[SOLVED] False Positive

Container for RESOLVED incidents, queries SOLVED by the experts, EXPIRED topics or those that have been CLOSED by the users.
Locked
tutie
Registered user
Registered user
Posts: 27
Joined: Thu, 21 Jul 2016, 13:05

[SOLVED] False Positive

Post by tutie »

Hello,

When we execute the file downloaded from the following URL, the security soft detect "False Positive".
Please deal with to "False Positive" and add to your Whitelist.

URL : http://www.funaihelp.com/home/file_down ... 102017.exe

Best Regard
User avatar
VirusBuster
Official moderator
Official moderator
Posts: 7595
Joined: Mon, 02 Apr 2012, 18:53
Location: Panda HQ - Bilbao

Re: False Positive

Post by VirusBuster »

Can you please elaborate? How is it detected? can you provide a copy of the antivirus report?
Regards,

Image
Jorge Torre
TechSupport Department - Panda Security

I don't reply to private messages unless I have previously requested them
tutie
Registered user
Registered user
Posts: 27
Joined: Thu, 21 Jul 2016, 13:05

Re: False Positive

Post by tutie »

Hello,

The phenomenon, Environment ,Procedure and Attachment file are the following contents.

<phenomenon>
After I execute the download file, the security software immediately detect false positive.

<Environment>
PC:Windows7 Ultimate(64bits)
Connect PC and Router via the Ethernet.

<Procedure>
1) Download the file "KODAKVERITE-PREINSTALLER-v10000-02102017.exe" from the following URL.
URL : http://www.funaihelp.com/home/file_down ... 102017.exe
2) Execute the above file.
3) After detect false positive, the attachement file "Immediately after activating the exe-file.png" is displayed.
And, the above file is deleted.

<Attachement file>
The name of attahcment file is "false positive.zip".
png file : the picure captured the desktop of PC.
txt file : the report file saved from "Event report".
* The above 2 files is compressed with Zip with password.
* The size of the zip file is "845 KB".
* The password sent you via PM.
Attachments
false positive.zip
(844.26 KiB) Downloaded 758 times
tutie
Registered user
Registered user
Posts: 27
Joined: Thu, 21 Jul 2016, 13:05

Re: False Positive

Post by tutie »

Hi,

I used the different password by mistake.
I upload the zip file again.
Please confirm the attachment file.

Best Regards,
Attachments
false positive.zip
(844.26 KiB) Downloaded 785 times
User avatar
VirusBuster
Official moderator
Official moderator
Posts: 7595
Joined: Mon, 02 Apr 2012, 18:53
Location: Panda HQ - Bilbao

Re: False Positive

Post by VirusBuster »

We have created the case 04499569 for sending this information to our laboratory
We'll keep you updated
Regards,

Image
Jorge Torre
TechSupport Department - Panda Security

I don't reply to private messages unless I have previously requested them
tutie
Registered user
Registered user
Posts: 27
Joined: Thu, 21 Jul 2016, 13:05

Re: False Positive

Post by tutie »

Hello,

Thank you for supporting.

Best Regards.
User avatar
VirusBuster
Official moderator
Official moderator
Posts: 7595
Joined: Mon, 02 Apr 2012, 18:53
Location: Panda HQ - Bilbao

Re: False Positive

Post by VirusBuster »

The file has been classified as goodware by digital signature, so it won't be detected again with the next signature update/synchronization
Regards,

Image
Jorge Torre
TechSupport Department - Panda Security

I don't reply to private messages unless I have previously requested them
tutie
Registered user
Registered user
Posts: 27
Joined: Thu, 21 Jul 2016, 13:05

Re: False Positive

Post by tutie »

Hello,

I have run the update.
I have just confirmed that the false positive is resolved.

<update information>
before false positive : 2/23/2017 4:33AM
after false positive : 3/2/2017 15:57PM

Thank you for quick your supporting.

Best Regards
User avatar
VirusBuster
Official moderator
Official moderator
Posts: 7595
Joined: Mon, 02 Apr 2012, 18:53
Location: Panda HQ - Bilbao

Re: False Positive

Post by VirusBuster »

ISSUE SOLVED
Regards,

Image
Jorge Torre
TechSupport Department - Panda Security

I don't reply to private messages unless I have previously requested them
Locked

Return to “Virus - Archive Issues”