This morning my Norton Community Watch log had this entry from 3/10/09 around 8:30am
Sample Submission: Suspicious.Farfli.2
file c:\programfiles\spybot-searchand destroy\updates\sbsd152upd.exe
when I click this files (sbsd152upd.exe) properties it shows a digital sig from safer networking
However the property details show
file version 0.0.0.0
no product version
no name or copyright
created 3/12/08
accessed 3/12/08
modified 2/20/08
I have more recent updates in this folder ( c:\programfiles\spybot-searchand destroy\updates)from SPYBOT S&D that have file version numbers and the product version and copyright.
When I scan this particular item (sbsd152upd.exe) the scan comes up clean. However, as I watch the scan I see a quick "threat remaining 1" and then it shows clean and no threats found or fixed.
1. Is this because its only a suspicious item?
2. Do I need to submit it or will that be part of the Norton Community watch function to do (it said pending at this time)
3. If I opted out of community watch would I even receive such alarming information?
Or is this a case where it is just some part of the filke looks like it COULD be a problem? I think the fact that there is a digital sig makes it ok, but then no file version or version name, or copyright concerns me