Jump to content
IObit Forum
Top Free Driver Updater Tools Best 25 PC Optimization Software Best 22 Antimalware Best 22 Uninstaller Software IObit Coupons & Discount Offers PC Optimizer

How to report False Positive to us?


Recommended Posts

Hi Sillus,

 

Please have a lok at HERE.

You can search it in Google, and in many security web sites this program is said to be rogue and "how to get rid of it" instructions are given.

 

Cheers.

 

Hi enoskype,

 

You are referring to "Malware Defender 2009" ...that is a rogue software. What I have installed on my machine is "Malware Defender" which was developed by Torchsoft and now is part of 360safe, a security company. As far as I know is a legitime HIPS software. His developer is an active member at Wilderssecurity.com

 

thx

Link to comment
Share on other sites

  • Replies 354
  • Created
  • Last Reply

Top Posters In This Topic

Thanks for the info Sillus,

 

IS360 has made the same mistake I did then.:-P

I am sure IObit is going to take that into consideration.

 

Anyway, the FP is only for the name of the shortcut on the desktop not the MalwareDefender.exe, so untill IObit corrects their db, you can rename the shortcut.

 

Cheers.:-)

Link to comment
Share on other sites

IObit Security 360

 

OS:Windows 7

Version:1.4.5.67

Definir Version:1716

Tiempo Transcurrido:00:02:41

Objetos Analizados:54355

Amenazas Encontradas:1

 

|Nombre|Tipo|Descripción|ID|

Misleading.Application, File, C:\Users\Public\Desktop\Malware Defender.lnk, 4-1297

 

 

I have downloaded Malware Defender from www.360.cn

 

Malware defender scan at Virustotal

 

Thx

 

Hi Sillus

 

This is a FP, We will solve this issue in our later update definition 1717.

 

Thanks for your feedback.

Link to comment
Share on other sites

  • 1 month later...

quantserve.com ??????

 

IObit Security 360

 

OS:Windows 7

Version:1.5.0.10

Define Version:1813

Time Elapsed:00:00:10

Objects Scanned:8778

Threats Found:1

 

|Name|Type|Description|ID|

Tracking Cookies - Removed, Cookies, Cookie:???????@quantserve.com/, 7-2072

 

 

 

I'll check it several times. I haven't this cookie at my PC.

I have Google Chrome, Luunascape & IE - nothing in it with such name.

Finally I check it with ExterminateIT, a little prog especially for that case.

The result is zero.

Appreciate any help.

Link to comment
Share on other sites

  • 3 months later...

How to report false positive?

 

We are a vendor of medical imaging software. One of our users is reporting that System Mechanic is flagging our software as a false positive. We want to report this to you.

 

First, the user says they do not know how to save a scan report. We do not use your software, so we dont know how either. Is there a documentation link we can provide the user with?

 

Also, we are happy to provide a copy of the software to you for analysis, but it cannot be in a public forum like this. Kindly advise how we can privately submit a URL to you for download of the software. The software is not available for public downloading and we can't post a download link to this forum. Thank for your help.

Link to comment
Share on other sites

Wrong forum

 

We are a vendor of medical imaging software. One of our users is reporting that System Mechanic is flagging our software as a false positive. We want to report this to you..............

 

Hi jamesop :smile:

 

You have the wrong forum, System Mechanic is not IObit software

Google it and you will find a link

 

All the best, woz of oz

Link to comment
Share on other sites

  • 2 weeks later...

tracking cookies

 

IObit Security 360

 

OS:Windows 7

Version:1.5.0.13

Define Version:2402

Time Elapsed:00:00:36

Objects Scanned:50223

Threats Found:1

 

|Name|Type|Description|ID|

Tracking Cookies - Removed, Cookies, Cookie:harvesenal@quantserve.com/, 7-2072

 

 

-this cookie kept comming in and result as threats when i scan-

how can i remove it parmently...tq

Link to comment
Share on other sites

tracking cookies problem

 

same goes with this two.IObit Security 360

 

OS:Windows 7

Version:1.5.0.13

Define Version:2402

Time Elapsed:00:01:01

Objects Scanned:50541

Threats Found:2

 

|Name|Type|Description|ID|

Tracking Cookies - Removed, Cookies, Cookie:harvesenal@quantserve.com/, 7-2072

Tracking Cookies - Removed, Cookies, Cookie:harvesenal@adserving.cpxinteractive.com/, 7-1757

Link to comment
Share on other sites

  • 3 weeks later...

Unwanted Software - PCOnPoint

 

Windows XP SP3

IObit 360

 

C:\Program Files\PCOnPoint\*.*

 

Keeps reporting unwanted files in this subdirectory. This is a licensed piece of software that I have used for many years and it is legitimate. These messages are a pain to deselect every time I use IObit 360. The first time I used it all the files were cleared and had to be reinstalled and the license key re-input. Your assistance is appreciated.

 

Thank you

 

Orlando Salinas

oesalinas@programmer.net

Link to comment
Share on other sites

  • 3 weeks later...

IOBIT Security 360 scan

 

I have run norton, eset, and comodo scans within last week and these files weren't marked by any of them, I assume they are false positives?

 

IObit Security 360

 

OS:Windows XP

Version:1.6.0.2

Define Version:2411

Time Elapsed:02:54:14

Objects Scanned:214872

Threats Found:5

 

|Name|Type|Description|ID|

180 Solutions.nCase, File, C:\WINDOWS\SoftwareDistribution\Download\c268348752498f57ff1128ae6a23c4f1\wgatray.exe, 9-59256

Trojan.Agent, File, C:\hp\drivers\audio\Creative\Audio\Player3\CDWrite\English\CTCDRRes.dll, 11-21084

Trojan.Agent, File, G:\Documents and Settings\All Users\Application Data\AOL Downloads\triton_suite_install_2.0.2.2\ampx.exe, 11-19689

Trojan.Agent, File, G:\Documents and Settings\All Users\Application Data\AOL\C_America Online 9.0\Unagi\ampx.exe, 11-19689

Trojan.Agent, File, G:\hp\drivers\audio\Creative\Audio\Player3\CDWrite\English\CTCDRRes.dll, 11-21084

 

 

I haven't taken any action on the scan as of yet and I don't know how to send them in a zip folder with a password if you want me too but if you tell me how I should be able to figure it out.

Link to comment
Share on other sites

Welcome

 

I haven't taken any action on the scan as of yet and I don't know how to send them in a zip folder with a password if you want me too but if you tell me how I should be able to figure it out.

 

Welcome to the forum jessicasimpsonluvsu :smile:

 

All is explained (plus screenshots) in the thread Guidelines and Requirements for Reporting a False Positive

 

Including how to upload the files to VirusTotal and supply the VirusTotal link for the report (Post # 1 of that thread)

How to upload the password protected ZIP file to www.wikisend.com and supply the Wikisend link for the file (Post # 5 of that thread)

 

All the best, woz of oz

Link to comment
Share on other sites

false pos

 

IObit Security 360

 

OS:Windows XP

Version:1.5.0.10

Define Version:2412

Time Elapsed:00:23:46

Objects Scanned:60722

Threats Found:2

 

|Name|Type|Description|ID|

Tracking Cookies - Removed, Cookies, Cookie:warren droms@quantserve.com/, 7-2072

Trojan.Adware, File, C:\ACER\Preload\Autorun\DRV\Intel VGA Chip UMA\LPCO\CHS\igfxres.dll, 12-932

Link to comment
Share on other sites

IObit Security 360

 

OS:Windows XP

Version:1.5.0.10

Define Version:2412

Time Elapsed:00:23:46

Objects Scanned:60722

Threats Found:2

 

|Name|Type|Description|ID|

Tracking Cookies - Removed, Cookies, Cookie:warren droms@quantserve.com/, 7-2072

Trojan.Adware, File, C:\ACER\Preload\Autorun\DRV\Intel VGA Chip UMA\LPCO\CHS\igfxres.dll, 12-932

 

Hi dubyadd

You can upload your file (igfxres.dll) to http://www.wikisend.com and give us the link.

THANKS!

Link to comment
Share on other sites

  • 1 month later...
I believe it is a Rogue program. I went to download it and Avira stopped me saying its a Trojan, it said this, TR/Fake.RegFix. And if Avira says it I believe it. And of course a person that puts a product out will say its clean to sell it.

 

 

Avira and 360 may have tagged based on it's behavior-you know,if it walks like a duck and talks like a duck...

 

_________________

LINKS DELETED

Link to comment
Share on other sites

42 new threats-ridiculus

 

:-(Here is the report I got today, it takes so long to report these on the ignore list 1 at a time like I did with the 37 other files for weather bug, I will just uninstall this program , reinstall , run the scan again, if clear will keep, if shows again will just uninstall for a month until this is fixed. This is the second time I have had to do this. Isn't there a better program to do this with. Any suggestions, as this is getting too time consuming :roll:

 

 

Obit Security 360

 

OS:Windows Vista

Version:1.6.0.2

Define Version:2422

Time Elapsed:01:09:04

Objects Scanned:86455

Threats Found:42

 

|Name|Type|Description|ID|

Tracking Cookies, Cookies, http://t.pointroll.com/PointRoll/Track/?q=au&i=309F0400-505A-0459-0209-96F000B00100&o=1&r=0.9708185815439572, 7-2045

Tracking Cookies, Cookies, http://t.pointroll.com/PointRoll/Track/?q=au&i=349F0400-C87E-1CA0-0209-96F000B00100&o=1&r=0.15665636411954764, 7-2045

Tracking Cookies, Cookies, http://t.pointroll.com/PointRoll/Track/?q=au&i=2F9F0400-2187-ADA0-0209-96F000B00100&o=1&r=0.2698482276762372, 7-2045

Tracking Cookies, Cookies, http://t.pointroll.com/PointRoll/Track/?q=au&i=319F0400-E5E9-0F86-0209-96F000B00100&o=1&r=0.7532717289426543, 7-2045

Tracking Cookies, Cookies, http://t.pointroll.com/PointRoll/Track/?q=au&i=349F0400-9E7E-2ACB-0209-96F000B00100&o=1&r=0.7236967928321596, 7-2045

Tracking Cookies, Cookies, http://t.pointroll.com/PointRoll/Track/?q=au&i=2E9F0400-3D34-FEA1-0209-96F000B00100&o=1&r=0.44904690427136923, 7-2045

Tracking Cookies, Cookies, http://t.pointroll.com/PointRoll/Track/?q=au&i=349F0400-937D-60AA-0209-96F000250100&o=1&r=0.8505982620003628, 7-2045

Tracking Cookies, Cookies, http://t.pointroll.com/PointRoll/Track/?q=au&i=319F0400-793C-5C8B-0209-96F000B00100&o=1&r=0.6375385964156327, 7-2045

Tracking Cookies, Cookies, http://t.pointroll.com/PointRoll/Track/?q=au&i=319F0400-BA3C-70AE-0209-96F000B00100&o=1&r=0.37439878605793564, 7-2045

Tracking Cookies, Cookies, http://t.pointroll.com/PointRoll/Track/?q=au&i=319F0400-C3E9-09D7-0209-96F000250100&o=1&r=0.18557410251082296, 7-2045

Tracking Cookies, Cookies, http://t.pointroll.com/PointRoll/Track/?q=au&i=319F0400-08E9-75F6-0209-96F000250100&o=1&r=0.09387373113809782, 7-2045

Tracking Cookies, Cookies, http://t.pointroll.com/PointRoll/Track/?q=au&i=2E9F0400-9F34-228D-0209-96F000B00100&o=1&r=0.028996446058173086, 7-2045

Tracking Cookies, Cookies, http://t.pointroll.com/PointRoll/Track/?q=au&i=2F9F0400-D985-6A21-0209-96F000250100&o=1&r=0.8803265966538983, 7-2045

Tracking Cookies, Cookies, http://t.pointroll.com/PointRoll/Track/?q=au&i=2F9F0400-D286-4E4B-0209-96F000250100&o=1&r=0.2276392511202558, 7-2045

Tracking Cookies, Cookies, http://spd.pointroll.com/PointRoll/Ads/PRScript.dll?v=128&pos=0&init=0&delay=0&push=0&set=1&bye=1, 7-2045

Tracking Cookies, Cookies, http://t.pointroll.com/PointRoll/Track/?q=au&i=369F0400-AEBA-E74C-0209-96F000B00100&o=1&r=0.4996402060504395, 7-2045

Tracking Cookies, Cookies, http://t.pointroll.com/PointRoll/Track/?q=au&i=319F0400-03EA-DDD7-0209-96F000B00100&o=1&r=0.8001936760356931, 7-2045

Tracking Cookies, Cookies, http://t.pointroll.com/PointRoll/Track/?q=pu&i=349F0400-257F-6DD7-0209-96F000230100&o=736827&c=0&p=1&u=736827&t=8&r=0.5218348102789787, 7-2045

Tracking Cookies, Cookies, http://t.pointroll.com/PointRoll/Track/?q=au&i=2E9F0400-9134-046A-0209-96F000230100&o=1&r=0.4561935610682309, 7-2045

Tracking Cookies, Cookies, http://t.pointroll.com/PointRoll/Track/?q=au&i=349F0400-347F-F233-0209-96F000B00100&o=1&r=0.2921849966671294, 7-2045

Tracking Cookies, Cookies, http://t.pointroll.com/PointRoll/Track/?q=au&i=2F9F0400-04F4-EFB8-0209-96F000B00100&o=1&r=0.7536466288363353, 7-2045

Tracking Cookies, Cookies, http://t.pointroll.com/PointRoll/Track/?q=au&i=349F0400-477F-78DC-0209-96F000B00100&o=1&r=0.010200166061150872, 7-2045

Tracking Cookies, Cookies, http://t.pointroll.com/PointRoll/Track/?q=au&i=309F0400-FA57-22FF-0209-96F000230100&o=1&r=0.6731305128476752, 7-2045

Tracking Cookies, Cookies, http://t.pointroll.com/PointRoll/Track/?q=au&i=2E9F0400-B633-330E-0209-96F000250100&o=1&r=0.5858227559450365, 7-2045

Tracking Cookies, Cookies, http://t.pointroll.com/PointRoll/Track/?q=au&i=309F0400-DF59-32D6-0209-96F000B00100&o=1&r=0.6454929581369989, 7-2045

Tracking Cookies, Cookies, http://t.pointroll.com/PointRoll/Track/?q=au&i=2E9F0400-EE33-6B17-0209-96F000B00100&o=1&r=0.6111982689694475, 7-2045

Tracking Cookies, Cookies, http://t.pointroll.com/PointRoll/Track/?q=au&i=369F0400-19BB-AD80-0209-96F000B00100&o=1&r=0.17768887799374755, 7-2045

Tracking Cookies, Cookies, http://t.pointroll.com/PointRoll/Track/?q=au&i=2F9F0400-C386-F6B4-0209-96F000B00100&o=1&r=0.41304379233341687, 7-2045

Tracking Cookies, Cookies, http://t.pointroll.com/PointRoll/Track/?q=au&i=319F0400-67E9-B184-0209-96F000B00100&o=1&r=0.7132808541879032, 7-2045

Tracking Cookies, Cookies, http://t.pointroll.com/PointRoll/Track/?q=pi&i=2E9F0400-9134-046A-0209-96F000230100&o=736827&c=0&p=1&u=736827&t=8&r=0.3857466527031853, 7-2045

Tracking Cookies, Cookies, http://t.pointroll.com/PointRoll/Track/?q=au&i=319F0400-683C-0CB6-0209-96F000B00100&o=1&r=0.1761080405046368, 7-2045

Tracking Cookies, Cookies, http://t.pointroll.com/PointRoll/Track/?q=au&i=369F0400-EBBA-9FAC-0209-96F000B00100&o=1&r=0.3389162818672072, 7-2045

Tracking Cookies, Cookies, http://t.pointroll.com/PointRoll/Track/?q=au&i=309F0400-0B58-20A2-0209-96F000B00100&o=1&r=0.5097619196038755, 7-2045

Tracking Cookies, Cookies, http://t.pointroll.com/PointRoll/Track/?q=au&i=369F0400-6EBA-6EC6-0209-96F000250100&o=1&r=0.8216035646966245, 7-2045

Tracking Cookies, Cookies, http://t.pointroll.com/PointRoll/Track/?q=au&i=349F0400-977D-21E9-0209-96F000B00100&o=1&r=0.8819882456216391, 7-2045

Tracking Cookies, Cookies, http://t.pointroll.com/PointRoll/Track/?q=au&i=369F0400-81BA-E247-0209-96F000B00100&o=1&r=0.07840267989941091, 7-2045

Tracking Cookies, Cookies, http://t.pointroll.com/PointRoll/Track/?q=au&i=2E9F0400-E333-A9E9-0209-96F000B00100&o=1&r=0.2384928491786738, 7-2045

Tracking Cookies, Cookies, http://t.pointroll.com/PointRoll/Track/?q=au&i=349F0400-257F-6DD7-0209-96F000230100&o=1&r=0.5576787934356533, 7-2045

Tracking Cookies, Cookies, http://t.pointroll.com/PointRoll/Track/?q=pi&i=349F0400-257F-6DD7-0209-96F000230100&o=736827&c=0&p=1&u=736827&t=8&r=0.9837952580920812, 7-2045

Tracking Cookies, Cookies, http://t.pointroll.com/PointRoll/Track/?q=au&i=319F0400-4C3C-CF74-0209-96F000250100&o=1&r=0.28370743665687664, 7-2045

Tracking Cookies, Cookies, http://t.pointroll.com/PointRoll/Track/?q=au&i=319F0400-19E9-3E3F-0209-

Link to comment
Share on other sites

  • 1 month later...

Microsoft Flight Simulator X False Positive?

 

IObit Security 360

 

OS:Windows 7

Version:1.6.1.2

Define Version:2512

Time Elapsed:00:33:44

Objects Scanned:78313

Threats Found:1

 

|Name|Type|Description|ID|

Trojan.Agent, File, C:\Microsoft Flight Simulator X\activate.exe, 12-68

 

Never had a problem With this Software before and it hasn't flashed up on my Norton or security essentials, so is this a false positive? I Hope it is.

I've submitted it as a sample.

Link to comment
Share on other sites

  • 2 months later...

Warcraft 3 False Positive

 

IObit Malware Fighter

 

OS: Windows 7

Version: 1.1.1.2

Define Version: 1048

Time Elapsed: 00:34:24

Objects Scanned: 71272

Threats Found: 1

Save Time: 8/2/2011 12:04:19 AM

 

|Name|Type|Description|ID|

Trojan.Agent, FILE, C:\Program Files\Warcraft III\Warcraft III.exe, 4064959

 

VirusTotal report is here

 

I know for a fact that this is a false positive. I also am guessing that this program would create a false positive for the expansion called "The Frozen Throne"

 

Both of these programs have been known to cause false positive in some antivirus programs in the past even after a fresh install from the CD. Seems those Antivirus programs corrected their DB to correct it.

 

I'm going to add this to my ignore list until it is corrected. As well I'm going to add the Frozen Throne expansion to my ignore list once I install it if it is detected.

Link to comment
Share on other sites

False positive for Lotus notes

 

Please note that the following was a false positive and stopped my Lotus Notes email system from working (now restored). I attach the report file below.

 

Sincerely,

 

Chris Holmes

 

 

IObit Malware Fighter

 

OS: Windows XP

Version: 1.1.1.2

Define Version: 1049

Time Elapsed: 00:14:27

Objects Scanned: 52263

Threats Found: 1

Save Time: 02/08/2011 11:30:08

 

|Name|Type|Description|ID|

Trojan.Backdoor - Quarantined, FILE, C:\Program Files\lotus\notes\nlnotes.exe, 4046285

Link to comment
Share on other sites

IMF False Positive CRYSIS?

 

IObit Malware Fighter

 

OS: Windows 7

Version: 1.1.1.2

Define Version: 1049

Time Elapsed: 00:24:08

Objects Scanned: 63768

Threats Found: 1

Save Time: 02/08/2011 17:58:38

 

|Name|Type|Description|ID|

Trojan.Dropper, FILE, C:\games\Electronic Arts\Crytek\Crysis WARHEAD\Bin32\CryAnimation.dll, 4071181

 

I'm pretty sure this is a false positive as CRYSIS doesn't give your PC malware lol. ;-) P.S I just scanned this with Avast and it didn't detect anything so this is a sure 100% false positive.

Link to comment
Share on other sites

IObit Malware Fighter

 

OS: Windows XP

Version: 1.1.1.2

Define Version: 1050

Time Elapsed: 00:46:23

Objects Scanned: 61433

Threats Found: 3

Save Time: 8/6/2011 5:42:51 PM

 

|Name|Type|Description|ID|

Trojan.Generic, FILE, C:\System Volume Information\_restore{EBEB4AB1-0344-48B8-807F-DDCFB32D5691}\RP369\A0018523.exe, 4050731

Trojan.Crypt, FILE, C:\Program Files\AutoIt3\Examples\My Stuff\SageSet_Cleaner.exe, 4059639

Trojan.Crypt, FILE, C:\Documents and Settings\RENSIM\Desktop\Suo16_Sage_Clean.exe, 4059639

 

 

I am not sure about the first virus as reported in the restore point section. However, I wrote the next two in autoit and... Suo16_Sage_Clean.exe is a tool I use in the IObit ToolBox.

 

These are not viruses.

 

Thanks,

Valuater

Link to comment
Share on other sites

IObit Malware Fighter

 

OS: Windows XP

Version: 1.1.1.2

Define Version: 1050

Time Elapsed: 00:46:23

Objects Scanned: 61433

Threats Found: 3

Save Time: 8/6/2011 5:42:51 PM

 

|Name|Type|Description|ID|

Trojan.Generic, FILE, C:\System Volume Information\_restore{EBEB4AB1-0344-48B8-807F-DDCFB32D5691}\RP369\A0018523.exe, 4050731

Trojan.Crypt, FILE, C:\Program Files\AutoIt3\Examples\My Stuff\SageSet_Cleaner.exe, 4059639

Trojan.Crypt, FILE, C:\Documents and Settings\RENSIM\Desktop\Suo16_Sage_Clean.exe, 4059639

 

 

I am not sure about the first virus as reported in the restore point section. However, I wrote the next two in autoit and... Suo16_Sage_Clean.exe is a tool I use in the IObit ToolBox.

 

These are not viruses.

 

Thanks,

Valuater

hi Valuater

 

fter investigation, we have assured that it's a false positive. Sorry for the trouble we have caused to you.

 

We will solve this issue in our later update definition 1051.

 

Thanks!!!

Link to comment
Share on other sites

Join the conversation

You can post now and register later. If you have an account, sign in now to post with your account.

Guest
Reply to this topic...

×   Pasted as rich text.   Paste as plain text instead

  Only 75 emoji are allowed.

×   Your link has been automatically embedded.   Display as a link instead

×   Your previous content has been restored.   Clear editor

×   You cannot paste images directly. Upload or insert images from URL.

 Share


×
×
  • Create New...