![]() |
![]() | WIN.TROJAN.RAMNIT-2501 FALSE POSITIVE? | ![]() |
![]() |
![]() | ![]() |
ROCKNROLLKID
![]() |
![]() |
You can submit false positives to ClamAV via this link: http://www.clamav.net/lang/en/sendvirus/ there is a link for you to submit false positives there. If you include in the message the virustotal link, they might look into what the issue is. This progress will take a few days, so in the meantime you can ignore the file. AVG is also known to have false positives to, so I am sure that it's a false positive.
|
|||||||||||
|
![]() |
![]() | ![]() |
ADVRESOURCE
![]() |
![]() |
I submitted my false positive to ClamAV via the link provided. They wrote back immediately stating that the ClamAV virus definitions do not find the win.trojan.ramnit-2501 virus. What more can I do?
|
|||||||||||
|
![]() |
![]() | ![]() |
GuitarBob
![]() |
![]() |
The file is probably detected by ClamWin .98.3 and not by the new Clam AV .98.4 detection engine. ClamWin has not ported the Clam AV engine over to Windows yet--will probably do that in a couple of weeks. All you can do now is to exclude/whitelist the filename.extension in ClamWin.
Each Clam AV version has new detections/improvements that ClamWin can not handle until the ClamWin developers synchronize their version with Clam AV. The detection is probably due to a new signature type that ClamWin can not process yet. Regards, |
|||||||||||
|
![]() |
![]() | WIN.TROJAN.RAMNIT-2501 FALSE POSITIVE? | ![]() |
|
||
![]() |
![]() |
Powered by phpBB © phpBB Group
Design by phpBBStyles.com | Styles Database.
Content © ClamWin Free Antivirus GNU GPL Free Software Open Source Virus Scanner. Free Windows Antivirus. Stay Virus Free with Free Software.
Design by phpBBStyles.com | Styles Database.
Content © ClamWin Free Antivirus GNU GPL Free Software Open Source Virus Scanner. Free Windows Antivirus. Stay Virus Free with Free Software.