ClamWin Free Antivirus Forum Index
ClamWin Free Antivirus
Support and Discussion Forums
Reply to topic
Uranium Backup
Expertone


Joined: 02 Jan 2013
Posts: 4
Reply with quote
ClamWin (latest version: https://gyazo.com/5cd79d3fb8209560b99d17433a4a8fa3 ) on win2012 server, detected Uranium backup v9.6.1.6984 compromised by a virus.

C:\Program Files (x86)\Uranium Backup\Uranium.exe: Win.Trojan.Generic-6629246-0 FOUND

i think is a false positive, i've tested uranium.exe with virus total and seems clean.
https://gyazo.com/788a74e9ce4db2c5237e8a06e4426065

Even clamAV on VirusTotal have passed the test, so why

there is a way to exclude the uranium.exe from antivirus scanning??

thanks
View user's profileSend private message
GuitarBob


Joined: 09 Jul 2006
Posts: 4468
Location: USA
Reply with quote
ClamWin uses the Clam AV scan engine, so they are usually the same in detection. However, ClamWin is a couple of versions behind Clam AV now, and perhaps it is missing some of the new Clam AV code which causes it to detect your file. This sometimes happens.

You can exclude (whitelist) a file from scanning by ClamWin via Tools, Preferences, Filters, Exclude Matching Filenames. Just insert the entire location--folder, subfolder, filename, extension. Example: C:\Malware\Testsets\Testfile.exe. (no period at end). Exclude an entire folder via: C:\Malware\*. (no period at end). Whitelisting will exclude the file from directory scanning; however, it will not be excluded during a single file scan.

Thanks for using ClamWin!

Regards,
View user's profileSend private message
Uranium Backup
You cannot post new topics in this forum
You cannot reply to topics in this forum
You cannot edit your posts in this forum
You cannot delete your posts in this forum
You cannot vote in polls in this forum
All times are GMT  
Page 1 of 1  

  
  
 Reply to topic