False Positive

http://downloads.ddigest.com/software/download.php?sid=1089&ssid=0&did=374&rid=178216

When runnig the program, the Comodo Cloud Scanner detects a threat and blocks it.

This happens with all K-lite softwares:

The False positives are getting a bit crazy with the cloud scanner…

Hi,Netguy101

Thanks for reporting.
Could you please submit the detected file at
Comodo Firewall | Get Best Personal Firewall Software for $29.99 A Year.
(We downloaded that file,but not detected any FP.)

Regards
Chunli.chen

I wasn’t able to upload the file on the page so, here is the file:

Zippyshare.com - [now defunct] Free File Hosting and

http://www73.zippyshare.com/v/71059356/file.html

It’s detected by the cloud scanner

The file is detected on execution when the executable attempts to create a .temp file.

Any update on the FP’s?

Hi Netguy101,

The sample you have mentioned as false-positive’s is not detected by Comodo Internet Security version <8.0.0.4337> with database version 20303.

Please make sure the Antivirus database is updated and check again. If detection is still present, please submit the file on Comodo forums at
https://forums.comodo.com/false_positivenegative_reporting_is_this_a_malware_that_cis_hasnot_detecte-b154.0/

Regards,
Karthik R
Comodo AntiVirus Lab

What’s the problem COMODO? Many programs that create .temp files and execute them in memory are being detected as CloudScanner.Trojan.Gen@2@1. The files I submitted previously are still detected when they execute a .tmp file in memory which is very tedious and annoying.

Here are examples of a few programs that the Cloud scanner is falsely detecting when trying to install:

http://www.srware.net/downloads/srware_iron.exe

http://www.srware.net/downloads/srware_iron64.exe

I’m speaking up because the FP’s created by Comodo’s Cloud system are ridiculous and nobody seems to be doing a thing about it.

[attachment deleted by admin]

Hi Netguy101,

Thank you for reporting this.
We’ll check it and get back to you soon.

Best regards
Qiuhui.■■■■

Also when trying to install this program DriverMax you get the same FP alert from the cloud scanner

Hi Netguy101,

Thank you for reporting this.
We’ll check it and get back to you soon.

Best regards
Qiuhui.■■■■

Hi Netguy101,

This is to inform you that false-positive has been fixed.
You can update to AV database Version <20360> of Comodo Internet Security Version<8.0.0.4337> and confirm it.

Best regards
Qiuhui.■■■■

Getting the same cloud FP when installing Peerblock

http://www.peerblock.com/releases

Hi,

Thank you for your submission. We’ll check it.

Kind regards,
Erik M.

Hi Netguy101,

This is to inform you that false-positive has been fixed.
You can update to AV database Version <20375> of Comodo Internet Security
Version <8.0.0.4344> and confirm it.

Regards,
Karthik R