WXforum.net

Weather Station Hardware => Davis Instruments Weather Stations => Topic started by: droiddk on March 03, 2018, 04:52:53 PM

Title: Do you believe in conspiracy theories?
Post by: droiddk on March 03, 2018, 04:52:53 PM
Antivirus, yes or no?

Do you believe in conspiracy theories?

Regards

Title: Re: Firmware version 3.80 now available online
Post by: Mattk on March 03, 2018, 05:19:00 PM
https://www.davisnet.com/support/vantage-pro2-wireless-console-firmware-direct-pc-install-3-80/

Regards

Getting a Virus flagged when downloading this update, anybody else?
Title: Re: Firmware version 3.80 now available online
Post by: droiddk on March 03, 2018, 05:19:31 PM
https://www.davisnet.com/support/vantage-pro2-wireless-console-firmware-direct-pc-install-3-80/

Regards

Getting a Virus flagged when downloading this update, anybody else?

All good here.
Title: Re: Firmware version 3.80 now available online
Post by: mldenison on March 03, 2018, 05:25:22 PM
Running W7 X64.  Microsoft Security Essentials also flagged my download.  I flagged it under History to ignore it.  I'm running the update now.
Title: Re: Firmware version 3.80 now available online
Post by: Mattk on March 03, 2018, 05:31:44 PM
All three 3.80 updates are showing a Trojan:Win32/Azden virus, there is no other Davis update prior to this 3.80 version that is being flagged, be careful ignoring MSE as it is very rarely ever wrong. Actually have never seen it wrong. 
Title: Re: Firmware version 3.80 now available online
Post by: mldenison on March 03, 2018, 06:04:28 PM
The executable runs the Davis firmware updater.  it finds my console, updates it (5-10 minutes) and reboots the console.  I had to power cycle the console as per a message at the end of the update.  Everything is back to normal and updating my weather site via WD.
Title: Re: Firmware version 3.80 now available online
Post by: Bushman on March 03, 2018, 06:15:20 PM
My system shows infection.
Title: Re: Firmware version 3.80 now available online
Post by: waiukuweather on March 03, 2018, 06:21:39 PM
sometimes the virus checkers are the virus (i,e with false positives)
Title: Re: Firmware version 3.80 now available online
Post by: Mattk on March 03, 2018, 06:49:27 PM
sometimes the virus checkers are the virus (i,e with false positives)

However there are no other download files from the same source which are being flagged as these three new 3.80 files are.
Title: Re: Firmware version 3.80 now available online
Post by: Simnm on March 03, 2018, 07:12:20 PM
Thank
Title: Re: Firmware version 3.80 now available online
Post by: waiukuweather on March 03, 2018, 08:11:38 PM
it will be a false positive, it happens a lot with these virus checkers
one change in code, a new compile, and bang its comes up as false positive
trust me, I know from experience
Title: Re: Firmware version 3.80 now available online
Post by: Bushman on March 03, 2018, 08:38:19 PM
Or it could load ransomware.  Seriously - doesn't anyone check these things??  I ran it through several scanners and it came up RED.
Title: Re: Firmware version 3.80 now available online
Post by: ValentineWeather on March 03, 2018, 08:49:01 PM
I'm not seeing anything with it. Used both virus scan and malware and nothing.
 [ You are not allowed to view attachments ]
 [ You are not allowed to view attachments ]
Title: Re: Firmware version 3.80 now available online
Post by: mldenison on March 03, 2018, 09:01:08 PM
Perhaps we need to reach out to Davis.

After I ran the update, I noticed that a new service had been installed called something like Google Chrome Remote Desktop, and a new active task called something like Microsoft Printer Driver.  The install date/time was the same as the firmware program executed time.  I use WinPatrol so it was easy to delete both items before they ran - which would have been at next boot.
Title: Re: Firmware version 3.80 now available online
Post by: ValentineWeather on March 03, 2018, 09:16:06 PM
That's not good. Google Chrome Remote is similar to Team Viewer allows outside access to computer and if you didn't want it installed something is going on and it's not good.
Title: Re: Firmware version 3.80 now available online
Post by: Bushman on March 03, 2018, 09:29:50 PM
Kaspersky?  LOL
Title: Re: Firmware version 3.80 now available online
Post by: ConligWX on March 03, 2018, 09:34:00 PM
Scanned with McAfee and Sophos Home, no issues found.
Title: Re: Firmware version 3.80 now available online
Post by: ValentineWeather on March 03, 2018, 10:45:23 PM
Nothing detected with webroot either.
Title: Re: Firmware version 3.80 now available online
Post by: azchrisf on March 04, 2018, 12:08:11 AM
I cant tell you all how many times Ive built my own software that does nothing malicous to have it detected by a virus scanner as a false positive. A lot of software also use components that COULD be used in a malicous manner by someone else, but isnt by the software in question, and is detected by AV just because its there.

I highly doubt any of you have something to be worried about -- highly likely its a false positive.
Title: Re: Firmware version 3.80 now available online
Post by: Intheswamp on March 04, 2018, 12:20:36 AM
I just downloaded and scanned VP2_Wireless_3_80.exe with Avast Free...no issues were found.

Now, my question is...it looks like the coders have tweaked the heat index table to work better for high heat and high humidity areas (sounds like my area!).  Being as I'm currently running v3.12 I guess a move up to v3.80 wouldn't be a bad move...????
Title: Re: Firmware version 3.80 now available online
Post by: ValentineWeather on March 04, 2018, 08:02:22 AM
Kaspersky?  LOL

What's so funny? Is it because you have a system that gives false positives? LOL
Title: Re: Firmware version 3.80 now available online
Post by: droiddk on March 04, 2018, 08:43:45 AM
Can anyone tell what "Restored "Receiving From" from initial boot screen for easier setup configuration." covers? Guess its related to how long time "Receiving From Screen" will be on before switching to "normal use". But how long time? Hopefully very short time, always hated that feature.

Regards

Title: Re: Firmware version 3.80 now available online
Post by: Bushman on March 04, 2018, 09:54:19 AM
Kaspersky?  LOL

What's so funny? Is it because you have a system that gives false positives? LOL

Clearly you have not followed the issues with Russian antivirus software.  It is funny/not funny.  There is a reason why lots of governments have banned its use.
Title: Re: Firmware version 3.80 now available online
Post by: ValentineWeather on March 04, 2018, 10:42:33 AM
Kaspersky?  LOL

What's so funny? Is it because you have a system that gives false positives? LOL

Clearly you have not followed the issues with Russian antivirus software.  It is funny/not funny.  There is a reason why lots of governments have banned its use.

I've followed it somewhat.  Who I don't trust is any article by Bloomberg.  Any of these countries including USA could be spying with software so who do you trust? Romanian, China, Czech Republic, Slovakian, Dutch, Brits, Israel etc. They all are involved in AV.

I think because of the negative scrutiny put on Kaspersky which they denied may make it the safest.
Title: Re: Firmware version 3.80 now available online
Post by: Bushman on March 04, 2018, 11:18:00 AM
https://www.dhs.gov/news/2017/09/13/dhs-statement-issuance-binding-operational-directive-17-01  Frankly, the only people who REALLY scare me is Mossad.  I deal with lots of "interesting" people in my work, but these guys scare the crap out of me.  Google Operation "Wrath of God also known as Operation "Bayonet" as an example.
Title: Re: Firmware version 3.80 now available online
Post by: droiddk on March 04, 2018, 11:18:55 AM
Hi Guys

Please stick to topic.

Regards
Title: Re: Firmware version 3.80 now available online
Post by: Aardvark on March 04, 2018, 11:24:17 AM
I use Kaspersky Internet security on my iMac.  I had Bitdefender but it used up a lot of resources in my opinion. Both were good.   Even with MacsOSX  you need security even if you are sending data to a website, smart practice.

I have run complete scans of my computer and had no problems with any software so far. I run a dual platform using Parallels, for those programs that suck on a mac.

No problems  and I don't care what the DOJ says about Kaspersky.  By the way, it is an interesting read about this guy.
Title: Re: Firmware version 3.80 now available online
Post by: ValentineWeather on March 04, 2018, 11:38:13 AM
Actually I don't blame the Feds for not using a Russian product but it's all based on fear of the unknown. Someone spread the alleged false rumor they had close ties with the Kremlin. If anyone's been following our FISA court we know what that's all about.  Unfortunately I think a lot of politics are involved in this.
Title: Re: Firmware version 3.80 now available online
Post by: ValentineWeather on March 04, 2018, 11:41:32 AM


No problems  and I don't care what the DOJ says about Kaspersky. 

Exactly its hog wash...
 [ You are not allowed to view attachments ]
Title: Re: Firmware version 3.80 now available online
Post by: Old Tele man on March 04, 2018, 02:54:18 PM
Wonder when/if DAVIS™ might have update for the VUE Console?
Title: Re: Firmware version 3.80 now available online
Post by: Joel on March 04, 2018, 03:32:19 PM
Wonder when/if DAVIS™ might have update for the VUE Console?

Unfortunately you are on the wrong thread.   We are speaking about anti-virus software here  UU
Title: Re: Firmware version 3.80 now available online
Post by: Mattk on March 04, 2018, 03:46:06 PM
Wonder when/if DAVIS™ might have update for the VUE Console?

Unfortunately you are on the wrong thread.   We are speaking about anti-virus software here  UU

Well some are but it really has gone into rubbish that has  absolutely nothing to do with the topic.
Title: Re: Firmware version 3.80 now available online
Post by: ocala on March 04, 2018, 06:51:07 PM
Happens all the time with threads.
Start out talking about one thing and end up with something completely different.
Title: Re: Firmware version 3.80 now available online
Post by: Aardvark on March 04, 2018, 07:55:25 PM
I was able to update my usb Envoy, but not the one with the weatherlink IP logger.

I tried the IP address and of course it wouldn't connect.  Now this update works on a PC, so I was able to use my Parallels and Win 10.   

I have about half a brain to remove the loggers from the Console and IP logger (both are IP loggers) attach the USB logger .   I wonder if that is a good idea or not
Title: Re: Firmware version 3.80 now available online
Post by: Intheswamp on March 05, 2018, 07:05:01 AM
Wonder when/if DAVIS™ might have update for the VUE Console?

Unfortunately you are on the wrong thread.   We are speaking about anti-virus software here  UU

Well some are but it really has gone into rubbish that has  absolutely nothing to do with the topic.
Did I tell ya'll about the rabbit I saw the other day?  It was really cool...
Title: Re: Firmware version 3.80 now available online
Post by: miraculon on March 05, 2018, 08:20:27 AM
https://www.davisnet.com/support/vantage-pro2-wireless-console-firmware-direct-pc-install-3-80/

Regards

Thanks for the (original) post informing of the new firmware.

What means this, exactly?
Minor improvements to allow use of new (or alternate)Temp/Hum and Barometer.

Is the Temp/Hum internal (inside) for new consoles? Same for Baro?
I'll probably install it regardless, but I was just curious.

Greg H.
Title: Re: Firmware version 3.80 now available online
Post by: ValentineWeather on March 05, 2018, 09:43:30 AM
Wonder when/if DAVIS™ might have update for the VUE Console?

Unfortunately you are on the wrong thread.   We are speaking about anti-virus software here  UU

Well some are but it really has gone into rubbish that has  absolutely nothing to do with the topic.

It was you and Bushman that first posted it was being flagged as a virus/malware and Bushman laughing at what AV people were using that turned the topic.
Title: Re: Firmware version 3.80 now available online
Post by: Aardvark on March 05, 2018, 10:19:20 AM
Actually I don't blame the Feds for not using a Russian product but it's all based on fear of the unknown. Someone spread the alleged false rumor they had close ties with the Kremlin. If anyone's been following our FISA court we know what that's all about.  Unfortunately I think a lot of politics are involved in this.
Off topic, but I worked for the public school system,  now that is terrifying
Title: Re: Firmware version 3.80 now available online
Post by: Intheswamp on March 05, 2018, 04:56:39 PM
Wow...no one's interested in the rabbit. :-k
Title: Re: Firmware version 3.80 now available online
Post by: Old Tele man on March 05, 2018, 05:04:55 PM
Wow...no one's interested in the rabbit. :-k
Only if the rabbit "died."
Title: Re: Firmware version 3.80 now available online
Post by: ValentineWeather on March 05, 2018, 05:18:30 PM
They didn't happen to add the one update I would care about ability to display altimeter did they?  It would be nice to be able to ditch the Vue console hooked to data logger because it displays and sends correct altimeter to website. Something the Vp2 console can't do.
Title: Re: Firmware version 3.80 now available online
Post by: Old Tele man on March 05, 2018, 05:26:57 PM
They didn't happen to add the one update I would care about ability to display altimeter did they?  It would be nice to be able to ditch the Vue console hooked to data logger because it displays and sends correct altimeter to website. Something the Vp2 console can't do.
...which is how my VP2 system is now configured...and...why I wondered if DAVIS™ might've also had a concurrent update for the VUE console.
Title: Re: Firmware version 3.80 now available online
Post by: Mattk on March 05, 2018, 07:34:33 PM
The only download files being flagged with a virus is the three (3) most recent FW3.80 versions released February 21, 2018, none of the other downloads prior to this show any issues. The infection being flagged is  Trojan:Win32/Azden.A!cl and several variants and limited specifically to the 3 Feb 21 released updates.

This is being flagged with Win7 & Win8.1 running MSE or WD
Title: Re: Firmware version 3.80 now available online
Post by: Intheswamp on March 05, 2018, 09:21:58 PM
Wow...no one's interested in the rabbit. :-k
Only if the rabbit "died."
They've about all died.
Title: Re: Firmware version 3.80 now available online
Post by: waiukuweather on March 05, 2018, 09:47:51 PM
@ Mattk
the virus checker are sensitive
one small change in the code can trigger a false positive
the prior version might have been very close to triggering a false positive...just 1 code change could have made it trigger it
Title: Re: Firmware version 3.80 now available online
Post by: Bushman on March 05, 2018, 10:09:46 PM
Companies should check their stuff before they put it out into the wild.  Just sayin'
Title: Re: Do you believe in conspiracy theories?
Post by: Intheswamp on March 06, 2018, 06:38:36 AM
Nice edit, droiddk! :lol:
Title: Re: Do you believe in conspiracy theories?
Post by: boss281 on March 06, 2018, 07:58:14 AM
Sooooo, is there consensus on the file status?  Has Davis been contacted and/or responded?
Title: Re: Do you believe in conspiracy theories?
Post by: miraculon on March 06, 2018, 08:16:40 AM
Malwarebytes and Windows defender both report the VP2_Wireless_3_80.exe file as being clean.

Greg H.
Title: Re: Do you believe in conspiracy theories?
Post by: Bushman on March 06, 2018, 01:56:29 PM
Now THIS is interesting...  I DL'ed it into a "containment area" since the last time it was kicked out with virus warnings, and now - POOF! _ no problems going past my virus scanners and malware controls.  But uploading the virus file to a scan engine  shows mostly clean, except for some obscure scanners.  https://www.virustotal.com/#/file/0015e3d3e0833a3c4f76b180f77b81dc4b3f61748cd65720dabd9b736c83445c/detection

I think Davis changed the file but am too lazy to check hashes etc.
Title: Re: Do you believe in conspiracy theories?
Post by: Mattk on March 06, 2018, 03:35:18 PM
Sooooo, is there consensus on the file status?  Has Davis been contacted and/or responded?

Contacted Yes, responded No
Title: Re: Do you believe in conspiracy theories?
Post by: Mattk on March 11, 2018, 05:35:27 AM
Well appears those "clean files" have been pulled  ;)
Title: Re: Do you believe in conspiracy theories?
Post by: Bushman on March 11, 2018, 01:26:21 PM
Well appears those "clean files" have been pulled  ;)

Coincidence?  I think not!!  ;)