<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	>
<channel>
	<title>Comments on: HTTP Acrobat PDF Suspicious File Download - False Positives</title>
	<atom:link href="http://felix-sally.imoetz-a.biz/blog-felix/2008/12/10/http-acrobat-pdf-suspicious-file-download-false-positives/feed/" rel="self" type="application/rss+xml" />
	<link>http://felix-sally.imoetz-a.biz/blog-felix/2008/12/10/http-acrobat-pdf-suspicious-file-download-false-positives/</link>
	<description>Chase Up To Your Limit, Magic Would Reveal Your True Strength...</description>
	<pubDate>Sun, 01 Aug 2010 08:22:57 +0000</pubDate>
	<generator>http://wordpress.org/?v=2.5.1</generator>
		<item>
		<title>By: Felix J</title>
		<link>http://felix-sally.imoetz-a.biz/blog-felix/2008/12/10/http-acrobat-pdf-suspicious-file-download-false-positives/#comment-160</link>
		<dc:creator>Felix J</dc:creator>
		<pubDate>Thu, 03 Dec 2009 10:52:57 +0000</pubDate>
		<guid isPermaLink="false">http://felix-sally.imoetz-a.biz/blog-felix/?p=40#comment-160</guid>
		<description>It was happened in the past ;) So, for the current time, norton has fixed that issue... ;)</description>
		<content:encoded><![CDATA[<p>It was happened in the past <img src='http://felix-sally.imoetz-a.biz/blog-felix/wp-includes/images/smilies/icon_wink.gif' alt=';)' class='wp-smiley' /> So, for the current time, norton has fixed that issue&#8230; <img src='http://felix-sally.imoetz-a.biz/blog-felix/wp-includes/images/smilies/icon_wink.gif' alt=';)' class='wp-smiley' /></p>
]]></content:encoded>
	</item>
	<item>
		<title>By: LefPisyunfiny</title>
		<link>http://felix-sally.imoetz-a.biz/blog-felix/2008/12/10/http-acrobat-pdf-suspicious-file-download-false-positives/#comment-156</link>
		<dc:creator>LefPisyunfiny</dc:creator>
		<pubDate>Thu, 26 Nov 2009 10:05:06 +0000</pubDate>
		<guid isPermaLink="false">http://felix-sally.imoetz-a.biz/blog-felix/?p=40#comment-156</guid>
		<description>Hello. 
more links for that topic?
And Bye.</description>
		<content:encoded><![CDATA[<p>Hello.<br />
more links for that topic?<br />
And Bye.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Felix J</title>
		<link>http://felix-sally.imoetz-a.biz/blog-felix/2008/12/10/http-acrobat-pdf-suspicious-file-download-false-positives/#comment-91</link>
		<dc:creator>Felix J</dc:creator>
		<pubDate>Fri, 12 Dec 2008 13:32:36 +0000</pubDate>
		<guid isPermaLink="false">http://felix-sally.imoetz-a.biz/blog-felix/?p=40#comment-91</guid>
		<description>@Gunnar
Wowww... Thank you for the Norton quick response :) my norton didn't show up any false positives again :)</description>
		<content:encoded><![CDATA[<p>@Gunnar<br />
Wowww&#8230; Thank you for the Norton quick response <img src='http://felix-sally.imoetz-a.biz/blog-felix/wp-includes/images/smilies/icon_smile.gif' alt=':)' class='wp-smiley' /> my norton didn&#8217;t show up any false positives again <img src='http://felix-sally.imoetz-a.biz/blog-felix/wp-includes/images/smilies/icon_smile.gif' alt=':)' class='wp-smiley' /></p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Gunnar</title>
		<link>http://felix-sally.imoetz-a.biz/blog-felix/2008/12/10/http-acrobat-pdf-suspicious-file-download-false-positives/#comment-90</link>
		<dc:creator>Gunnar</dc:creator>
		<pubDate>Fri, 12 Dec 2008 11:55:41 +0000</pubDate>
		<guid isPermaLink="false">http://felix-sally.imoetz-a.biz/blog-felix/?p=40#comment-90</guid>
		<description>Hello,

My name is Gunnar and I am working for an external Symantec-Support-Team. I am sorry to hear that you have experienced some problems caused by the False Positive condition. As Mike mentioned in his post above, the new update has corrected it, but I would still like to present you with the official statement from Symantec:

On December 10, Symantec posted a modification to an IPS signature that caused a False Positive condition with our customers. Customers may have experienced a virus warning or in some cases, partial loading of Web pages. The signature was released to all consumer products. On the enterprise side, only Symantec Client Security was impacted.

The specific signature at fault was the “HTTP Acrobat PDF Suspicious File Download” signature. This signature was triggered by generic JavaScript, which is used on certain Web sites. The signature was released around 1 a.m. PT on Wednesday, December 10. The signature was corrected and made available to Symantec customers at approximately 10 a.m. PT, 9 hours after the initial release.

Because the majority of our consumers receive updates automatically, they will already have been updated with the corrected signature. Any consumer customer that does not automatically download signatures, is unlikely to have experienced the False Positive. If they have, manually running Live Update will resolve the issue.

Symantec would like to apologise to any customers affected by this false positive for any inconvenience it may have caused.

Best Regards,
Gunnar
Norton Forum Assist Team</description>
		<content:encoded><![CDATA[<p>Hello,</p>
<p>My name is Gunnar and I am working for an external Symantec-Support-Team. I am sorry to hear that you have experienced some problems caused by the False Positive condition. As Mike mentioned in his post above, the new update has corrected it, but I would still like to present you with the official statement from Symantec:</p>
<p>On December 10, Symantec posted a modification to an IPS signature that caused a False Positive condition with our customers. Customers may have experienced a virus warning or in some cases, partial loading of Web pages. The signature was released to all consumer products. On the enterprise side, only Symantec Client Security was impacted.</p>
<p>The specific signature at fault was the “HTTP Acrobat PDF Suspicious File Download” signature. This signature was triggered by generic JavaScript, which is used on certain Web sites. The signature was released around 1 a.m. PT on Wednesday, December 10. The signature was corrected and made available to Symantec customers at approximately 10 a.m. PT, 9 hours after the initial release.</p>
<p>Because the majority of our consumers receive updates automatically, they will already have been updated with the corrected signature. Any consumer customer that does not automatically download signatures, is unlikely to have experienced the False Positive. If they have, manually running Live Update will resolve the issue.</p>
<p>Symantec would like to apologise to any customers affected by this false positive for any inconvenience it may have caused.</p>
<p>Best Regards,<br />
Gunnar<br />
Norton Forum Assist Team</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Felix J</title>
		<link>http://felix-sally.imoetz-a.biz/blog-felix/2008/12/10/http-acrobat-pdf-suspicious-file-download-false-positives/#comment-89</link>
		<dc:creator>Felix J</dc:creator>
		<pubDate>Thu, 11 Dec 2008 05:23:53 +0000</pubDate>
		<guid isPermaLink="false">http://felix-sally.imoetz-a.biz/blog-felix/?p=40#comment-89</guid>
		<description>@CDC : I'm already getting that message for around 20 times already since yesterday. And today, i haven't check whether norton has already patched this bug or not.

@dave : Yep... when i googled this risk name, one of them said that he was getting the same problem with eBay. So Not just you that had the same error message :).

@Nick_K : but in my case, i didn't download anything on that website, yet i'm sure that sites are clean and won't infect our computers. When i made this post yesterday, i've to deactivated my norton, so that i could post this problem on my blog.

I hope norton will soon patched this up. :)</description>
		<content:encoded><![CDATA[<p>@CDC : I&#8217;m already getting that message for around 20 times already since yesterday. And today, i haven&#8217;t check whether norton has already patched this bug or not.</p>
<p>@dave : Yep&#8230; when i googled this risk name, one of them said that he was getting the same problem with eBay. So Not just you that had the same error message :).</p>
<p>@Nick_K : but in my case, i didn&#8217;t download anything on that website, yet i&#8217;m sure that sites are clean and won&#8217;t infect our computers. When i made this post yesterday, i&#8217;ve to deactivated my norton, so that i could post this problem on my blog.</p>
<p>I hope norton will soon patched this up. <img src='http://felix-sally.imoetz-a.biz/blog-felix/wp-includes/images/smilies/icon_smile.gif' alt=':)' class='wp-smiley' /></p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Dave</title>
		<link>http://felix-sally.imoetz-a.biz/blog-felix/2008/12/10/http-acrobat-pdf-suspicious-file-download-false-positives/#comment-88</link>
		<dc:creator>Dave</dc:creator>
		<pubDate>Wed, 10 Dec 2008 21:14:03 +0000</pubDate>
		<guid isPermaLink="false">http://felix-sally.imoetz-a.biz/blog-felix/?p=40#comment-88</guid>
		<description>I had a problem with ebay today. Same error message.</description>
		<content:encoded><![CDATA[<p>I had a problem with ebay today. Same error message.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Blog do Vitor - Problema: Norton bloqueia acesso a sites informando &#8220;HTTP Acrobat PDF Suspicious File Download&#8221;</title>
		<link>http://felix-sally.imoetz-a.biz/blog-felix/2008/12/10/http-acrobat-pdf-suspicious-file-download-false-positives/#comment-87</link>
		<dc:creator>Blog do Vitor - Problema: Norton bloqueia acesso a sites informando &#8220;HTTP Acrobat PDF Suspicious File Download&#8221;</dc:creator>
		<pubDate>Wed, 10 Dec 2008 18:03:52 +0000</pubDate>
		<guid isPermaLink="false">http://felix-sally.imoetz-a.biz/blog-felix/?p=40#comment-87</guid>
		<description>[...] Vários blogs já relataram o problema, confirmado pela equipe de desenvolvimento do Norton. Se você não quiser aguardar a disponibilização da atualização que irá corrigir o problema, é possível desabilitar essa detecção manualmente, o que pode deixar seu computador vulnerável. [...]</description>
		<content:encoded><![CDATA[<p>[...] Vários blogs já relataram o problema, confirmado pela equipe de desenvolvimento do Norton. Se você não quiser aguardar a disponibilização da atualização que irá corrigir o problema, é possível desabilitar essa detecção manualmente, o que pode deixar seu computador vulnerável. [...]</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Nick_K</title>
		<link>http://felix-sally.imoetz-a.biz/blog-felix/2008/12/10/http-acrobat-pdf-suspicious-file-download-false-positives/#comment-86</link>
		<dc:creator>Nick_K</dc:creator>
		<pubDate>Wed, 10 Dec 2008 17:19:15 +0000</pubDate>
		<guid isPermaLink="false">http://felix-sally.imoetz-a.biz/blog-felix/?p=40#comment-86</guid>
		<description>Hey I just want to start my saying im not great with computers so I might sound a bit stupid but I am also getting this message. I spoke with someone on Norton chat this is what she told me " We have consulted this with our technicians and found out that this attack could pose a serious security threat. You should take immediate action to stop any damage or prevent further damage from happening. So we have to remove the infection now". THis is the stupid part so is this virus on my pc when the message saying its blocked.</description>
		<content:encoded><![CDATA[<p>Hey I just want to start my saying im not great with computers so I might sound a bit stupid but I am also getting this message. I spoke with someone on Norton chat this is what she told me &#8221; We have consulted this with our technicians and found out that this attack could pose a serious security threat. You should take immediate action to stop any damage or prevent further damage from happening. So we have to remove the infection now&#8221;. THis is the stupid part so is this virus on my pc when the message saying its blocked.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: CDC</title>
		<link>http://felix-sally.imoetz-a.biz/blog-felix/2008/12/10/http-acrobat-pdf-suspicious-file-download-false-positives/#comment-85</link>
		<dc:creator>CDC</dc:creator>
		<pubDate>Wed, 10 Dec 2008 17:05:27 +0000</pubDate>
		<guid isPermaLink="false">http://felix-sally.imoetz-a.biz/blog-felix/?p=40#comment-85</guid>
		<description>I've gotten it at least 3 times this morning as well, all from legitimate sites.  Getting ready to run a LiveUpdate and see if that takes care of it.</description>
		<content:encoded><![CDATA[<p>I&#8217;ve gotten it at least 3 times this morning as well, all from legitimate sites.  Getting ready to run a LiveUpdate and see if that takes care of it.</p>
]]></content:encoded>
	</item>
</channel>
</rss>
