Welcome, Guest. Please login or register.
March 18, 2010, 06:40:03 PM

Login with username, password and session length

372609 Posts
41313 Topics
93964 Members

Latest Member: noladoug

Search:     Advanced search | Tag Cloud
+  Welcome to the Comodo Forum
|-+  Desktop Security Products & Services
| |-+  Comodo Internet Security - CIS
| | |-+  News / Announcements / Feedback - CIS
| | | |-+  CIS 3.8 Anti virus is detecting too many positive?
« previous next »
Pages: [1] Go Down Print
Author Topic: CIS 3.8 Anti virus is detecting too many positive?  (Read 1313 times)
Michael Withstand
Comodo's Hero
*****
Offline Offline

Posts: 306


Please read my sig. Thank you.


« on: February 13, 2009, 02:42:54 AM »

I just instralled it over a couple of hours and it's detected  12 viruses.

But I'm beginning to think them as false positive because the AV found a virus in my Avast AV directory which is ridiculous right?

What to do? By default the heuristic level is set to low that I chnaged to high and now medium in order to reduce these probable false positive.
Logged

I'm a victim of severe persecution and harassment from people in power in Singapore. They defamed me as being mentally ill. Refusing any medication I've proceeded to finish a 7 semester degree from local(INA)U. They think their use of remote viewer is a perfect excuse that no such capability exist.
WaterWall
Guest
« Reply #1 on: February 13, 2009, 02:47:12 AM »

Upload each file to VirusTotal to see if they are really FalsePositives. I they are, choose "Ignore Permanently"  Smiley

Oh and if you'll find that CIS detected False Positives - please post an FP report here:

https://forums.comodo.com/false_positivenegative_reporting_is_this_a_malware_that_cis_hasnot_detected-b154.0/
« Last Edit: February 13, 2009, 02:55:50 AM by Commodus » Logged
eXPerience
Malware Researcher Virus Removal Helper Advanced Tweak Freak Crazy Little Devil
Global Moderator
Comodo's Hero
*****
Offline Offline

Posts: 6888


Why not ? The choice is yours !


« Reply #2 on: February 13, 2009, 02:54:56 AM »

Please also report them here
http://forums.comodo.com/false_positivenegative_reporting_is_this_a_malware_that_cis_hasnot_detected-b154.0/

could it be that it detected the quarantine of avast ?

Xan
Logged

Michael Withstand
Comodo's Hero
*****
Offline Offline

Posts: 306


Please read my sig. Thank you.


« Reply #3 on: February 13, 2009, 11:03:29 PM »

I'm not sure whether they are false positives but they are not spreading to my system folder or anywhere else.

I don't think it was detecting a quarantined virus. As my Avast virus chest is empty at the moment. Good thinking though.
Logged

I'm a victim of severe persecution and harassment from people in power in Singapore. They defamed me as being mentally ill. Refusing any medication I've proceeded to finish a 7 semester degree from local(INA)U. They think their use of remote viewer is a perfect excuse that no such capability exist.
Melih
Comodo's Hero
Administrator
Comodo's Hero
*****
Offline Offline

Posts: 8650



WWW
« Reply #4 on: February 13, 2009, 11:06:41 PM »

does it report the name as Heur..
or some other?

If Heur.. then its heuristic based detection which may have some FP.. (although with settings at low, this should be minimal). If not Heur... then we would like to see what those files are they could be malware.. or our actual sigs catching FP (less likely)

Melih
Logged

Michael Withstand
Comodo's Hero
*****
Offline Offline

Posts: 306


Please read my sig. Thank you.


« Reply #5 on: February 13, 2009, 11:25:55 PM »

Yea you're right Melih.

The virus name is Heur.Pck.tElock.

I set my heuristic scan to high.
Logged

I'm a victim of severe persecution and harassment from people in power in Singapore. They defamed me as being mentally ill. Refusing any medication I've proceeded to finish a 7 semester degree from local(INA)U. They think their use of remote viewer is a perfect excuse that no such capability exist.
Melih
Comodo's Hero
Administrator
Comodo's Hero
*****
Offline Offline

Posts: 8650



WWW
« Reply #6 on: February 14, 2009, 11:41:07 AM »

ok great.

High setting is for paranoid advanced users who will be suspicious of anything and everything Smiley

thanks
Melih
Logged

Tags:
Pages: [1] Go Up Print 
« previous next »
Jump to:  

SSL Certificate Free Virus Removal Firewall
Page created in 20.195 seconds with 19 queries.
Powered by SMF 1.1.11 | SMF © 2006, Simple Machines LLC
Seo4Smf v0.2 © Webmaster's Talks
Design by 7dana.com