Help - Search - Members - Calendar
Full Version: False Positive !
BitDefender Forum > English > Old Forum Topics > Malware Talk > False positive reporting
Crem
Hi all,

BitDefender detects Rootkit Unhooker as trojan.generic.xyz when i use function : tab File - Scan (in Rootkit Unhooker).

CODE
http://www.antirootkit.com/software/RootKit-Unhooker.htm
danton
QUOTE (Crem @ Aug 10 2008, 04:37 AM) *
Hi all,

BitDefender detects Rootkit Unhooker as trojan.generic.xyz when i use function : tab File - Scan (in Rootkit Unhooker).

CODE
http://www.antirootkit.com/software/RootKit-Unhooker.htm

Can you tell us exactly the name of detection? Trojan.Generic.?

Thanks.
Flava ava
QUOTE (danton @ Aug 10 2008, 06:53 AM) *
Can you tell us exactly the name of detection? Trojan.Generic.?

Thanks.


Just download yourself and see what the name is.
crysty2k5
QUOTE (Flava ava @ Aug 10 2008, 12:50 PM) *
Just download yourself and see what the name is.


Did someone ask you what time is it ?!


  dry.gif

http://www.virustotal.com/analisis/c92aa66...daae135283e1673

Crem
QUOTE (danton @ Aug 10 2008, 11:53 AM) *
Can you tell us exactly the name of detection? Trojan.Generic.?

Thanks.


Very strange when Virus Researcher of Bit Labs ask me that question. When BitDefender detect one target is Trojan.Generic.? then ? is random (i think it is CRC32 value). So you should download Rootkit Unhooker on site above and navigate to Tab File - Scan.

Here is name : File c:\WINDOWS\system32\8D573935.exe infected with Trojan.Generic.382139.

Crem
This is a "lo-fi" version of our main content. To view the full version with more information, formatting and images, please click here.
Invision Power Board © 2001-2009 Invision Power Services, Inc.