Welcome to your place for tech questions! ( Log In or Join today ) Get answers from experts today. (it's 100% free) Virus removal forum

 
Reply to this topicStart new topic
> Online scanners and false positives (two files), One detected by ESAFE, one detected by ClamAV
little.red
post Nov 2 2012, 10:10 PM
Post #1


New Member
*

Group: New Member
Posts: 1
Joined: 2-November 12
Member No.: 101,545
Operating System: Windows 7



I have two programs that I've downloaded (one an .exe and one a .zip) and was just virus scanning them. I haven't opened either yet. The downloads are linked to from the official sites (you know how some are hosted at download.com or places like that?), but they're old so are no longer supported by the creators. I thought I'd just double check them and upload them to VirusTotal.

One of them (an .exe) showed up as a positive for one - Win32.TrojanC2Lop on ESAFE (I've never heard of ESAFE before though). None of the other 40 AVs picked up anything. The ZIP file didn't show any detections.

I figured it was a false positive, but then read about another online scan (Jotti) through BleepingComputers. I decided to run both files through again. I like to be sure.

The EXE file that had nothing appear through VT now appears as having PUA.Win32.Packer.UpxProtector through Clam AV (another one I've never heard of). None of the other 19 AVs showed anything. The ZIP file that showed as having the trojan on VT shows nothing on Jotti.

I'm assuming these are false positives...but wanting to hear from other people smile.gif.

They're from the official site (file doesn't appear to have been updated in about 7 years), it is not detected consistently, I haven't heard of either AV that found a problem (plus packer sounds like something to do with the unzipping of the file?).
Go to the top of the page
 
+Quote Post

Reply to this topicStart new topic
1 User(s) are reading this topic (1 Guests and 0 Anonymous Users)
0 Members:

 


RSS Time is now: 24th May 2013 - 04:14 PM
Advertisements do not imply our endorsement of that product or service. The forum is run by volunteers who donate their time and expertise. We make every attempt to ensure that the help and advice posted is accurate and will not cause harm to your computer. However, we do not guarantee that they are accurate and they are to be used at your own risk.
Member site: Alliance of Security Analysis Professionals | UNITE Against Malware
© Geeks to Go, Inc. | All Rights Reserved | Privacy Policy