Webroot Antivirus Mistakenly Flags Windows Files As Malicious

There were red faces at security experts Webroot this week after its antivirus package mistakenly flagged core files of the Windows operating system as malicious.

To make matters worse, the anitvirus package even began transferring these key files into quarantine, which reportedly rubbished customer computers.

The glitch is said to been caused after an update, and users also complained when the problem impacted a number of websites, including Facebook, which was incorrectly labelled by the AV package as a phishing scam site and blocked access.

failFalse Positives

But it was the false positives that caused customers the biggest headache. Although the bad definitions were only live for thirteen minutes before they were removed, it caused no end of problems for Webroot customers.

Social media and community webpages rapidly began to fill with complaints over the problem, after the antivirus package began mistakenly identifying Windows files as a generic W32.Trojan.Gen trojan and moved these file into quarantine on Monday afternoon.

Once these core files were moved, customer computers reportedly began displaying error messages or even crashed.

“Due to a rule error that propagated for 13 minutes yesterday morning at 11:52am MT, good applications were mistakenly categorized as malware,” Webroot said on Tuesday. “This has created many false positives across the affected systems and has resulted in those applications being quarantined and unable to function.”

“We recognize that we have not met the expectations of some customers, and are committed to resolving this complex issue as quickly as possible,” it added.

Unfortunately, it seems that a large number of customers were forced to manually move hundreds or thousands of files out of quarantine.

Webroot did however then issue instructions for home customers to restore the files and stop the antivirus package from re-detecting the same Windows files as W32.Trojan.Gen.

It later provided instructions and a repair utility for business clients.

The Broomfield, Colorado firm is said to have 30 million customers worldwide.

Quiz: Do you know all about security in 2016?

Tom Jowitt

Tom Jowitt is a leading British tech freelancer and long standing contributor to Silicon UK. He is also a bit of a Lord of the Rings nut...

Recent Posts

Alphabet Spins Outs Taara To Challenge Musk’s Starlink

Moonshot project Taara spun out of Google, and uses lasers and not satellites to provide…

40 mins ago

Pebble Creator Debuts New Watches As ‘Labour Of Love’

Pebble creator launches two new PebbleOS-based smartwatches with 30-day battery life, e-ink screens after OS…

1 day ago

Amazon Loses Appeal To Record EU Privacy Fine

Amazon loses appeal in Luxembourg's administrative court over 746m euro GDPR fine related to use…

1 day ago

Nvidia, xAI Join BlackRock AI Infrastructure Project

Nvidia, xAI to participate in project backed by BlackRock, Microsoft to invest $100bn in AI…

1 day ago

Google Agrees To $28m Settlement In Bias Case

Google agrees to pay $28m to settle claims it offered higher pay and more opportunities…

1 day ago

Tencent Capex Triples As It Invests In AI

Chinese social media giant Tencent triples capital expenditure on AI data centres and other areas…

1 day ago