TrojWare.Win32.Spy.Banker.Gen[at]105147776

Found at:

C:\Windows\Temp_avast5_\unp208598644.tmp

and

C:\Windows\Temp_avast5_\unp170783654.tmp

Both attached

[attachment deleted by admin]

Hello izk,

Thank you for your submission. We’ll check the files and get back to you soon.

Best regards,
FlorinG

Hi izk,

This FP has been fixed.Please check in virus signature database 4789.

Thanks and Regards,
hexinpeng

Same item was reported on my machine from location:

D:\I386\APPS\APP01873\src\MSWORKS\PFILES\MSWORKS\LNCHTOUR.EXE

Submitted a few minutes ago by pressing the Submit… button from Quarantined Items.

Please advise if this is a false positive as well.

Thanks.

seems like a FP, please also submit it here as a possible FP Comodo Antivirus Database | Submit Files for Malware Analysis

Hi italiangm,

If you can find the FP file,you can submit through this link:Comodo Firewall | Get Best Personal Firewall Software for $29.99 A Year we can go to have a look at it.

Thanks and Regards,
suhaifeng

Done. Sorry it took so long. Had to figure out a way to get to the file.

First I had to recover the file from quarantine, disable a/v, copy the file from the (access protected) recovery partition (d:) to (c:) using DOS copy cmd, then upload it using your submission page. Whew.