Wilders Security Forums  

Go Back   Wilders Security Forums > Other Security Topics > malware problems & news
User Name
Password
Register FAQ Members List Calendar Search Today's Posts Mark Forums Read

 
 
Thread Tools Search this Thread
  #26  
Old April 10th, 2008, 01:13 AM
WSFuser WSFuser is offline
Incredibly Massive Poster
 
Join Date: Oct 2004
Location: California, USA
Posts: 10,324
Default Re: Threatfire false positives ?

If ThreatFire gives a prompt on a program that is not malicious (default setting 3), is it considered a false positive? Should FP be reported to PC Tools?
__________________
  #27  
Old April 10th, 2008, 01:15 AM
lucas1985's Avatar
lucas1985 lucas1985 is offline
Global Moderator
 
Join Date: Nov 2006
Location: France, May 1968
Posts: 4,047
Default Re: Threatfire false positives ?

I think so.
__________________
"Pouvoir à l'Imagination. Power to the imagination. La imaginación al poder".

"Perfect is the enemy of good enough". Voltaire.
  #28  
Old April 10th, 2008, 01:41 AM
solcroft solcroft is offline
Very Frequent Poster
 
Join Date: Jun 2006
Posts: 1,639
Default Re: Threatfire false positives ?

Quote:
Originally Posted by WSFuser
If ThreatFire gives a prompt on a program that is not malicious (default setting 3), is it considered a false positive? Should FP be reported to PC Tools?
Yes, please.
  #29  
Old April 10th, 2008, 02:01 AM
ErikAlbert ErikAlbert is offline
Incredibly Massive Poster
 
Join Date: Jun 2005
Posts: 9,456
Default Re: Threatfire false positives ?

Quote:
Originally Posted by WSFuser
If ThreatFire gives a prompt on a program that is not malicious (default setting 3), is it considered a false positive? Should FP be reported to PC Tools?
I think so too, but you have to do it the old-fashioned way, there is no "report f/p" function in ThreatFire.
  #30  
Old April 10th, 2008, 02:16 AM
Hairy Coo's Avatar
Hairy Coo Hairy Coo is offline
Very Frequent Poster
 
Join Date: Oct 2007
Location: Northern Beaches
Posts: 1,486
Default Re: Threatfire false positives ?

Quote:
Originally Posted by WSFuser
If ThreatFire gives a prompt on a program that is not malicious (default setting 3), is it considered a false positive? Should FP be reported to PC Tools?

The best way probably would be to turn on Community Protection,which would assist in having FPs placed on the TF whitelist.
Settings-general-community protection-can always be turned off
  #31  
Old April 15th, 2008, 01:44 AM
KDNeese's Avatar
KDNeese KDNeese is offline
Frequent Poster
 
Join Date: Dec 2005
Posts: 236
Default Re: Threatfire false positives ?

Just for info:

wextract.exe is a process associated with the operating system, not malware.

interop.shell32.dll is associated somehow with MS NET Framework, not malware.

I couldn't find any info on the other one.
  #32  
Old April 15th, 2008, 05:06 AM
EASTER's Avatar
EASTER EASTER is offline
Massive Poster
 
Join Date: Jul 2007
Location: U.S.A. (South)
Posts: 4,520
Default Re: Threatfire false positives ?

Quote:
Originally Posted by ErikAlbert
Why doesn't ThreatFire create a whitelist of all objects on my system partition, like Anti-Executable in order to avoid these false positives.
TF doesn't need to protect me against already installed objects, TF has to protect me against NEW objects, that try to install themselves.

That is the essence which makes whitelist apps so very dependable and trustworthy IMO.

Many other apps leave a user with a degree of uncertainty and HIPS is a big uncertainty for any unfamilair with their system and even some who are, but take a strictly whitelist application for security and it more or less inventories ALL your apps deemed safe and then when enabled no others are allowed period, that is if AE is on guard.

With ThreatFire theres still room for uncertainty in my estimation but maybe they'll get more aggressive in that regards at some point in the future. Right now in it's present form theres some areas that don't secure my confidence as well as an AE, Deep Freeze, or FD-ISR to name a few that do although these are very different purposed methods.
__________________
★AX 64 Time Machine★
★Shadow Defender★| EQSecure v4.0 |#Sandboxie 4.08 beta# |FirstDefense-ISR|★FileChangeAlarm★ |Registry Backup VSS|
Maxthon 4 | X Iron 17.0 | Chromium 19.0 | Pale Moon 20.1

Microsoft Windows 8 64bit (UEFI/GPT) Secure Boot¶
¶Linux Mint 14 MATE¶
 

Wilders Security Forums > Other Security Topics > malware problems & news « Previous Thread | Next Thread »

Thread Tools Search this Thread
Search this Thread:

Advanced Search

Posting Settings
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

vB code is On
Smilies are On
[IMG] code is On
HTML code is Off
Forum Jump


All times are GMT -4. The time now is 08:45 PM.


Powered by vBulletin® Copyright ©2000 - 2013, Jelsoft Enterprises Ltd.
Copyright ©2002 - 2013, Wilders Security Forums