Jump to content

False Positive-com.mephone.fonts


Recommended Posts

Hi, we have contacted your support team and found out that "PUP.Lotoor is a type of rootkit, and PUP.Riskware,Batmob.me is a riskware app". 

Later, we deleted the files mentioned but the detection still stood.

It might be that you have added our package name, "com.mephone.fonts" into your database. Therefore, we will always get positive results unless we change our package name, which is not our intention.

Could you please remove our package name out of your database, or tell us how to solve this problem?

Attached is our apk (deleting the so called malicious file):


Link to post
Share on other sites

Hi Elsa,

Thank you for removing the PUP(Potentially Unwanted Program) code from your apk, com.mephone.fonts.  I assured that this updated clean apk will not be detected, however older versions that contain PUP.Riskware,Batmob still will.

As far as  PUP.Lotoor, I assume you are referencing com.shuame.mobile which has ties to com.shuame.rootgenius.  I have updated the detection on these to PUP.Hacktool.RootGenius which is less generic, and a less intimidating detection name.  Hopefully this is a fair compromise for you.


Nathan Collier

Senior Malware Intelligence Analyst

Link to post
Share on other sites

Create an account or sign in to comment

You need to be a member in order to leave a comment

Create an account

Sign up for a new account in our community. It's easy!

Register a new account

Sign in

Already have an account? Sign in here.

Sign In Now
  • Recently Browsing   0 members

    • No registered users viewing this page.
Back to top
  • Create New...

Important Information

This site uses cookies - We have placed cookies on your device to help make this website better. You can adjust your cookie settings, otherwise we'll assume you're okay to continue.