楼主: 周杰伦
收起左侧

[讨论] 误报收集站 (false positive collection)

 关闭 [复制链接]
周杰伦
 楼主| 发表于 2007-3-26 14:42:29 | 显示全部楼层

回复 #69 alllah 的帖子

红伞回复是误报的,已经解决了
We received the following archive files:



File ID  Filename  Size (Byte) Result
236446  ThunderEx.rar 7.415 OK

A listing of files contained inside archives alongside their results can be found below:

File ID  Filename  Size (Byte) Result
220247  ThunderEx.dll  10.240  CLEAN


Please find a detailed report concerning each individual sample below:

Filename Result
ThunderEx.dll  CLEAN

The file 'ThunderEx.dll' has been determined to be 'CLEAN'. Our analysts did not discovered any malicious content.
周杰伦
 楼主| 发表于 2007-3-27 07:53:43 | 显示全部楼层

回复 #66 windwing 的帖子

红伞已经回复了
We received the following archive files:



File ID  Filename  Size (Byte) Result
235442  htm.rar 5.095 OK

A listing of files contained inside archives alongside their results can be found below:

File ID  Filename  Size (Byte) Result
235443  46370080.vir  2.971  MALWARE (NOT ANALYZABLE)
235443  46370080.vir  2.971  MALWARE (NOT ANALYZABLE)
235444  infected.bmp  74.166  CLEAN


Please find a detailed report concerning each individual sample below:

Filename Result
46370080.vir  MALWARE (NOT ANALYZABLE)

The file '46370080.vir' has been determined to be 'MALWARE (NOT ANALYZABLE)'. In particular this means that this file is not working properly or not functional as a stand alone component. Nevertheless we were able to determine that it is malware. Our analysts named the threat HTML/Startpage.O. The term "HTML/" denotes a script-virus that is able to infect the system using a HTML script.Detection is added to our virus definition file (VDF) starting with version 6.36.01.105.

Filename Result
46370080.vir  MALWARE (NOT ANALYZABLE)

The file '46370080.vir' has been determined to be 'MALWARE (NOT ANALYZABLE)'. In particular this means that this file is not working properly or not functional as a stand alone component. Nevertheless we were able to determine that it is malware. Our analysts named the threat HTML/Startpage.O. The term "HTML/" denotes a script-virus that is able to infect the system using a HTML script.Detection is added to our virus definition file (VDF) starting with version 6.36.01.105.

Filename Result
infected.bmp  CLEAN

The file 'infected.bmp' has been determined to be 'CLEAN'. Our analysts did not discovered any malicious content.
benny2
发表于 2007-3-28 02:38:41 | 显示全部楼层
红伞这个误报实在是。。。。

我的病毒库版本V6.38.00.129

AntivirusVersionUpdateResult
AhnLab-V32007.3.27.003.27.2007 no virus found
AntiVir7.3.1.4403.27.2007TR/PSW.QQSpy.AF
Authentium4.93.803.26.2007 no virus found
Avast4.7.936.003.27.2007 no virus found
AVG7.5.0.44703.27.2007 no virus found
BitDefender7.203.27.2007 no virus found
CAT-QuickHeal9.0003.27.2007 no virus found
ClamAVdevel-2007031203.27.2007 no virus found
DrWeb4.3303.27.2007 no virus found
eSafe7.0.14.003.27.2007 no virus found
eTrust-Vet30.6.351503.27.2007 no virus found
Ewido4.003.27.2007 no virus found
FileAdvisor103.27.2007 No threat detected
Fortinet2.85.0.003.27.2007 no virus found
F-Prot4.3.1.4503.26.2007 no virus found
F-Secure6.70.13030.003.27.2007 no virus found
IkarusT3.1.1.303.27.2007 no virus found
Kaspersky4.0.2.2403.27.2007 no virus found
McAfee499303.27.2007 no virus found
Microsoft1.230603.27.2007 no virus found
NOD32v2214803.27.2007 no virus found
Norman5.80.0203.27.2007 no virus found
Panda9.0.0.403.27.2007 no virus found
Prevx1V203.27.2007 no virus found
Sophos4.15.003.27.2007 no virus found
Sunbelt2.2.907.003.24.2007 no virus found
Symantec1003.27.2007 no virus found
TheHacker6.1.6.08003.23.2007 no virus found
UNA1.8303.16.2007 no virus found
VBA323.11.203.27.2007 no virus found
VirusBuster4.3.7:903.27.2007 no virus found
Webwasher-Gateway6.0.103.27.2007Trojan.PSW.QQSpy.AF


File size: 1581056 bytes
MD5: 8829938fd1e3cd4665759929cf6d939a
SHA1: 8a713a0cf878d6866999d6948a8f824c3d9fa15d


已经上报,等待回复中

本帖子中包含更多资源

您需要 登录 才可以下载或查看,没有帐号?快速注册

x
周杰伦
 楼主| 发表于 2007-3-28 10:11:06 | 显示全部楼层

回复 #73 benny2 的帖子

上报就可以解决了
evilcat
发表于 2007-3-28 15:22:12 | 显示全部楼层
金山词霸2007的破解补丁,前一阵没有问题,刚才开机红伞却报了,报的是xdict.exe。
看了下多引擎,有点迷惑啊

AntivirusVersionUpdateResult
AhnLab-V32007.3.27.003.27.2007 [td]no virus found
AntiVir7.3.1.4403.28.2007BDS/Pcclient.GV.141
Authentium4.93.803.28.2007 [td]no virus found
Avast4.7.936.003.27.2007 [td]no virus found
AVG7.5.0.44703.27.2007 [td]no virus found
BitDefender7.203.28.2007Backdoor.Pcclient.GV
CAT-QuickHeal9.0003.27.2007 [td]no virus found
ClamAVdevel-2007031203.28.2007 [td]no virus found
DrWeb4.3303.28.2007 [td]no virus found
eSafe7.0.14.003.27.2007suspicious Trojan/Worm
eTrust-Vet30.6.351803.28.2007 [td]no virus found
Ewido4.003.27.2007 [td]no virus found
FileAdvisor103.28.2007 [td]no virus found
Fortinet2.85.0.003.28.2007PossibleThreat!016875
F-Prot4.3.1.4503.28.2007 [td]no virus found
F-Secure6.70.13030.003.28.2007 [td]no virus found
IkarusT3.1.1.303.28.2007Backdoor.Win32.PcClient.GV
Kaspersky4.0.2.2403.28.2007 [td]no virus found
McAfee499303.27.2007 [td]no virus found
Microsoft1.230603.28.2007 [td]no virus found
NOD32v2214803.27.2007 [td]no virus found
Norman5.80.0203.27.2007 [td]no virus found
Panda9.0.0.403.27.2007 [td]no virus found
Prevx1V203.28.2007 [td]no virus found
Sophos4.15.003.27.2007 [td]no virus found
Sunbelt2.2.907.003.24.2007Backdoor.PcClient.GV
Symantec1003.28.2007 [td]no virus found
TheHacker6.1.6.08003.23.2007 [td]no virus found
UNA1.8303.16.2007 [td]no virus found
VBA323.11.203.27.2007suspected of Backdoor.PcClient.3
VirusBuster4.3.7:903.27.2007Packed/NSPack
Webwasher-Gateway6.0.103.28.2007Trojan.Pcclient.GV.141

Aditional Information
File size: 645421 bytes
MD5: 88789b6b148f3915a646d83beb263b76
SHA1: 660faf3a289cc1430caecaa93b7e4f2440c58150
packers: NSPACK
packers: NSPack, PE_Patch



下载:
http://evilmetalcat.googlepages.com/xdict.rar
周杰伦
 楼主| 发表于 2007-3-28 15:25:48 | 显示全部楼层

回复 #75 evilcat 的帖子

好了,已经上报了
temp444
发表于 2007-3-28 18:39:16 | 显示全部楼层
有人上报过“超星IE阅读插件”没有?那个插件(超星图书官方提供的)也报有问题。
周杰伦
 楼主| 发表于 2007-3-29 07:42:53 | 显示全部楼层

回复 #77 temp444 的帖子

把文件打包发上来,我们上报看看
fairypyr
发表于 2007-3-29 10:48:59 | 显示全部楼层
。。这个是不是误报?

本帖子中包含更多资源

您需要 登录 才可以下载或查看,没有帐号?快速注册

x
周杰伦
 楼主| 发表于 2007-3-29 16:22:53 | 显示全部楼层

回复 #79 fairypyr 的帖子

红伞回复了,是误报的,下个版本就会解决这个误报了
We received the following archive files:



File ID  Filename  Size (Byte) Result
239393  AntiAdwa.rar 49.120 OK

A listing of files contained inside archives alongside their results can be found below:

File ID  Filename  Size (Byte) Result
222744  AntiAdwa.dll  139.264  FALSE POSITIVE


Please find a detailed report concerning each individual sample below:

Filename Result
AntiAdwa.dll  FALSE POSITIVE

The file 'AntiAdwa.dll' has been determined to be 'FALSE POSITIVE'. In particular this means that this file is not malicious but a false alarm. Detection is removed from our virus definition file (VDF) with the version: 6.38.0.69 .
您需要登录后才可以回帖 登录 | 快速注册

本版积分规则

手机版|杀毒软件|软件论坛| 卡饭论坛

Copyright © KaFan  KaFan.cn All Rights Reserved.

Powered by Discuz! X3.4( 沪ICP备2020031077号-2 ) GMT+8, 2025-1-9 03:00 , Processed in 0.096285 second(s), 15 queries .

卡饭网所发布的一切软件、样本、工具、文章等仅限用于学习和研究,不得将上述内容用于商业或者其他非法用途,否则产生的一切后果自负,本站信息来自网络,版权争议问题与本站无关,您必须在下载后的24小时之内从您的电脑中彻底删除上述信息,如有问题请通过邮件与我们联系。

快速回复 客服 返回顶部 返回列表