico 511, Neve Portico 551, Dangerous DBox+, Focal Trio6 Be, Neumann TLM49, Akai MPC 2000XL, Akai MPC X, Mackie 1202VLZ Pro, Akai Advance 61

Pro Tools 2021.12

Mac Pro 7,1 2019, 8 Core, 48GB RAM - MacOS 11.6.2

16" MacBook Pro 2021, M1 Pro, 16GB RAM - MacOS 12.1

27" iMac, Late-2012, 3.4GHz i7, 24GB RAM - MacOS 10.15
Reply With Quote
  #8  
Old 09-19-2017, 09:12 AM
jeffro's Avatar
jeffro jeffro is offline
Member
 
Join Date: Jun 1999
Location: PNW
Posts: 10,212
Default Re: Urgent admin attention needed (security)

It's a false positive. That file has been there for over a year with no problems reported. We even scanned it again (still clean) and then removed it (yesterday). Norton is still flagging our site. They said they need to rescan our site so we are pursuing that (they said the process could take 15-20 days).
__________________
linkedin
Reply With Quote
  #9  
Old 09-19-2017, 10:40 AM
Darryl Ramm Darryl Ramm is offline
Member
 
Join Date: Nov 2010
Location: USA
Posts: 19,657
Default Re: Urgent admin attention needed (security)

The best protection against trojanware is not any AV software, it's the wetware between your ears. Given the false positives, number of zero day exploits and overall impact of, and vulnerabilities themselves in AV software it is far from a natural to just assume it is a good idea. Or to think it is "saving your ass" just because it's flagging alerts... many of them can be false.

The best thing is don't download any crap you don't need to to a production DAW, don't use it to surf the internet or do email and don't allow other muppets who don't need to to touch the computer, connect drives etc. to it. And if you do need to move stuff to the computer stage it through a different computer and run AV software on the files there. Keeping a DAW stable often means tuning off OS automatic updates, which makes the computer vulnerable to attack... but many of those still require sloppy user actions. If you are not automatically or manually pulling latest OS updates for stability reasons then it's even more important to keep the computer offline/away from idiot users.
Reply With Quote
  #10  
Old 09-19-2017, 11:17 AM
panamajack's Avatar
panamajack panamajack is offline
Member
 
Join Date: Jan 2011
Location: Miniappleapolis
Posts: 713
Default Norton Anti-Virus telling me Avid site is "unsafe"

Been accessing the DUC from a PC with Norton Anti-Virus running in the background for more than a year. I have PT installed on other computers. Downloaded a few user manuals recently. Now Norton Anti-Virus has flagged a directory that is telling me a file Norton calls "Trojan.Gen.2" is hiding there. Partial url is:

http://resources.avid.com/SupportFil...eSync/NTPprep_

Is Avid's site good to go or has Norton stumbled on a dormant virus lurking in the support files?
__________________
PT10.3.10HD(Tyan s2932 [8core Shanghai 2.7GHZ] 32GB,Win7 SP1); PT10HD(Tyan s2892 w/10GB, Win7 SP1);PT8HD(Dell 690 quad Xeon 3.0, 8GB, Win7,192 I/O, 96 I/O);MacBook Pro: 11R, Apogee Element 46, Focusrite 8PreX PT HD 11.3.2; Mac Pro 3.47 Hex 32GB, OSX 10.12.6/L10.4.2;L9.1.8, 2.64TB; G5 D2.3 4GB, 10.4.11/L8; 12c MP 2.66/32GB PT12.4; Structure, GigaGS3, Kontakt 5, Garratin, Sibelius 8.7+, Finale26,EMU,Vegas Pro 16-10/; RME HDSP9652,MOTU 2408 MKIII/1224/308, FX,Kurz,L5s,Strat,ASAT,JB,Zon
Reply With Quote
Reply


Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is Off

Forum Jump

Similar Threads
Thread Thread Starter Forum Replies Last Post
Admin Access still needed in 10.5? blurrywagon Pro Tools TDM Systems (Mac) 3 09-15-2008 08:23 PM
Security Updates: Confirmation of Support needed Sonny in London 003, Mbox 2, Digi 002, original Mbox, Digi 001 (Mac) 0 01-13-2007 06:32 PM
Urgent...help needed...please lemix 003, Mbox 2, Digi 002, original Mbox, Digi 001 (Win) 7 08-15-2004 08:25 AM
Attention users of pro tools le 5.3.3 for windows xp help needed Badly!!!!! Jason P. General Discussion 1 05-25-2003 05:25 PM
Urgent HELP needed ! smack Pro Tools TDM Systems (Mac) 6 11-11-1999 06:21 PM


All times are GMT -7. The time now is 01:53 PM.


Powered by: vBulletin, Copyright ©2000 - 2008, Jelsoft Enterprises Limited. Forum Hosted By: URLJet.com