Welcome to the Comodo Forum
Welcome,
Guest
. Please
login
or
register
.
Did you miss your
activation email?
May 24, 2013, 04:32:58 PM
1 Hour
1 Day
1 Week
1 Month
Forever
Login with username, password and session length
663993
Posts
70623
Topics
153560
Members
Latest Member:
wsjdmydle
more news...
Search:
Advanced search
|
Tag Cloud
Welcome to the Comodo Forum
Security Products & Services
Comodo Internet Security - CIS
AV False Positive/Negative Detection Reporting
Post here your unfixed FP's (only after 2 days)
« previous
next »
Pages:
1
...
3
4
[
5
]
6
7
...
13
Author
Topic: Post here your unfixed FP's (only after 2 days) (Read 102955 times)
Vaishnavi
Comodo's Hero
Offline
Posts: 376
Re: Google Toolbar - False positive detection (strike 2)
«
Reply #60 on:
October 31, 2009, 03:41:25 AM »
Hi superbabouche,
Quote from: superbabouche on October 30, 2009, 03:03:15 AM
Hi,
There is again a problem about the Google Toolbar. Google Toolbar creates a temporary file but there is a possible malware inside.
My original FP: Google Toolbar - False positive detection at
https://forums.comodo.com/false_positivenegative_reporting_is_this_a_malware_that_cis_hasnot_detected/google_toolbar_false_positive_detection-t46949.0.html
Last test with CIS: 03:51 am on october 30th, 2009
Virus database: 2777
--------
For now, the actual problem is like this:
False positive filename: gt30CF.tmp
Name of the FP: Heur.Suspicious[at]70862321
Website of the program:
http://www.google.com/intl/fr/toolbar/ie/index.html
CIS database: 2777
10-4.
Reported FP has been fixed in DB 2782 of CIS 3.12.111745.560.
Regards,
Vaishnavi.V.K
Logged
shaogang.he
Guest
Re: Post here your unfixed FP's (only after 2 days)
«
Reply #61 on:
January 30, 2010, 08:39:48 PM »
Quote from: Naveus on January 30, 2010, 08:04:36 AM
I have a problem with Spotify, it has always worked but yesterday my antivirus showed a warning of C:\Users\****\Program\Spotify.exe.
It requested me to delete or put it in quarantine, I deleted it and reinstalled Spotify but I still have the same problem. Here's what the warning sign says : Heur.Suspicious[at]95263058.
Please help, I won't survive without my beloved spotify!
Hi,Naveus
We are going to check it out and will get back to you shortly.
Thanks
Shaogang
Logged
Ionel
Comodo Staff
Comodo's Hero
Offline
Posts: 667
Re: Post here your unfixed FP's (only after 2 days)
«
Reply #62 on:
February 01, 2010, 10:08:42 AM »
Hi Naveus,
Quote from: Naveus on January 30, 2010, 08:04:36 AM
I have a problem with Spotify, it has always worked but yesterday my antivirus showed a warning of C:\Users\****\Program\Spotify.exe.
It requested me to delete or put it in quarantine, I deleted it and reinstalled Spotify but I still have the same problem. Here's what the warning sign says : Heur.Suspicious[at]95263058.
Please help, I won't survive without my beloved spotify!
This false-positive is already fixed with DB 3783. You can check and confirm.
Regards,
Ionel
Logged
dizzib321
Newbie
Offline
Posts: 2
Re: Post here your unfixed FP's (only after 2 days)
«
Reply #63 on:
February 04, 2010, 09:23:29 AM »
Can someone please help? I got a 2 warnings from comodo saying it had detected 2 viruses called Heur.Dual.Extensions. I clicked to remove but in the antivirus events it doesn't say it has removed ithem. They are stored in a temp folder. I submitted them both and one came back as a FP but the other could not be processed, saying this file cannot be detected. I have tried again but am worried as I reported them on Sunday and it still isn't sorted. It has the file name gtbFECA.tmp.exe. I update every day and scan about once a month. Any advice???
Logged
Ionel
Comodo Staff
Comodo's Hero
Offline
Posts: 667
Re: Post here your unfixed FP's (only after 2 days)
«
Reply #64 on:
February 04, 2010, 09:34:03 AM »
Hi dizzib321,
Quote from: dizzib321 on February 04, 2010, 09:23:29 AM
Can someone please help? I got a 2 warnings from comodo saying it had detected 2 viruses called Heur.Dual.Extensions. I clicked to remove but in the antivirus events it doesn't say it has removed ithem. They are stored in a temp folder. I submitted them both and one came back as a FP but the other could not be processed, saying this file cannot be detected. I have tried again but am worried as I reported them on Sunday and it still isn't sorted. It has the file name gtbFECA.tmp.exe. I update every day and scan about once a month. Any advice???
We received the file from you and at the time you reported, it was not detected anymore as it was fixed with a previous Antivirus DB version. Previously was detected by heuristics as "Heur.Dual.Extension". The file was confirmed that it's not malware and you can further use it without any concerns. If it's still detected on your system, please try to update CIS and it's Antivirus DB and if it's still not fixed, please let us know.
A response was sent back to you via email as well.
Thanks and regards,
Ionel
«
Last Edit: February 04, 2010, 09:36:54 AM by Ionel
»
Logged
dizzib321
Newbie
Offline
Posts: 2
Re: Post here your unfixed FP's (only after 2 days)
«
Reply #65 on:
February 04, 2010, 09:35:34 AM »
Thank you so much, that was quick....
Logged
Chiron
Global Moderator
Comodo's Hero
Offline
Posts: 5586
Re: Post here your unfixed FP's (only after 2 days)
«
Reply #66 on:
February 28, 2010, 02:46:24 PM »
Quote from: Chiron494 on February 22, 2010, 11:19:15 PM
Hello, I recently reported a false positive through the web interface and I received an email telling me that it is not detected.
I checked again and the file is still being detected. I am running:
CIS V4.0.133118.719
Database 4031
I have the heuristics set to high. I have attached the file below.
I'm now at DB 4097 and the file is still detected. It is still being detected as Heur.Dual.Extensions as it is a .tmp.bat. I have attached it to this post.
uttAF59.tmp.zip
(0.18 KB - downloaded 5 times.)
Logged
How To Install Comodo Firewall
How To Stay Safe While Online
Ionel
Comodo Staff
Comodo's Hero
Offline
Posts: 667
Re: Post here your unfixed FP's (only after 2 days)
«
Reply #67 on:
March 01, 2010, 06:46:04 AM »
Hi Chiron,
Quote from: Chiron494 on February 28, 2010, 02:46:24 PM
I'm now at DB 4097 and the file is still detected. It is still being detected as Heur.Dual.Extensions as it is a .tmp.bat. I have attached it to this post.
This was indeed confirmed as false-positive, but there is a known issue fixing this with CIS v4, therefore we recommend to add the file to exclusion list until final adjustments are made in order to solve this.
Thanks and regards,
Ionel
«
Last Edit: March 01, 2010, 07:30:14 AM by Ionel
»
Logged
Ionel
Comodo Staff
Comodo's Hero
Offline
Posts: 667
Re: Post here your unfixed FP's (only after 2 days)
«
Reply #68 on:
March 09, 2010, 06:40:39 AM »
Hi Chiron494,
Quote from: Chiron494 on February 28, 2010, 02:46:24 PM
I'm now at DB 4097 and the file is still detected. It is still being detected as Heur.Dual.Extensions as it is a .tmp.bat. I have attached it to this post.
The false-positive is now fixed with DB 4199. You can update and verify.
Thank you for reporting it!
Regards,
Ionel
Logged
Terepin
Comodo's Hero
Offline
Posts: 462
Re: Post here your unfixed FP's (only after 2 days)
«
Reply #69 on:
March 16, 2010, 12:51:24 PM »
After 8(!) days AnVir Task manager Free FP still isn't fixed!
Logged
My level of sarcasm is proportional to your stupidity.
Ionel
Comodo Staff
Comodo's Hero
Offline
Posts: 667
Re: Post here your unfixed FP's (only after 2 days)
«
Reply #70 on:
March 16, 2010, 01:05:55 PM »
Hi Mr.Henky,
Quote from: Mr.Henky on March 16, 2010, 12:51:24 PM
After 8(!) days AnVir Task manager Free FP still isn't fixed!
Sorry for the inconvenience, we will fix this false-positive as soon as possible.
Regards,
Ionel
Logged
Ionel
Comodo Staff
Comodo's Hero
Offline
Posts: 667
Re: Post here your unfixed FP's (only after 2 days)
«
Reply #71 on:
March 17, 2010, 11:12:46 AM »
Hi Mr.Henky,
Quote from: Mr.Henky on March 16, 2010, 12:51:24 PM
After 8(!) days AnVir Task manager Free FP still isn't fixed!
The false-positive was fixed with DB 4296. You can verify and confirm.
Thanks and regards,
Ionel
Logged
Terepin
Comodo's Hero
Offline
Posts: 462
Re: Post here your unfixed FP's (only after 2 days)
«
Reply #72 on:
March 18, 2010, 03:40:57 AM »
Yeah, that FP is fixed.
But now there is a new one.
fp2.jpg
(35.67 KB, 394x255 - viewed 22 times.)
Logged
My level of sarcasm is proportional to your stupidity.
haja
First Response Group
Comodo's Hero
Offline
Posts: 703
Re: Post here your unfixed FP's (only after 2 days)
«
Reply #73 on:
March 18, 2010, 05:12:38 AM »
Hi Mr.Henky,
Quote from: Mr.Henky on March 18, 2010, 03:40:57 AM
Yeah, that FP is fixed.
But now there is a new one.
Thanks for reporting again.Detection will be removed in next few updates.
Thanks,
Haja
Logged
Ionel
Comodo Staff
Comodo's Hero
Offline
Posts: 667
Re: Post here your unfixed FP's (only after 2 days)
«
Reply #74 on:
March 18, 2010, 01:04:26 PM »
Hi Mr.Henky,
Quote from: Mr.Henky on March 18, 2010, 03:40:57 AM
Yeah, that FP is fixed.
But now there is a new one.
The false-positive was fixed with DB 4306.
Regards,
Ionel
Logged
Tags:
Pages:
1
...
3
4
[
5
]
6
7
...
13
« previous
next »
Jump to:
Please select a destination:
-----------------------------
General Category
-----------------------------
=> Melih's Corner - CEO Talk/Discussions/Blog
=> Comodo.TV - Our Internet Video Channel
===> Comodo.TV - News and Announcements
===> Comodo.TV - Program Lineup
===> Audience Feedback and Suggestions
=> Which Product do you want Comodo to develop next?
=> How Can I Help Comodo? (Please We Need You!)
===> Report Comodo Forum / Web Site Issues
===> Please Tell Us Your Views and Vote Here!
===> Help Spread the Word - Banners and Logos
=> General Discussion (off topic) Anything and everything...
===> Member Confessions :-)
===> Funny Photos :-)
===> Cool Stuff
-----------------------------
Security Products & Services
-----------------------------
=> Comodo Internet Security - CIS
===> News / Announcements / Feedback - CIS
=====> Wishlist - CIS
===> Help - CIS
=====> Guides - CIS
=====> AntiVirus Help - CIS
=======> AntiVirus FAQ - CIS
=====> Firewall Help - CIS
=======> Firewall FAQ - CIS
=====> Defense+ / Sandbox Help - CIS
=======> Defense+ / Sandbox FAQ - CIS
=====> Install / Setup / Configuration Help - CIS
=======> Install / Setup / Configuration FAQ - CIS
===> Bug Reports - CIS
===> AV False Positive/Negative Detection Reporting
=> Comodo Cleaning Essentials + KillSwitch & Autoruns - CCE
===> News / Announcements / Feedback - CCE
=====> Wishlist - CCE
===> Help - CCE
===> Bug Reports - CCE
=> Comodo Antivirus for Mac OS X - CAVM
=> Comodo Antivirus for Linux - CAVL
=> Comodo Mobile Security - CMS
=> Comodo Time Machine - CTM
===> News / Announcements / Feedback - CTM
===> Help - CTM
=====> FAQ - CTM
===> Bug Reports - CTM
=> Comodo Dragon - CD
===> News / Announcements / Feedback - CD
=====> Wishlist - CD
===> Help - CD
=====> FAQ - CD
===> Bug Reports - CD
=> COMODO IceDragon - CID
===> News / Announcements / Feedback – CID
=====> Wishlist - CID
===> Help – CID
===> Bug Reports - CID
===> Beta Corner – CID
=> Comodo LoginPRO
=> Comodo Disk Encryption - CDE
===> News / Announcements / Feedback - CDE
=====> Wishlist - CDE
===> Help - CDE
=====> FAQ - CDE
===> Bug Reports - CDE
=> Comodo Secure DNS - DNS
===> News / Announcements / Feedback - DNS
===> Help - DNS
=> Comodo Unite (EasyVPN) - CUnite
===> News / Announcements / Feedback - CUnite
===> Help - CUnite
=====> FAQ - CUnite
===> Bug reports - CUnite
=> Comodo TrustConnect - CTC
=> Comodo SiteInspector - CSI
=> Comodo Valkyrie - FLS
=> Comodo Instant Malware Analysis Online - CIMA
=> Comodo Rescue Disk - CRD
-----------------------------
Desktop Utilities & Services
-----------------------------
=> Comodo System Utilities - CSU
===> News / Announcements / Feedback - CSU
===> Help - CSU
=====> FAQ - CSU
===> Wishlist - CSU
=> Comodo Backup - CB
===> News / Announcements / Feedback - CB
===> Comodo Cloud
===> Help - CB
=====> FAQ - CB
===> Wishlist - CB
=> Comodo Programs Manager - CPM
===> News / Announcements / Feedback – CPM
===> Help - CPM
===> Wishlist - CPM
=> GeekBuddy & Live PC Support
=> GeekBuddy PC Health Check - PCHC
===> News/ Announcements / Feedback – PCHC
===> Help - PCHC
-----------------------------
Business / Enterprise Security Products & Services
-----------------------------
=> Digital Certificates
===> Code Signing Certificate
===> Content Verification Certificate
===> Email Certificate
===> SSL Certificate
=> PCI DSS Compliance
=> Comodo Endpoint Security Manager
===> Endpoint Security Manager 1.6
===> Endpoint Security Manager 2.0 Business Edition
===> Endpoint Security Manager 2.1
===> Endpoint Security Manager 3.0
=====> CESM 3.0 Beta
===> ESM Console for Windows Phone
===> Earlier versions of CESM
=> Two Factor Authentication for Web Applications
=> Trustlogo
=> Hacker Guardian
=> Comodo Network Center - CNC
=> Comodo AntiSpam Gateway - Hosted Anti Spam Service
-----------------------------
Learn about Computer Security and Interact with Security Experts
-----------------------------
=> General Security Questions and Comments
=> Virus/Malware Removal Assistance
=> Leak Testing/Attacks/Vulnerability Research
=> Digital Certificates, Encryption and Digital Signing
=> Other Security Products
-----------------------------
International Comodo Forums
-----------------------------
=> International Comodo Forums
===> 汉语语言, 漢語語言 / Chinese Simplified, Traditional
===> Česky / Czech
===> Dansk / Danish
===> Nederlands / Dutch
===> Suomi / Finnish
===> Francais / French
===> Deutsch / German
===> ελληνικά / Greek
===> Magyar / Hungarian
===> Italiano / Italian
===> Nihongo / Japanese
===> Norsk / Norwegian
===> Polski / Polish
===> Português/Portuguese
===> Română / Romanian
===> По-русски / Russian
=====> News & FAQ
=====> Оффтоп (OFFTOP)
=====> Архив / Archive
===> Slovenský / Slovak
===> Slovenščina / Slovenian
===> Espanol / Spanish
===> Svenska / Swedish
===> Turkce / Turkish
===> Українська / Ukrainian
===> Việt / Vietnamese
===> Estonian
===> Arabic
-----------------------------
Archived Boards
-----------------------------
=> Discontinued Products
===> Comodo Web Application Firewall - CWAF
===> Comodo HopSurf - CHS
===> Comodo AntiSpam - CAS
=====> Help - CAS
=======> FAQ - CAS
=====> News / Announcements / Feedback - CAS
=======> Wishlist - CAS
=====> Bug Reports - CAS
===> Verification Engine - CVE
===> Comodo Secure Email - CSE
=====> News / Announcements / Feedback - CSE
=====> Help - CSE
=======> FAQ - CSE
=====> Bug Reports - CSE
===> Comodo Cloud Scanner - CCS
=====> News / Announcements / Feedback - CCS
=====> FAQ - CCS
=====> Beta Corner - CCS
=====> Wishlist - CCS
===> Comodo Anti-Viruspyware (CAVS)
=====> Help for Comodo AntiVirus
=====> FAQ for Comodo Anti-ViruSpyware
=====> Feedback/Comments/Announcements/News about CAVS
=====> CAVS BETA Corner
=====> Announcements
=====> Comodo BOClean Anti-Malware FAQ
===> Comodo Diskshield
===> Comodo Firewall
=====> Feedback/Comments/Announcements/News
=====> Help for v3
=====> Help for v2
=====> Frequently Asked Questions (FAQ) for Comodo firewall
=====> CFP BETA Corner
=======> 32 bit bug reports
=======> 64 bit bug reports
=====> Comodo Firewall Translations
=====> Bug Reports
===> i-Vault
===> Launch Pad (Discontinued)
===> Comodo Meet (Web Conferencing Product) (Discontinued)
===> Comodo Memory Firewall(Buffer Overflow Protection)
=====> Comodo Memory Firewall Beta Corner
=====> Help
=====> Frequently Asked Questions (Comodo Memory Firewall)
=====> Feedback/Comments/Announcements/News
===> Safesurf
===> Trusttoolbar (Discontinued)
===> Trustfax (online faxing)
===> Trustix Enterprise Firewall
===> User Anywhere (Remote Access product) (Discontinued)
===> UserTrust - First Independent Website Rating - Empowering our users!
===> Comodo Vulnerability Analyzer - CVA
===> ZTL
=> Comodo Wiki Project
Page created in 0.056 seconds with 22 queries.
Powered by SMF 1.1.18
|
SMF © 2006, Simple Machines
Design by
7dana.com