Jump to content

CG: False Positive Submission (Malware.Heuristic.1003)


Recommended Posts

Hello!
We have checked our software on virustotal and got false positive detections (Malware.Heuristic.1003).
Please check the protected zip file with sample:

https://cloud.connectivegames.com/index.php/s/P5YMttk48q93t62


Password for the zip file is “infected” (without quotes).
The archive also contains link to virustotal reports.

MD5: 41773d73c76e3bda29dd0e5823b53f92
SHA-1: ca5d21d88c1b77df98fe2bc5c953471e091a8e0f
SHA-256: 539b9a41560e9613e1c77fef6cc93442f612d646ea02ff56d8c13efb480e65b0

Thank you!

Edited by AdvancedSetup
disabled live hyperlink
Link to post
Share on other sites
35 minutes ago, CGS said:

We have checked our software on virustotal and got false positive detections (Malware.Heuristic.1003).

This is just like your previous report.

It is not detected by the consumer or commercial versions of Malwarebytes.

The engine format and configuration in VirusTotal is different than the consumer and corporate products’ default configuration. In VirusTotal Malwarebytes uses a command-line engine with different configuration and detection techniques/heuristics which might detect more than the commercial product. There are also false-positive suppression mechanisms in the commercial product which are not present in the command-line engine in VirusTotal.

This will eventually fix itself in Virustotal as well, as Malwarebytes has no control over this. Virus Total is having trouble reaching Malwarebytes cloud.

 

Link to post
Share on other sites

Create an account or sign in to comment

You need to be a member in order to leave a comment

Create an account

Sign up for a new account in our community. It's easy!

Register a new account

Sign in

Already have an account? Sign in here.

Sign In Now
  • Recently Browsing   0 members

    No registered users viewing this page.

Back to top
×
×
  • Create New...

Important Information

This site uses cookies - We have placed cookies on your device to help make this website better. You can adjust your cookie settings, otherwise we'll assume you're okay to continue.