I’ve emailed fille to malwaresubmit as per false positive reporting procedure.
Details are as follows:
MFC45.DLL using Heuristics Set to MEDIUM – Detected as “Heur.PEBomb" and is located at: C:\windows\system32\
The File is NOT detected as a threat with heuristics set to LOW.
Comodo Instant Malware Analysis camas.comodo.com :
http://camas.comodo.com/cgi-bin/submit?file=936bfe7b5e667fa990384bf7e040943703969696d4a0e4c9b1dc7e9098ac2651
Virus Total Analysis :
http://www.virustotal.com/analisis/31b921bef0459167e4fdb31ef9f655b2
[attachment deleted by admin]
donnyd
March 27, 2009, 2:52pm
2
I’ve encountered the same thing with MFC45.DLL and posted it on this forum including my AV log. I also sent the file via e-mail to AVLAB on 3/13 and have not received any feed-back. I thought this was suppose to be a two day response. It’s now been two weeks!
I’ve given more details that I had previously including the bit about how it’s detected in MEDIUM HEURISTICS and NOT DETECED in LOW HEURISTICS.
Anyway, patience is often a virtue and I’ve added it to my exceptions.
E