Welcome, Guest. Please login or register.
January 04, 2010, 03:27:16 AM

Login with username, password and session length

347332 Posts
38419 Topics
87309 Members

Latest Member: Hemal Shah

Search:     Advanced search | Tag Cloud
+  Welcome to the Comodo Forum
|-+  Desktop Security Products
| |-+  Comodo Internet Security - CIS
| | |-+  Bug Report - CIS
| | | |-+  False Positive/Negative reporting - (Is this a malware that CIS has/not detected?)
| | | | |-+  Incredimail Installer - FP
« previous next »
Pages: [1] Go Down Print
Author Topic: Incredimail Installer - FP  (Read 531 times)
Ronny
Product Translator
Global Moderator
Comodo's Hero
*****
Offline Offline

Posts: 5366



« on: November 16, 2009, 06:28:21 AM »

Incredimail Installer (This downloads the actual mail client).

http://www.incredimail.com/english/download.aspx?product=installer

File attached, password = infected

Detection DB 2957

Detected as Heur.Suspicious[at]77055031
Logged

Forum Volunteer - Any concerns? Please send me a PM and/or review the Forum Policy !
haja
Comodo Family Member
***
Online Online

Posts: 56



« Reply #1 on: November 16, 2009, 06:32:31 AM »

Hi Ronny,
Incredimail Installer (This downloads the actual mail client).

http://www.incredimail.com/english/download.aspx?product=installer

File attached, password = infected

Detection DB 2957

Detected as Heur.Suspicious[at]77055031

Thanks for reporting.We will check that and get back to you shortly.


Regards,
Haja
Logged
bequick
Comodo's Hero
*****
Online Online

Posts: 555



WWW
« Reply #2 on: November 16, 2009, 07:08:59 AM »

My CIS doesn't detect it.Heuristics high. Detection DB 2957
Logged

Ronny
Product Translator
Global Moderator
Comodo's Hero
*****
Offline Offline

Posts: 5366



« Reply #3 on: November 16, 2009, 07:20:40 AM »

If i download this with FF i get an alert on the cache folder and if i save it to disk also.

AV = Stateful, Heur=low
Logged

Forum Volunteer - Any concerns? Please send me a PM and/or review the Forum Policy !
bequick
Comodo's Hero
*****
Online Online

Posts: 555



WWW
« Reply #4 on: November 16, 2009, 07:37:32 AM »

OK, it's pretty weird.When i start the installer-nothing.When i quit it, CIS detects it. Huh
Logged

Ronny
Product Translator
Global Moderator
Comodo's Hero
*****
Offline Offline

Posts: 5366



« Reply #5 on: November 16, 2009, 07:42:51 AM »

Sounds creepy, what happens if you set to Statefull, Low, reboot and retry ?
Logged

Forum Volunteer - Any concerns? Please send me a PM and/or review the Forum Policy !
Ionel
Global Moderator
Comodo's Hero
*****
Offline Offline

Posts: 337



« Reply #6 on: November 16, 2009, 04:06:46 PM »

Hi Ronny,

Incredimail Installer (This downloads the actual mail client).

http://www.incredimail.com/english/download.aspx?product=installer

File attached, password = infected

Detection DB 2957

Detected as Heur.Suspicious[at]77055031

The false-positive was fixed with DB 2960. Thank you for reporting it!

Regards,
Ionel

Logged
Ronny
Product Translator
Global Moderator
Comodo's Hero
*****
Offline Offline

Posts: 5366



« Reply #7 on: November 16, 2009, 05:14:31 PM »

Confirmed fixed
Logged

Forum Volunteer - Any concerns? Please send me a PM and/or review the Forum Policy !
Tags:
Pages: [1] Go Up Print 
« previous next »
Jump to:  

SSL Certificate Free Virus Removal Firewall
Page created in 0.041 seconds with 20 queries.
Powered by SMF 1.1.11 | SMF © 2006, Simple Machines LLC
Seo4Smf v0.2 © Webmaster's Talks
Design by 7dana.com