Page 1 sur 2

False Positive's

MessagePosté: 09 Septembre 2010, 17:18
de bdmeyer
The main page has a link to the french forum for reporting false positives. I didn't find one for the english.

Here is what I find:

I am using Coranti 2010 which is a multi engine AV. When i try to download it immediately reports it as a viruis. When i try to isntall Liberkey5, I get Win32.FraudTool.MicrosoftSecurityEssentialsAlert/A.

Coranti, like Trustport uses several AV tools like Bitdefender, Fprot, Lavasoft, Norman, simultaneously.

--Bruce D. Meyer

Re: False Positive's

MessagePosté: 09 Septembre 2010, 17:48
de opendev
Hello,

We will open a special topic about false positive in the English forum.

Virus Total result about LiberKey
File name: LiberKey_5.0_build_0901_EN.exe
Submission date: 2010-09-09 15:30:40 (UTC)
Current status: finished
Result: 0 /43 (0.0%)

Re: False Positive's

MessagePosté: 05 Décembre 2010, 18:09
de kguske
McAfee reports false positives on:

Serviwin
SysExporter

Re: False Positive's

MessagePosté: 09 Décembre 2010, 09:42
de Farrukh
Hi
I have McAfee installed on my machine and it just detected a Trojan in one of the Apps installed via LiberKey. :ohmy:
Here is the screen cap:

Image

Do you check for your apps for Trojan and Keyloggers before adding these to your Catalogs?

Thanks :huh:

Re: False Positive's

MessagePosté: 09 Décembre 2010, 09:50
de Laurentxp
Virus Total result about sysexp.exe: 3 /43

Re: False Positive's

MessagePosté: 09 Décembre 2010, 09:56
de Farrukh
Dear Moderator
Thanks for a quick reply :).
Please do send some message if you have to move a thread.

I was wondering where my post was gone.
:bigsmile:

RADIO SURE backdoor trojan?

MessagePosté: 19 Mars 2011, 12:51
de cartman2001
Current version distibution of this app is marked as BDS/Bifrose, a serious backdoor trojan.
You should contact authors about their intentions.
Version downloaded from author's site not yet flaged as dangerous. But who knows...

Re: RADIO SURE backdoor trojan?

MessagePosté: 19 Mars 2011, 16:38
de JP4U
Hello cartman2001 and welcome on forums.

Here's an analyse on VirusTotal for the latest Liberkey's Radio Sure package : result = 0/43
Are you sure to have the latest's antivirus definitions ?
It's certainly a false positive (http://www.liberkey.com/en/liberkey-is-virus-free.html).

JP4U

Re: False Positive's

MessagePosté: 20 Mars 2011, 16:36
de cartman2001
hi
i just update radio sure via liberkey update. Now it's ok. Was probably outdated virus def file.
Thaks for your support.
br
z

Help...Infected or not??

MessagePosté: 27 Janvier 2012, 16:00
de IElia
Dear friends,

I need help with reported Liberkey infected files. Could someone advise if the files are infected or not (False positives)?
Any help will be appreciated. Thanking you in advance.
------------------------------------------------------------
On 25.01.2012 I performed the following updates:
1) Updated Liberkey to 5.6.0124/Patch 20120124132127:

2)CCleaner 3.15.1643 / DSpeech 1.56.1 / Marble 1.3.0 / MediaInfo 0.7.53 /Task Coach 1.3.6

Suddenly, I started receiving warning messages from Antivir. I then scanned my Liberkey hard drive with Clamwin which also is showing infections in my Liberkey.

Below are the scan report showing infected files:

ANTIVIR report:
Avira Free Antivirus
Report file date: Friday, January 27, 2012 15:08

Scanning for 3317781 virus strains and unwanted programs.

The program is running as an unrestricted full version.
Online services are available:

Licensee : Avira AntiVir Personal - Free Antivirus
Serial number :
Platform : Windows XP
Windows version : (Service Pack 3) [5.1.2600]
Boot mode : Normally booted
Username : SYSTEM
Computer name :
Starting the file scan:

Begin scan in 'J:\LiberKey\Apps\HFS\App\HFS\hfs.exe'
J:\LiberKey\Apps\HFS\App\HFS\hfs.exe
[DETECTION] Is the TR/HFS.A.76 Trojan

Beginning disinfection:
J:\LiberKey\Apps\HFS\App\HFS\hfs.exe
[DETECTION] Is the TR/HFS.A.76 Trojan
[WARNING] The file was ignored! (Note. I ignored it by mistake).
++++++++++++++++++++++++++++++++++++++++++++++
CLAMWIN report:

Scan Started Fri Jan 27 15:09:49 2012

J:\LiberKey\Apps\ClamWin\Data\quarantine\GSplitLKL.exe.infected: BC.Heuristic.Trojan.SusPacked.BF-6.B FOUND
J:\LiberKey\Apps\ClamWin\Data\quarantine\GSplitLKL.exe.infected not moved/copied since already in quarantine
WARNING: Can't open file J:\LiberKey\Apps\HFS\App\HFS\hfs.exe: Permission denied