<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0" xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:wfw="http://wellformedweb.org/CommentAPI/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:atom="http://www.w3.org/2005/Atom" xmlns:sy="http://purl.org/rss/1.0/modules/syndication/" xmlns:slash="http://purl.org/rss/1.0/modules/slash/" xmlns:media="http://search.yahoo.com/mrss/">
<channel>
<title>DisplayFusion RSS: Webroot SecureAnywhere flagging APPHOOKWIN6032.DLL as W32.Obfuscated.Gen in 7.3.1</title>
<atom:link href="https://www.displayfusion.com/Discussions/RSS/?TopicID=4c571eef-9a1c-4e37-8d6e-9dca96dd26ad" rel="self" type="application/rss+xml" />
<link>https://www.displayfusion.com/Discussions/RSS/?TopicID=4c571eef-9a1c-4e37-8d6e-9dca96dd26ad</link>
<description>DisplayFusion RSS: Webroot SecureAnywhere flagging APPHOOKWIN6032.DLL as W32.Obfuscated.Gen in 7.3.1</description>
<lastBuildDate>Wed, 27 May 2026 19:09:47 GMT</lastBuildDate>
<language>en</language>
<sy:updatePeriod>hourly</sy:updatePeriod>
<sy:updateFrequency>1</sy:updateFrequency>
<generator>https://www.displayfusion.com/Discussions/RSS/?TopicID=4c571eef-9a1c-4e37-8d6e-9dca96dd26ad</generator>
<item>
<title>RE: Webroot SecureAnywhere flagging APPHOOKWIN6032.DLL as W32.Obfuscated.Gen in 7.3.1</title>
<link>https://www.displayfusion.com/Discussions/View/webroot-secureanywhere-flagging-apphookwin6032dll-as-w32obfuscatedgen-in-731/?ID=4c571eef-9a1c-4e37-8d6e-9dca96dd26ad#4</link>
<pubDate>Thu, 24 Sep 2015 18:01:19 GMT</pubDate>
<dc:creator>Binary Fortress Software</dc:creator>
<guid isPermaLink="false">https://www.displayfusion.com/Discussions/View/webroot-secureanywhere-flagging-apphookwin6032dll-as-w32obfuscatedgen-in-731/?ID=4c571eef-9a1c-4e37-8d6e-9dca96dd26ad#4</guid>
<category>DisplayFusion</category>
<description><![CDATA[@Evahn: Thanks for the heads up, and thanks for submitting it to Webroot! Glad to hear they were able to quickly confirm it was a false positive
Please let us know if you need anything else at all.]]></description>
<content:encoded><![CDATA[<div class="CTDiscussions">
@Evahn: Thanks for the heads up, and thanks for submitting it to Webroot! Glad to hear they were able to quickly confirm it was a false positive <img src="https://www.displayfusion.com/MediaCommon/SVGs/FontAwesome/face-smile.light.svg" alt=":)" style="box-sizing:border-box;position:relative;overflow:hidden;vertical-align:middle !important;width:16px;height:16px;" HelpButtonData=":)" HelpButtonDataAlign="BelowMiddle" /><br/>
<br/>
Please let us know if you need anything else at all.
</div>
]]></content:encoded>
</item>
<item>
<title>RE: Webroot SecureAnywhere flagging APPHOOKWIN6032.DLL as W32.Obfuscated.Gen in 7.3.1</title>
<link>https://www.displayfusion.com/Discussions/View/webroot-secureanywhere-flagging-apphookwin6032dll-as-w32obfuscatedgen-in-731/?ID=4c571eef-9a1c-4e37-8d6e-9dca96dd26ad#3</link>
<pubDate>Thu, 24 Sep 2015 02:07:09 GMT</pubDate>
<dc:creator>Binary Fortress Software</dc:creator>
<guid isPermaLink="false">https://www.displayfusion.com/Discussions/View/webroot-secureanywhere-flagging-apphookwin6032dll-as-w32obfuscatedgen-in-731/?ID=4c571eef-9a1c-4e37-8d6e-9dca96dd26ad#3</guid>
<category>DisplayFusion</category>
<description><![CDATA[I submitted this issue to Webroot SecureAnywhere support and they've confirmed it was a false positive and updated the status of this file to "Good".
From Webroot support:
In regards to you Display Fusion Query, We have sent the file information to our threat research team, who have determined ...]]></description>
<content:encoded><![CDATA[<div class="CTDiscussions">
I submitted this issue to Webroot SecureAnywhere support and they've confirmed it was a false positive and updated the status of this file to "Good".  <br/>
<br/>
From Webroot support:<br/>
<i>In regards to you Display Fusion Query, We have sent the file information to our threat research team, who have determined that this file has been Marked Incorrectly and is a False Positive. We have white-listed these processes in our database, this should resolve the issues you were experiencing. <br/>
<br/>
Please run a scan to update your determinations and then try to reproduce the issue. As the Threat determination database was previously Detecting the file as "Bad" it is expected behavior that the Agent was detecting and removing. <br/></i><br/>
<br/>
So I believe you will need to go to each of the affected workstations in the portal and select to restore the DLL from quarantine.<br/>
<br/>
Good luck
</div>
]]></content:encoded>
</item>
<item>
<title>RE: Webroot SecureAnywhere flagging APPHOOKWIN6032.DLL as W32.Obfuscated.Gen in 7.3.1</title>
<link>https://www.displayfusion.com/Discussions/View/webroot-secureanywhere-flagging-apphookwin6032dll-as-w32obfuscatedgen-in-731/?ID=4c571eef-9a1c-4e37-8d6e-9dca96dd26ad#2</link>
<pubDate>Thu, 24 Sep 2015 00:35:51 GMT</pubDate>
<dc:creator>Binary Fortress Software</dc:creator>
<guid isPermaLink="false">https://www.displayfusion.com/Discussions/View/webroot-secureanywhere-flagging-apphookwin6032dll-as-w32obfuscatedgen-in-731/?ID=4c571eef-9a1c-4e37-8d6e-9dca96dd26ad#2</guid>
<category>DisplayFusion</category>
<description><![CDATA[I'm seeing this as well on my Windows 10 system with DisplayFusion 7.3.1 after updating from DisplayFusion 7.3.  Is this version of DisplayFusion 7.3.1 actually safe to use?]]></description>
<content:encoded><![CDATA[<div class="CTDiscussions">
I'm seeing this as well on my Windows 10 system with DisplayFusion 7.3.1 after updating from DisplayFusion 7.3.  Is this version of DisplayFusion 7.3.1 actually safe to use?
</div>
]]></content:encoded>
</item>
<item>
<title>Webroot SecureAnywhere flagging APPHOOKWIN6032.DLL as W32.Obfuscated.Gen in 7.3.1</title>
<link>https://www.displayfusion.com/Discussions/View/webroot-secureanywhere-flagging-apphookwin6032dll-as-w32obfuscatedgen-in-731/?ID=4c571eef-9a1c-4e37-8d6e-9dca96dd26ad</link>
<pubDate>Wed, 23 Sep 2015 23:25:40 GMT</pubDate>
<dc:creator>Binary Fortress Software</dc:creator>
<guid isPermaLink="false">https://www.displayfusion.com/Discussions/View/webroot-secureanywhere-flagging-apphookwin6032dll-as-w32obfuscatedgen-in-731/?ID=4c571eef-9a1c-4e37-8d6e-9dca96dd26ad</guid>
<category>DisplayFusion</category>
<description><![CDATA[We deployed Display Fusion 7.3.1 to a few workstations this morning and started receiving notifications that Webroot SecureAnywhere AV had flagged the APPHOOKWIN6032.DLL as "Bad" due to W32.Obfuscated.Gen which I assume means some indication of obfuscation present.
I've created an over-ride as I...]]></description>
<content:encoded><![CDATA[<div class="CTDiscussions">
We deployed Display Fusion 7.3.1 to a few workstations this morning and started receiving notifications that Webroot SecureAnywhere AV had flagged the APPHOOKWIN6032.DLL as "Bad" due to W32.Obfuscated.Gen which I assume means some indication of obfuscation present.<br/>
I've created an over-ride as I'm sure that is a false positive but maybe something for the Devs to look into as this issue was not present in v7.3 only in this last update.<br/>
<br/>
APPHOOKWIN6032_CBB09B03-FA28-479C-8E95-DBDE025F65AB.DLL, W32.Obfuscated.Gen, %programfiles%\displayfusion\hooks\,   <br/>
<br/>
<a href="http://snup.webrootcloudav.com/SkyStoreFileUploader/upload.aspx?MD5=FCBAAB1526B90975F9DC9AFB19F63043" target="_blank" rel="nofollow"><b>http://snup.webrootcloudav.com/SkyStoreFileUploader/upload.aspx?MD5=FCBAAB1526B90975F9DC9AFB19F63043</b></a><br/>
FCBAAB1526B90975F9DC9AFB19F63043, 4 mins 54 secs
</div>
]]></content:encoded>
</item>
</channel>
</rss>