Welcome, Guest. Please login or register.
Did you miss your activation email?
May 19, 2013, 03:34:56 AM

Login with username, password and session length

662952 Posts
70576 Topics
145151 Members

Latest Member: liquidcat

Search:     Advanced search | Tag Cloud
+  Welcome to the Comodo Forum
|-+  Security Products & Services
| |-+  Comodo Internet Security - CIS
| | |-+  AV False Positive/Negative Detection Reporting
| | | |-+  Post here your unfixed FP's (only after 2 days)
« previous next »
Pages: 1 ... 3 4 [5] 6 7 ... 13 Go Down Print
Author Topic: Post here your unfixed FP's (only after 2 days)  (Read 102552 times)
Vaishnavi
Comodo's Hero
*****
Offline Offline

Posts: 376



« Reply #60 on: October 31, 2009, 03:41:25 AM »

Hi superbabouche,

Hi,
There is again a problem about the Google Toolbar. Google Toolbar creates a temporary file but there is a possible malware inside.

My original FP: Google Toolbar - False positive detection at https://forums.comodo.com/false_positivenegative_reporting_is_this_a_malware_that_cis_hasnot_detected/google_toolbar_false_positive_detection-t46949.0.html
Last test with CIS: 03:51 am on october 30th, 2009
Virus database: 2777
--------

For now, the actual problem is like this:

False positive filename: gt30CF.tmp
Name of the FP: Heur.Suspicious[at]70862321
Website of the program: http://www.google.com/intl/fr/toolbar/ie/index.html
CIS database: 2777


10-4.


Reported FP has been fixed in DB 2782 of CIS 3.12.111745.560.

Regards,
Vaishnavi.V.K
Logged
shaogang.he
Guest
« Reply #61 on: January 30, 2010, 08:39:48 PM »

I have a problem with Spotify, it has always worked but yesterday my antivirus showed a warning of C:\Users\****\Program\Spotify.exe.  Huh

It requested me to delete or put it in quarantine, I deleted it and reinstalled Spotify but I still have the same problem. Here's what the warning sign says : Heur.Suspicious[at]95263058.

Please help, I won't survive without my beloved spotify!  Shocked
Hi,Naveus
We are going to check it out and will get back to you shortly.
Thanks   
Shaogang
Logged
Ionel
Comodo Staff
Comodo's Hero
*****
Offline Offline

Posts: 667



« Reply #62 on: February 01, 2010, 10:08:42 AM »

Hi Naveus,

I have a problem with Spotify, it has always worked but yesterday my antivirus showed a warning of C:\Users\****\Program\Spotify.exe.  Huh

It requested me to delete or put it in quarantine, I deleted it and reinstalled Spotify but I still have the same problem. Here's what the warning sign says : Heur.Suspicious[at]95263058.

Please help, I won't survive without my beloved spotify!  Shocked

This false-positive is already fixed with DB 3783. You can check and confirm.

Regards,
Ionel
Logged
dizzib321
Newbie
*
Offline Offline

Posts: 2


« Reply #63 on: February 04, 2010, 09:23:29 AM »

Can someone please help?  I got a 2 warnings from comodo saying it had detected 2 viruses called Heur.Dual.Extensions. I clicked to remove but in the antivirus events it doesn't say it has removed ithem. They are stored in a temp folder.  I submitted them both and one came back as a FP but the other could not be processed, saying this file cannot be detected.  I have tried again but am worried as I reported them on Sunday and it still isn't sorted.  It has the file name gtbFECA.tmp.exe.  I update every day and scan about once a month.  Any advice???
Logged
Ionel
Comodo Staff
Comodo's Hero
*****
Offline Offline

Posts: 667



« Reply #64 on: February 04, 2010, 09:34:03 AM »

Hi dizzib321,

Can someone please help?  I got a 2 warnings from comodo saying it had detected 2 viruses called Heur.Dual.Extensions. I clicked to remove but in the antivirus events it doesn't say it has removed ithem. They are stored in a temp folder.  I submitted them both and one came back as a FP but the other could not be processed, saying this file cannot be detected.  I have tried again but am worried as I reported them on Sunday and it still isn't sorted.  It has the file name gtbFECA.tmp.exe.  I update every day and scan about once a month.  Any advice???

We received the file from you and at the time you reported, it was not detected anymore as it was fixed with a previous Antivirus DB version. Previously was detected by heuristics as "Heur.Dual.Extension". The file was confirmed that it's not malware and you can further use it without any concerns. If it's still detected on your system, please try to update CIS and it's Antivirus DB and if it's still not fixed, please let us know.

A response was sent back to you via email as well.

Thanks and regards,
Ionel
« Last Edit: February 04, 2010, 09:36:54 AM by Ionel » Logged
dizzib321
Newbie
*
Offline Offline

Posts: 2


« Reply #65 on: February 04, 2010, 09:35:34 AM »

Thank you so much, that was quick.... Smiley
Logged
Chiron
Global Moderator
Comodo's Hero
*****
Offline Offline

Posts: 5568



« Reply #66 on: February 28, 2010, 02:46:24 PM »

Hello, I recently reported a false positive through the web interface and I received an email telling me that it is not detected.

I checked again and the file is still being detected. I am running:
CIS V4.0.133118.719
Database 4031

I have the heuristics set to high. I have attached the file below.
I'm now at DB 4097 and the file is still detected. It is still being detected as Heur.Dual.Extensions as it is a .tmp.bat. I have attached it to this post.

* uttAF59.tmp.zip (0.18 KB - downloaded 5 times.)
Logged

Ionel
Comodo Staff
Comodo's Hero
*****
Offline Offline

Posts: 667



« Reply #67 on: March 01, 2010, 06:46:04 AM »

Hi Chiron,

I'm now at DB 4097 and the file is still detected. It is still being detected as Heur.Dual.Extensions as it is a .tmp.bat. I have attached it to this post.

This was indeed confirmed as false-positive, but there is a known issue fixing this with CIS v4, therefore we recommend to add the file to exclusion list until final adjustments are made in order to solve this.  

Thanks and regards,
Ionel
« Last Edit: March 01, 2010, 07:30:14 AM by Ionel » Logged
Ionel
Comodo Staff
Comodo's Hero
*****
Offline Offline

Posts: 667



« Reply #68 on: March 09, 2010, 06:40:39 AM »

Hi Chiron494,

I'm now at DB 4097 and the file is still detected. It is still being detected as Heur.Dual.Extensions as it is a .tmp.bat. I have attached it to this post.

The false-positive is now fixed with DB 4199. You can update and verify.

Thank you for reporting it!

Regards,
Ionel
Logged
Terepin
Comodo's Hero
*****
Offline Offline

Posts: 462



WWW
« Reply #69 on: March 16, 2010, 12:51:24 PM »

After 8(!) days AnVir Task manager Free FP still isn't fixed! Angry
Logged

My level of sarcasm is proportional to your stupidity.
Ionel
Comodo Staff
Comodo's Hero
*****
Offline Offline

Posts: 667



« Reply #70 on: March 16, 2010, 01:05:55 PM »

Hi Mr.Henky,

After 8(!) days AnVir Task manager Free FP still isn't fixed! Angry

Sorry for the inconvenience, we will fix this false-positive as soon as possible.

Regards,
Ionel
Logged
Ionel
Comodo Staff
Comodo's Hero
*****
Offline Offline

Posts: 667



« Reply #71 on: March 17, 2010, 11:12:46 AM »

Hi Mr.Henky,

After 8(!) days AnVir Task manager Free FP still isn't fixed! Angry

The false-positive was fixed with DB 4296. You can verify and confirm.

Thanks and regards,
Ionel
Logged
Terepin
Comodo's Hero
*****
Offline Offline

Posts: 462



WWW
« Reply #72 on: March 18, 2010, 03:40:57 AM »

Yeah, that FP is fixed.
But now there is a new one.


* fp2.jpg (35.67 KB, 394x255 - viewed 22 times.)
Logged

My level of sarcasm is proportional to your stupidity.
haja
First Response Group
Comodo's Hero
*****
Offline Offline

Posts: 703



« Reply #73 on: March 18, 2010, 05:12:38 AM »

Hi Mr.Henky,

Yeah, that FP is fixed.
But now there is a new one.

Thanks for reporting again.Detection will be removed in next few updates.

Thanks,
Haja
Logged
Ionel
Comodo Staff
Comodo's Hero
*****
Offline Offline

Posts: 667



« Reply #74 on: March 18, 2010, 01:04:26 PM »

Hi Mr.Henky,

Yeah, that FP is fixed.
But now there is a new one.

The false-positive was fixed with DB 4306.

Regards,
Ionel
Logged
Tags:
Pages: 1 ... 3 4 [5] 6 7 ... 13 Go Up Print 
« previous next »
Jump to:  

SSL Certificate Free Virus Removal Firewall
Page created in 0.05 seconds with 22 queries.
Powered by SMF 1.1.18 | SMF © 2006, Simple Machines Design by 7dana.com