Jump to content

False positive on my dll


daerlnaxe

Recommended Posts

Hi,

I'm an anamator developer, 
I had some problem with a hijack on my browser and tried MalwareBytes, but recently after have compiled my dll Malwarebytes détected it as a "Machine Learning...", i would to know if i did something wrong in my dll that made MalwareBytes detected it as a Malware. My dll is in progress, it's a combination of box and algorithms to common windows like choose a file or a folder, collisions between files... There is a hash function too, to detect if files are exactly the same. I think it's all.

It's open source there is in all case everything on github

DxTBoxCore.rar

Link to post
Share on other sites

Just to add

image.thumb.png.69553c693fdb66ac9c56ee7098306f0b.png

You might want to contact Microsoft as well. https://www.microsoft.com/en-us/wdsi/filesubmission

The Malwarebytes detection on Virus Total is because of the following.

The engine format and configuration in VirusTotal is different than our consumer and corporate products’ default configuration. In VirusTotal we use a command-line engine with different configuration and detection techniques/heuristics which might detect more than the commercial product. There are also false-positive suppression mechanisms in the commercial product which are not present in the command-line engine in VirusTotal.

This file has been whitelisted for our commercial products and it is not detected anymore.

 

Edited by Porthos
Link to post
Share on other sites

Create an account or sign in to comment

You need to be a member in order to leave a comment

Create an account

Sign up for a new account in our community. It's easy!

Register a new account

Sign in

Already have an account? Sign in here.

Sign In Now
  • Recently Browsing   0 members

    • No registered users viewing this page.
Back to top
×
×
  • Create New...

Important Information

This site uses cookies - We have placed cookies on your device to help make this website better. You can adjust your cookie settings, otherwise we'll assume you're okay to continue.