False Positive, Posssible / Likely?

Do you have a question? Post it now! No Registration Necessary.  Now with pictures!

Threaded View
Hi,

I've an .exe file that I downloaded and then scanned using
virusscan.jotti.org - these are the results.

A-Squared                - Found nothing
AntiVir                  - Found nothing
ArcaVir                  - Found nothing
Avast                    - Found nothing
AVG Antivirus            - Found nothing
BitDefender              - Found nothing
ClamAV                   - Found nothing
CPsecure                 - Found Troj.W32.Chifrax.a
Dr.Web                   - Found nothing
F-Prot Antivirus         - Found nothing
F-Secure Anti-Virus      - Found nothing
Fortinet                 - Found nothing
Ikarus                   - Found nothing
Kaspersky Anti-Virus     - Found nothing
NOD32                    - Found nothing
Norman Virus Control     - Found nothing
Panda Antivirus          - Found nothing
Sophos Antivirus         - Found nothing
VirusBuster              - Found nothing
VBA32                    - Found nothing

19 clean, 1 positive !!

What are the chances of this being a false Positive? Is it posssible or
even likely given the 19 who declared it clean?

Thanks.

Re: False Positive, Posssible / Likely?

On Thu, 24 Jul 2008 17:20:31 GMT, Poster Matt

Quoted text here. Click to load it

Only one way to find out for sure. Submit the file to CPsecure for
analysis. They use their own scan engine plus Kaspersky's, so
apparently it's their own scan engine that's probably false
alerting.

Art

Re: False Positive, Posssible / Likely?

Art wrote:
Quoted text here. Click to load it

Thanks Art.

Re: False Positive, Posssible / Likely?

Poster Matt wrote:
Quoted text here. Click to load it

It did turn out to be a false positive.

Regards, etc.

Re: False Positive, Posssible / Likely?

Poster Matt wrote:
Quoted text here. Click to load it

For the group's info.

File 'Default.SFX' a standard file in the WinRar
application's distribution generates a false
positive with CPsecure. Fixed as of 2008-07-29.

From: red-alert@support.cpsecure.com
[support.cpsecure.com #18822]

2008-07-28:
Quoted text here. Click to load it

2008-07-29:
Quoted text here. Click to load it

Site Timeline