CAV detects the attached file as Heur.PEBomb, whereas CIMA says that there isnt anything wrong with it. Whats up?
Please note that the attached file is a RAR archive containing the supposed infected file. The archive is password protected, so that if the file happens to be dangerous, no one can extract it without the password. You will not get the password unless you are a moderator, administrator, or part of the Malware research team.
Yes, i do know that. However the ones im refering to are the ones that delete the Windows folder, because it was taking up too much space.
Windows doesnt allow you to see the contents of the folder for a reason. so they delete the folder.
I wasnt refering to people with less knowlege, just those who dont use common sense.
Submitting file to CIMA will also send details of file to the virus labs but won’t inform them of it being a FP. IF you email CIMA and VirusTotal report that will help the guys fix the FP and check the Heuristics engine.