Author Topic: Possible False positive  (Read 157 times)

Offline cuser

  • Comodo's Hero
  • *****
  • Posts: 288
Possible False positive
« on: September 08, 2022, 08:10:13 AM »
Since could find submit form anywhere on Comodo's site (5 years old link on forum leads to nowhere (well on page to buy Comodo products)) so gotta make topic instead.

Downloaded and tried to run cheatengine (address to software is easy to figure) but CIS quarantined it and claims that it is Cloudscanner.Fls.Vendor.

File was submitted bit before this topic was created.

CIS databases are as up-to-date as autoupdate updates those.

Cheatengine has been reported as False Positive 5 years ago but I guess nothing was done or during version changes it got removed from list.

Offline FlorinG

  • Comodo Staff
  • Comodo's Hero
  • *****
  • Posts: 3992
Re: Possible False positive
« Reply #1 on: September 08, 2022, 08:36:38 AM »
Hello cuser,

Thank you for sharing this, we'll check it and get back to you.

Best regards,
FlorinG
If possible please post your malware submissions as SHA1 lists (created with HashMyFiles or any other software). Always make sure first you have submitted the samples through CIS.

Offline FlorinG

  • Comodo Staff
  • Comodo's Hero
  • *****
  • Posts: 3992
Re: Possible False positive
« Reply #2 on: September 08, 2022, 09:02:27 AM »
Hello cuser,

The sample CheatEngine74.exe with SHa1:52f73291e0ce6569da22da83071ac12dc58027ba was checked and found to be a Potentially Unwanted Application (PUA), if you intend to use it you can add it to your "Excluded applications" list.

Best regards,
FlorinG

If possible please post your malware submissions as SHA1 lists (created with HashMyFiles or any other software). Always make sure first you have submitted the samples through CIS.

 

Free Endpoint Protection
Seo4Smf 2.0 © SmfMod.Com Smf Destek