Welcome, Guest. Please login or register.
December 08, 2009, 07:48:24 PM

Login with username, password and session length

341006 Posts
37713 Topics
85596 Members

Latest Member: fearsmike

Search:     Advanced search | Tag Cloud
+  Welcome to the Comodo Forum
|-+  Desktop Security Products
| |-+  Comodo Internet Security - CIS
| | |-+  Help - CIS
| | | |-+  Anti Virus Help
| | | | |-+  Heur.Suspicious
« previous next »
Pages: [1] 2 Go Down Print
Author Topic: Heur.Suspicious  (Read 1336 times)
hony
Newbie
*
Offline Offline

Posts: 1


« on: October 25, 2009, 03:32:04 PM »

My Comodo Antivirus found Heur.Suspicious[at]73308815 and Heur.Suspicious[at]71034465 ,both in .exe file. Is it false positive or not? thank you! Jan
Logged
eXPerience
Malware Researcher Virus Removal Helper Advanced Tweak Freak Crazy Little Devil
Global Moderator
Comodo's Hero
*****
Offline Offline

Posts: 6510


Why not ? The choice is yours !


« Reply #1 on: October 25, 2009, 03:35:56 PM »

Moving

eXp
Logged

ionelp
Global Moderator
Comodo's Hero
*****
Offline Offline

Posts: 319



« Reply #2 on: October 26, 2009, 08:34:56 AM »

Hi hony,

My Comodo Antivirus found Heur.Suspicious[at]73308815 and Heur.Suspicious[at]71034465 ,both in .exe file. Is it false positive or not? thank you! Jan

We are going to verify if the reported detections are false-positives or not. We'll get back to you after reaching a conclusion.

Thanks,
Ionel
Logged
ionelp
Global Moderator
Comodo's Hero
*****
Offline Offline

Posts: 319



« Reply #3 on: October 26, 2009, 02:00:27 PM »

Hi hony,

The false-positive was fixed with DB 2741. You can update the Virus Database to confirm.

Thanks and regards,
Ionel
Logged
buzzwoody69
Newbie
*
Offline Offline

Posts: 9


« Reply #4 on: November 11, 2009, 11:34:35 AM »

Hi can you please advise if the attached is the same thing?

Thanks in advance
Logged
jefedeldia
Newbie
*
Offline Offline

Posts: 1


« Reply #5 on: November 16, 2009, 05:23:45 PM »

My Antivirus Alert is fixated on Heur.Suspicious[at]4618451.  Please tell me this is a false positive and how to teach this to the AV Alert.

No response to post.  I'd send the file as suggested to another poster below, but I can't find it (them) in the depths of my computer.  Please advise!
« Last Edit: December 02, 2009, 03:21:25 PM by jefedeldia » Logged
lorenzopelle
Newbie
*
Offline Offline

Posts: 1


« Reply #6 on: November 19, 2009, 05:06:24 PM »

Hi I am installing freecall and I get continuous warnings of heur.suspicious viruses. is it a false positive?

thanks
Lroenzo
Logged
languy99
Global Moderator
Comodo's Hero
*****
Online Online

Posts: 869



« Reply #7 on: November 19, 2009, 05:12:29 PM »

possible FP, submit the installer here and give comodo a few days http://internetsecurity.comodo.com/submit.php
Logged

http://www.youtube.com/languy99

Software Reviews For All
emhami2009
Newbie
*
Offline Offline

Posts: 9


« Reply #8 on: November 24, 2009, 01:49:58 PM »

AH-HA!

so, i just posted this at CIMA board but wanted to see if there was any other info - and it is this file that is getting quarantined......

as i say, any help appreciated!!

"CIMA looks great - but i have settings to "automatic quarantine" - so i guess there's no way of submitting these files as when i try it says "access denied" or words to that effect......i guess i could restore the items - BUT seems like a scarey option - why would i risk restoring a virus to my system...sorry if i sound ignorant - i'm pretty much self taught on the pc...

further to this - the whole reason i'm looking at this is cos i've been having issues today with superantispyware - which i've used for about a month w no probs...but today it wanted to update the version & i've been unable to get it to run - have uninstalled - directly downloaded latest version from cnet - but i think the prob is the files that have been quarantined - I HAD CIS ON INSTALLATION MODE - this makes me suspicious....i mean, shouldn't it have just set up with no probs like my original version a month ago...any ideas? help!

i include screenshot of quarantine folder for anyone who knows about this stuff to peruse....

thanks in advance for any help/advice anyone can give me!

Em."
Logged
EricJH
Global Moderator
Comodo's Hero
*****
Offline Offline

Posts: 4163



« Reply #9 on: November 27, 2009, 01:30:13 PM »

Emhami, please don't cross post.
Logged

Triple boot: XP SP3, Vista Ultimate 32 SP2 and Win7 RTM (default) , Always the latest CIS or CIS Beta (too lazy to update my sig) Athlon XP 2600 1 GB RAM. Opera Browser always using the latest snapshots; Opera 10.10 as of now
keralitee
Newbie
*
Offline Offline

Posts: 2


« Reply #10 on: November 27, 2009, 04:08:04 PM »

Hi,
installing voipdiscount comodo finds Heur.Suspicious[at]83012681 and says it's a virus.

False positive?
Logged
HeffeD
Comodo's Hero
*****
Offline Offline

Posts: 1466


« Reply #11 on: November 27, 2009, 10:35:26 PM »

Submit the file to VirusTotal and see what all the other AV scanners there think.

If you feel it is a false positive, submit it to Comodo Malware Analysis and they'll fix it.
Logged

keralitee
Newbie
*
Offline Offline

Posts: 2


« Reply #12 on: November 28, 2009, 07:01:48 AM »

Virus Total is really frustrating. the upload process stops at 92% and later this message comes:
Please report failure as: ErrorTime= "Nov 28 12:52:51"

Successfully uploaded to CMA though. Thanks for your help!


Submit the file to VirusTotal and see what all the other AV scanners there think.

If you feel it is a false positive, submit it to Comodo Malware Analysis and they'll fix it.
Logged
gumbo
Newbie
*
Offline Offline

Posts: 1


« Reply #13 on: December 01, 2009, 07:06:37 AM »

I have run a deep scan with comodo and it alerts on googlechrome and hitmanpro Heur.Suspicious[at]84316744. both exe. files. Is this a False positieve?


Logged
HeffeD
Comodo's Hero
*****
Offline Offline

Posts: 1466


« Reply #14 on: December 01, 2009, 03:45:57 PM »

Read my post above.
Logged

Tags:
Pages: [1] 2 Go Up Print 
« previous next »
Jump to:  

SSL Certificate Free Virus Removal Firewall
Page created in -0 seconds with 20 queries.
Powered by SMF 1.1.10 | SMF © 2006, Simple Machines LLC
Seo4Smf v0.2 © Webmaster's Talks
Design by 7dana.com