RNTX.DLL from RightNow gives false positive?

F

Flemming

RightNow Technologies collaboration chat product
downloads a file
http://livenj01.rightnowtech.com/6030-
b462h/rnl/java/RntX.cab
which AntiSpyware identifies at the Bridge/WinFavorites
scumware from Loudmarketing.

RightNow's customer, www.iconnecthere.com, says it is a
false positive. Does anyone have a copy of the
Bridge/WinFavorites files (rtnx.cab or rtnx.dll) so we
can compare?
 
B

Bill Sanderson

FWIW, the CLSID they register is on some home-grown "bad" clsid lists. I
don't know whether it is on, say, SpywareBlaster's lists.

I couldn't find any clear-cut association with anything bad, though.

Unfortunately, it is ubiquitous in HijackThis log postings, so there are
lots of references. In some cases, folks are being told to remove it, but I
don't find the evidence convincing yet, in the bit of time I've spent
looking.
 

Ask a Question

Want to reply to this thread or ask your own question?

You'll need to choose a username for the site, which only take a couple of moments. After that, you can post your question and our members will help you out.

Ask a Question

Top