View Full Version : Threatfire Temp File
Thankful
July 19th, 2008, 03:58 PM
Temp file created by Threatfire detected by NOD32 as probable unknown
NewHeur_PE virus. I have sent file to Eset.
ASpace
July 19th, 2008, 04:10 PM
{QUOTE-> I have sent file to Eset. <-QUOTE}
Thank you ;D :thumb:
Thankful
July 21st, 2008, 06:50 PM
Can I get an idea when this will be fixed?
Running a full scan with Threatfire still triggers an alert from NOD32.
Thanks.
ASpace
July 22nd, 2008, 01:18 AM
It seems it may never get fixed :(
Marcos
July 22nd, 2008, 01:55 AM
{QUOTE-> Can I get an idea when this will be fixed?
Running a full scan with Threatfire still triggers an alert from NOD32.
Thanks. <-QUOTE}
Could you please PM me the subject of the email as well as the email address the file was sent from? I don't remember receiving such a false positive at samples[at]eset.com
Thankful
July 22nd, 2008, 07:12 AM
{QUOTE-> Could you please PM me the subject of the email as well as the email address the file was sent from? I don't remember receiving such a false positive at samples[at]eset.com <-QUOTE}
I don't have the ability to PM. I resent the email this morning. The email was sent to samples@eset.com. The title of the email is [Fwd Probable False Positive]
The attached file is a 7-Zip file with password 'infected'. The name of the file is
'EE1D14C0.7Z'
I would prefer creating the file using Windows XP built-in archive but I don't know how to create a password with the built-in archive.
The behavior can easily be duplicated by downloading the free version of Threatfire here http://www.threatfire.com/download/ and running a full scan with Threatfire.
Thankful
July 22nd, 2008, 03:51 PM
Marcos,
PM sent.
Thankful
July 23rd, 2008, 07:10 AM
Any news?
I have resent the email for a fourth time.
Thankful
July 23rd, 2008, 08:33 AM
Marcos,
I submit the file using Eset quarantine submit utility.
Thankful
July 24th, 2008, 09:25 AM
Marcos,
PM sent.
vBulletin® Copyright ©2000-2009, Jelsoft Enterprises Ltd.
Copyright ©2002 - 2009, Wilders Security Forums