Number of Anti-Virus Alerts Varies - ** VIDEO ** Added

Hello,

In testing malware against CIS I sometimes I get only 1 AV alert… other times I might get 12 AV alerts for the same file even if I select “Ignore Once.” In the second case it will be one AV alert after another… and I have to keep selecting “Ignore Once.”

Is this by design… ?

Thanks,

HJLBX

How are you testing? Is the method the same each time? Are you testing in a vm?

Hello EricJH,

No VM used.

Test from the desktop directory.

Test method is the same every time:

  • Download zipped sample(s).

  • Extract sample(s).

  • Execute sample.
  • AV generates alert.
  • Select “Ignore Once.”
  • Last two steps will repeat from 2 to more than 10 times for the sample.

Thanks,

HJLBX

Hello,

Here is 2 minute video.

Link to OneDrive download (.zip format\5.42 MB): Microsoft OneDrive - Access files anywhere. Create docs with free Office Online.

Video is .AVI using Microsoft Video 1 codec; should be able to view using Windows Media Player, VLC Player or Classic Media Player.

Thanks,

HJLBX

I would not expect this to normally happen. Can you send me a download link by pm for the file involved so I can try on my system to see if it reproduces?

Sent via PM.

Best Regards,

HJLBX

I can confirm the behaviour on Win 8.1 x64. It’s it truly odd.

Thanks EricJH.

I will create Bug Report.

Has anyone seen this on W10 also?

Best Regards,

HJLBX