FALSE/POSITIVE

Discussion in 'ESET NOD32 Antivirus' started by ViPirate, Feb 10, 2010.

Thread Status:
Not open for further replies.
  1. ViPirate

    ViPirate Registered Member

    Joined:
    Jan 21, 2010
    Posts:
    6
    Location:
    MARGEM-SUL
    Hello Wilders!:cool:

    I just restarted my VistaHP32b, and im dealing with an Win32/PCAgente on C:\windows\Drivers\mchInjDrv.sys, on quarantine of my Nod32AV4.

    On 1st.time i just exclude it, because i now this come from a-squared, like they saying on their forum: "It belongs to a-squared since it's using the method of injection."
    Now was the 2nd.one and I'm living it on in and wait for...o_O

    Basically my question is to know, if i live it in quarantine, will ESET after receiving the report, update the bases and rescan the quarantine, fix this false/positive, or it'll be with us the way to solve this?
    Cheers​
     
    Last edited: Feb 10, 2010
  2. Triple Helix

    Triple Helix Webroot Product Advisor

    Joined:
    Nov 20, 2004
    Posts:
    12,014
    Location:
    Ontario, Canada
    Last edited: Feb 10, 2010
  3. ViPirate

    ViPirate Registered Member

    Joined:
    Jan 21, 2010
    Posts:
    6
    Location:
    MARGEM-SUL
    Thanks, i hope this help you:


    File mchInjDrv.sys received on 2010.02.07 19:34:48 (UTC)

    Current status: finished
    Result: 6 / 40 (15.00%)


     
  4. Triple Helix

    Triple Helix Webroot Product Advisor

    Joined:
    Nov 20, 2004
    Posts:
    12,014
    Location:
    Ontario, Canada
  5. ViPirate

    ViPirate Registered Member

    Joined:
    Jan 21, 2010
    Posts:
    6
    Location:
    MARGEM-SUL
    Fair enough, I'll not disable detection of potentially unsafe applications, but I'll exclude it from scanning! Thank you for your attention!
     
  6. Triple Helix

    Triple Helix Webroot Product Advisor

    Joined:
    Nov 20, 2004
    Posts:
    12,014
    Location:
    Ontario, Canada
    Your very welcome! ;)

    TH
     
Thread Status:
Not open for further replies.