MultiPackFull.tmp #3

Hello. The issue is getting out of hand :slight_smile:

This the third thread regarding this WoT modifications package. Why does it always reappear in your databases?

First ocassion: https://forums.comodo.com/av-false-positivenegative-detection-reporting/multipackfulltmp-t108832.0.html;msg790870#msg790870
Second ocassion: https://forums.comodo.com/av-false-positivenegative-detection-reporting/multipackfulltmp-2-t109350.0.html;msg794283#msg794283

Links:
http://dwn.wotsite.net/yusha/MultiPackFull.exe
http://file.theaces.ru/mods/MultiPackFull.exe
http://worldoftanks.ping-admin.ru/mods/MultiPackFull.exe
https://cloud.mail.ru/public/58ad27c7af5b/MultiPackFull.exe

Virustotal: VirusTotal

Can you do something so we won’t have to report it each time it gets an update?

Thanks.

Hello un5killed,

This False Positive will be fixed soon. Since I remember you said you are using only the Firewall you can try going to the “File Rating>File Rating Settings” menu and disable the “Enable Cloud Lookup” option.

Best regards,
FlorinG

Hello, FlorinG.
That was what I did… But this kind of defeats the purpose of this option :slight_smile:

Does someone mark this file as harmful?

This FP occurs on many other programs’ installers, it seems analysts fix the FPs just by adding the hash to some whitelist…

Hello,

This FP should be fixed with DB 21479.

Best regards,
FlorinG