stapo64.dll marked as TrojWare.Win32.TrojanSpy.Pophot.ZA@18260123

Hi,

Comodo has found a trojan in c:\system32\stapo64dll, detected on 30th of Nov. 2009. The trojan is in quarantine. Is this a false positive reporting?

In the following topic:

https://forums.comodo.com/false_positivenegative_reporting_is_this_a_malware_that_cis_hasnot_detected/stapo64dll_audio_driver_being_marked_trojan-t47107.0.html;msg339507

you have said that this issue has been fixed with DB 2816 of Comodo Internet Security 3.12.111745.560. My version of comodo is 3.13.121240.574. Is this a new trojan? Should this file be deleted?

Thank you for your answer.

Hi,

We will check if what you reported is malware or just false positive.

Thanks,
Erik M.

Hi,
This is to inform you that we have not found this file being detected.
Please check again. Or repeat all steps again:

1、Find the file, witch detected.
2、Zipped the file
3、Upload it to the forum

Kind Regards,
Erik M.

Hi Eric,

this file has been detected in c:\system32\stapo64dll. But I can’t find it there. The file stapo64.dll can only be found at:

  1. WDM (C:\Programme\IDT), Scanresult: negative
  2. Vista (C:\SWSetup\Drivers\Audio\WDM), Scanresult: negative
  3. stwrt64.inf_86727c20 (C:\windows\System 32\Driver Store\File Repository), Scanresult: negative

The files have been scanned by 40 virus scanners (http://www.virustotal.com/de/)

Is there any possibility to pick up the file from Comodo quarantine? Because there is stated that the file is located at c:\system32\stapo64dll. How can I get this file?

Best regards
Stephan

Hi Eric,

I have picked up the file from the quarantine and I scanned it at virutotal. The result was also negative.

Best regards

Stephan

Hi Eric,

after I have scanned the file with a negative result (see my last posting) I would like to know whether this was an false positive. Can you confirm this?

Thank you in advance.

Best regards

Stephan

Hi sku

Reported file was an False Positive and it was fixed already.You can confirm this with DB 3188 of CIS 3.13.121240.574.If you still experience any problems,please let us know.

Regards,
Vaishnavi.V.K

Thank you very much for your support.

Best regards

Stephan