Welcome, Guest. Please login or register.
Did you miss your activation email?
May 18, 2013, 04:45:55 PM

Login with username, password and session length

662895 Posts
70571 Topics
145144 Members

Latest Member: daniela

Search:     Advanced search | Tag Cloud
+  Welcome to the Comodo Forum
|-+  Security Products & Services
| |-+  Comodo Internet Security - CIS
| | |-+  AV False Positive/Negative Detection Reporting
| | | |-+  Virus Name: Heur.suspicious[at]19401400
« previous next »
Pages: [1] 2 3 ... 11 Go Down Print
Author Topic: Virus Name: Heur.suspicious[at]19401400  (Read 91752 times)
bbsv
Newbie
*
Offline Offline

Posts: 3


« on: June 19, 2009, 09:40:00 AM »

Does anyone know what the following virus is, please?

Virus Name: Heur.suspicious[at]19401400

The free Comodo anti-virus/firewall recognizes this as a virus when installing the readplease2003 free version.

Cheers,
bbsv
« Last Edit: June 19, 2009, 09:41:36 AM by bbsv » Logged
Ionel
Comodo Staff
Comodo's Hero
*****
Offline Offline

Posts: 667



« Reply #1 on: June 19, 2009, 10:21:53 AM »

Hi,

We will check if what you reported is malware or just false positive.

Thanks,
Ionel
Logged
Ionel
Comodo Staff
Comodo's Hero
*****
Offline Offline

Posts: 667



« Reply #2 on: June 19, 2009, 12:39:55 PM »

Hi,

The false positive was fixed with DB 1373.

Thanks,
Ionel
Logged
bbsv
Newbie
*
Offline Offline

Posts: 3


« Reply #3 on: June 20, 2009, 12:14:37 AM »

Thanks Ionel for fixing "Virus Name: Heur.Suspicious[at]19401400".

I successfully installed the free version of readplease2003.

However, after I had finished the installation I received a new virus warning:

Virus Name: Heur.Suspicious[at]24212208

This time however, I ignored it and sent it to an exclusion folder or something.

Perhaps you may want to deal with this one too, Ionel.

Cheers,
bbsv
« Last Edit: June 20, 2009, 12:16:50 AM by bbsv » Logged
Vaishnavi
Comodo's Hero
*****
Offline Offline

Posts: 376



« Reply #4 on: June 20, 2009, 01:37:51 AM »

Hi bbsv,

Thanks Ionel for fixing "Virus Name: Heur.Suspicious[at]19401400".

I successfully installed the free version of readplease2003.

However, after I had finished the installation I received a new virus warning:

Virus Name: Heur.Suspicious[at]24212208

This time however, I ignored it and sent it to an exclusion folder or something.

Perhaps you may want to deal with this one too, Ionel.

Cheers,
bbsv

Thanks for reporting.We will get back to you after analysis.

Regards,
Vaishnavi.V.K
Logged
Vaishnavi
Comodo's Hero
*****
Offline Offline

Posts: 376



« Reply #5 on: June 20, 2009, 06:38:25 AM »

Hi bbsv,

Reported FP has been fixed in DB1378.Please update and confirm.

Regards,

Vaishnavi.V.K
Logged
bbsv
Newbie
*
Offline Offline

Posts: 3


« Reply #6 on: June 20, 2009, 09:59:25 PM »

Hi bbsv,

Reported FP has been fixed in DB1378.Please update and confirm.

Regards,

Vaishnavi.V.K

Updated. I will let you know if I receive anymore of these "Heur.Suspicious[at]..." warnings.
Logged
oldie
Newbie
*
Offline Offline

Posts: 1


« Reply #7 on: July 12, 2009, 02:40:15 PM »

Does this mean we should just ignore "heur.suspicious [at] any number?
Logged
OmeletGuy
Back for a while.
Global Moderator
Comodo's Hero
*****
Offline Offline

Posts: 2905


Dragon Theme Maker


« Reply #8 on: July 12, 2009, 03:32:20 PM »

Does this mean we should just ignore "heur.suspicious [at] any number?

No dont ignore Heur.Suspicious detections, its catching way more Malware then its making FP's. Smiley
Logged

Comodo Dragon themes, including windows Aero options. Download  Here

System Details: W7-64bit | 4GB DDR2 | Intel Core 2 Extreme X6800 | CIS 5.10 | Geforce 560 GTX 1
youngy
Newbie
*
Offline Offline

Posts: 5


« Reply #9 on: July 13, 2009, 05:01:19 AM »

hi i have installed internet explorer 8 tday and was directed to windows update page as google toolbar was not compatible with ie8. when i downloaded google tb 6 via the link i got error virus heur.suspicious[at]25726623

is this a false positive? or do i have a problem?
i use free comodo internet security.
thanks
Logged
gmohan
Comodo's Hero
*****
Offline Offline

Posts: 368



« Reply #10 on: July 13, 2009, 05:34:10 AM »

Hi youngy ,
hi i have installed internet explorer 8 tday and was directed to windows update page as google toolbar was not compatible with ie8. when i downloaded google tb 6 via the link i got error virus heur.suspicious[at]25726623

is this a false positive? or do i have a problem?
i use free comodo internet security.
thanks

The mentioned detection is false positive and it will be fixed.
Thanks for reporting

-Chandra Mohan
Logged
gmohan
Comodo's Hero
*****
Offline Offline

Posts: 368



« Reply #11 on: July 13, 2009, 08:01:34 AM »

Hi youngy ,
hi i have installed internet explorer 8 tday and was directed to windows update page as google toolbar was not compatible with ie8. when i downloaded google tb 6 via the link i got error virus heur.suspicious[at]25726623

is this a false positive? or do i have a problem?
i use free comodo internet security.
thanks

Reported FP has been fixed in DB 1635.

-Chandra Mohan
Logged
youngy
Newbie
*
Offline Offline

Posts: 5


« Reply #12 on: July 14, 2009, 02:35:43 AM »

thanks for that.  Smiley
Logged
wtdb
Newbie
*
Offline Offline

Posts: 1


« Reply #13 on: July 19, 2009, 03:24:31 AM »

I got ntbackup.exe detected as HS [at] 22457478 located in %systemroot%\system32\ntbackup.exe

Windows 2003. Is that a FP?
Logged
gmohan
Comodo's Hero
*****
Offline Offline

Posts: 368



« Reply #14 on: July 19, 2009, 04:09:40 AM »

Hi wtdb,

I got ntbackup.exe detected as HS [at] 22457478 located in %systemroot%\system32\ntbackup.exe

Windows 2003. Is that a FP?

The reported FP is being verified.

-Chandra Mohan
Logged
Tags: Heur.suspicious@19401400 
Pages: [1] 2 3 ... 11 Go Up Print 
« previous next »
Jump to:  

SSL Certificate Free Virus Removal Firewall
Page created in 0.051 seconds with 21 queries.
Powered by SMF 1.1.18 | SMF © 2006, Simple Machines Design by 7dana.com