楼主: will
收起左侧

[讨论] 红伞误报收集站

 关闭 [复制链接]
emutony
发表于 2008-7-3 15:58:17 | 显示全部楼层
Dear Sir or Madam,

Thank you for your email to Avira's virus lab.
Tracking number: INC00168046.



A listing of files alongside their results can be found below:

File ID  Filename Size (Byte) Result
25060108  Mario4x_cn.exe  137.76 KB  FALSE POSITIVE


Please find a detailed report concerning each individual sample below:

Filename Result  Mario4x_cn.exe  FALSE POSITIVE

The file 'Mario4x_cn.exe' has been determined to be 'FALSE POSITIVE'. In particular this means that this file is not malicious but a false alarm. Detection will be removed from our virus definition file (VDF) with one of the next updates.

Alternatively you can see the analysis result here:
http://analysis.avira.com/sample ... p;incidentid=168046

An overview of all your submissions can be found here:
http://analysis.avira.com/sample ... AhC951ZZDXdGwBz9fLL

评分

参与人数 1经验 +3 收起 理由
will + 3 版区有你更精彩: )

查看全部评分

qiujuan
发表于 2008-7-3 20:53:50 | 显示全部楼层
文件名/软件名: 金山词霸2007下的SNProber.dll文件
误报名      :MALWARE
是否上报:未上报
今天突然报金山词霸2007下的SNProber.dll文件

本帖子中包含更多资源

您需要 登录 才可以下载或查看,没有帐号?快速注册

x

评分

参与人数 1经验 +1 收起 理由
will + 1 版区有你更精彩: )

查看全部评分

无尽藏海
发表于 2008-7-3 23:25:25 | 显示全部楼层
忘了哪来的了……好像是样本区……
最近分析有的比较慢

File ID         Filename        Size (Byte)        Result
25062063         破解辅助计算工具.rar...工具.rar        514.43 KB        OK


A listing of files contained inside archives alongside their results can be found below:File ID         Filename        Size (Byte)        Result
25062064         ################.exe         518.27 KB         FALSE POSITIVE
25064973         krnln.fnr         996 KB         MALWARE



Please find a detailed report concerning each individual sample below: Filename        Result
################.exe         FALSE POSITIVE


The file '################.exe' has been determined to be 'FALSE POSITIVE'. In particular this means that this file is not malicious but a false alarm. Detection will be removed from our virus definition file (VDF) with one of the next updates.
Filename        Result
krnln.fnr         MALWARE


The file 'krnln.fnr' has been determined to be 'MALWARE'. Our analysts named the threat DR/Flood.AlaUDP.A.2. The term "DR/" denotes a program that is able to place a virus or a malware discretely on a system.Detection is added to our virus definition file (VDF) starting with version 6.31.00.124. Please note that Avira's proactive heuristic detection module AHeAD detected this threat up front without the latest VDF update as: DR/Flood.AlaUDP.A.2.

评分

参与人数 1经验 +3 收起 理由
will + 3 版区有你更精彩: )

查看全部评分

leizhangcn
发表于 2008-7-4 17:34:31 | 显示全部楼层
文件名/软件名:  PPInstallLog.dll(拍拍乐安装文件)
误报名:  MALWARE
下载地址/链接地址: www.886.cn
是否上报:已上报
上报分析结果:已解决(误报)

Dear Sir or Madam,

Thank you for your email to Avira's virus lab.
Tracking number: INC00169697.



A listing of files alongside their results can be found below:

File ID  Filename Size (Byte) Result
25064961  PPInstallLog.dll  28.5 KB  FALSE POSITIVE


Please find a detailed report concerning each individual sample below:

Filename Result  PPInstallLog.dll  FALSE POSITIVE

The file 'PPInstallLog.dll' has been determined to be 'FALSE POSITIVE'. In particular this means that this file is not malicious but a false alarm. Detection will be removed from our virus definition file (VDF) with one of the next updates.

Alternatively you can see the analysis result here:
http://analysis.avira.com/sample ... 5&incidentid=169697

An overview of all your submissions can be found here:
http://analysis.avira.com/sample ... 0U76X1QsT4BWmbA9fU5


Please note: The detection of Spy/Adware is not available in the product "AntiVir PersonalEdition Classic". Please address specific questions to support@avira.com

Kind regards
Avira Virus Lab

---------------------------------------------
Avira GmbH
Lindauer Str. 21, D-88069 Tettnang, Germany
Phone: +49 (0) 7542-500 0
Fax: +49 (0) 7542-525 10
Internet: http://www.avira.com

CEO: Tjark Auerbach
Headquarter: Tettnang
Commercial register: AG Ulm HRB 630992
---------------------------------------------

[ 本帖最后由 leizhangcn 于 2008-7-4 17:55 编辑 ]

本帖子中包含更多资源

您需要 登录 才可以下载或查看,没有帐号?快速注册

x

评分

参与人数 1经验 +3 收起 理由
will + 3 版区有你更精彩: )

查看全部评分

leizhangcn
发表于 2008-7-4 17:41:10 | 显示全部楼层
文件名/软件名:  Analysis.dll(51地图文件)
误报名:  Agent.28672
下载地址/链接地址: http://www.51ditu.com
是否上报:已上报
上报分析结果:

本帖子中包含更多资源

您需要 登录 才可以下载或查看,没有帐号?快速注册

x

评分

参与人数 1经验 +3 收起 理由
will + 3 版区有你更精彩: )

查看全部评分

leizhangcn
发表于 2008-7-4 17:44:52 | 显示全部楼层
文件名/软件名:  regsp.exe(单机游戏斗地主7.8文件)
误报名:   MALWARE
下载地址/链接地址: ht[url]http://www.oyksoft.com/downinfo/871.html[/url]
是否上报:已上报
上报分析结果:
Dear Sir or Madam,

Thank you for your email to Avira's virus lab.
Tracking number: INC00169698.


A listing of files alongside their results can be found below:
File ID FilenameSize (Byte)Result
25064963 regsp.exe 10.5 KB MALWARE


Please find a detailed report concerning each individual sample below:
FilenameResult regsp.exe MALWARE

The file 'regsp.exe' has been determined to be 'MALWARE'.
Our analysts discovered that the file is a Security Privacy Risk (SPR). In particular it means that it is a program that might possibly be able to affect the security of your system, might trigger activities you might not want or might violate your privacy. Detection will be added to our virus definition file (VDF) with one of the next updates. Please note that Avira's proactive heuristic detection module AHeAD detected this threat up front without the latest VDF update as: HEUR/Crypted.

Alternatively you can see the analysis result here:
http://analysis.avira.com/samples/details.php?uniqueid=mBpkzMEp4q8zs0U76X1QsT4BWmbA9fU5&incidentid=169698

An overview of all your submissions can be found here:
http://analysis.avira.com/samples/details.php?uniqueid=mBpkzMEp4q8zs0U76X1QsT4BWmbA9fU5

Please note: The detection of Spy/Adware is not available in the product "AntiVir PersonalEdition Classic". Please address specific questions to support@avira.com
Kind regards
Avira Virus Lab

---------------------------------------------
Avira GmbH
Lindauer Str. 21, D-88069 Tettnang, Germany
Phone: +49 (0) 7542-500 0
Fax: +49 (0) 7542-525 10
Internet: http://www.avira.com

CEO: Tjark Auerbach
Headquarter: Tettnang
Commercial register: AG Ulm HRB 630992
---------------------------------------------

本帖子中包含更多资源

您需要 登录 才可以下载或查看,没有帐号?快速注册

x

评分

参与人数 1经验 +3 收起 理由
will + 3 版区有你更精彩: )

查看全部评分

leizhangcn
发表于 2008-7-4 17:48:53 | 显示全部楼层
文件名/软件名:  uninst.exe(FLV转换工具)红伞误报
误报名:   MALWARE
下载地址/链接地址:
是否上报:已上报
上报分析结果:

本帖子中包含更多资源

您需要 登录 才可以下载或查看,没有帐号?快速注册

x

评分

参与人数 1经验 +3 收起 理由
will + 3 版区有你更精彩: )

查看全部评分

leizhangcn
发表于 2008-7-4 17:54:11 | 显示全部楼层
文件名/软件名:  清除所有多余的桌面右键菜单.cmd
误报名:   MALWARE
下载地址/链接地址:
是否上报:已上报
上报分析结果:

本帖子中包含更多资源

您需要 登录 才可以下载或查看,没有帐号?快速注册

x

评分

参与人数 1经验 +3 收起 理由
will + 3 版区有你更精彩: )

查看全部评分

无尽藏海
发表于 2008-7-9 01:02:59 | 显示全部楼层

回复 62楼 qiujuan 的帖子

The file 'SNProber.dll' has been determined to be 'FALSE POSITIVE'. In particular this means that this file is not malicious but a false alarm. Detection is removed from our virus definition file (VDF) with the version: 7.0.5.65.

评分

参与人数 1经验 +3 收起 理由
will + 3 版区有你更精彩: )

查看全部评分

emutony
发表于 2008-7-9 16:32:07 | 显示全部楼层
Dear Sir or Madam,

Thank you for your email to Avira's virus lab.
Tracking number: INC00170428.



A listing of files alongside their results can be found below:

File ID  Filename Size (Byte) Result
25067218  AntiIPErr.dll  16.69 KB  FALSE POSITIVE


Please find a detailed report concerning each individual sample below:

Filename Result  AntiIPErr.dll  FALSE POSITIVE

The file 'AntiIPErr.dll' has been determined to be 'FALSE POSITIVE'. In particular this means that this file is not malicious but a false alarm. Detection will be removed from our virus definition file (VDF) with one of the next updates.

Alternatively you can see the analysis result here:
http://analysis.avira.com/sample ... p;incidentid=170428

An overview of all your submissions can be found here:
http://analysis.avira.com/sample ... AhC951ZZDXdGwBz9fLL


Please note: The detection of Spy/Adware is not available in the product "AntiVir PersonalEdition Classic". Please address specific questions to support@avira.com

Kind regards
Avira Virus Lab

---------------------------------------------
Avira GmbH
Lindauer Str. 21, D-88069 Tettnang, Germany
Phone: +49 (0) 7542-500 0
Fax: +49 (0) 7542-525 10
Internet: http://www.avira.com

CEO: Tjark Auerbach
Headquarter: Tettnang
Commercial register: AG Ulm HRB 630992
---------------------------------------------

评分

参与人数 1经验 +3 收起 理由
will + 3 版区有你更精彩: )

查看全部评分

您需要登录后才可以回帖 登录 | 快速注册

本版积分规则

手机版|杀毒软件|软件论坛| 卡饭论坛

Copyright © KaFan  KaFan.cn All Rights Reserved.

Powered by Discuz! X3.4( 沪ICP备2020031077号-2 ) GMT+8, 2025-1-13 22:32 , Processed in 0.093763 second(s), 15 queries .

卡饭网所发布的一切软件、样本、工具、文章等仅限用于学习和研究,不得将上述内容用于商业或者其他非法用途,否则产生的一切后果自负,本站信息来自网络,版权争议问题与本站无关,您必须在下载后的24小时之内从您的电脑中彻底删除上述信息,如有问题请通过邮件与我们联系。

快速回复 客服 返回顶部 返回列表