Latest BitDefender component flagged as malware!

Discussion in 'other anti-virus software' started by Arin, Nov 20, 2009.

Thread Status:
Not open for further replies.
  1. Arin

    Arin Registered Member

    Filename: cran.cvd

    Size: 873276 bytes

    MD5: 5a39d352d44ec31e0145976ef8370be6

    I checked it using Virustotal but didn't post the analysis link as I think it violates a forum rule.
     
  2. subhrobhandari

    subhrobhandari Registered Member

    A quick search in google for those names suggested for backdoors. Whats going on?
     
  3. Macstorm

    Macstorm Registered Member

    LOL Hopefully it's not spreading to their tech partners that are using the BD engine :D
     
  4. Arin

    Arin Registered Member

    Quick googling reveals that the same filename is used by a couple of fake AVs. Perhaps the contents are slightly similar too. I can't imagine premier AVs flagging files just because of the filenames.
     
  5. Fajo

    Fajo Registered Member

    Stranger things have happened. :D
     
  6. lodore

    lodore Registered Member

    Well f-secure client security 9 RC which uses the bitdefender engine doesnt detect that file as infected. so obviously hasnt spread to oem's using the BD engine.
     
  7. dawgg

    dawgg Registered Member

    Interesting detection names.
    Looks like less AVs are detecting it copared to before, so detections (FPs) are maybe getting fixed slowly.
     
  8. Fajo

    Fajo Registered Member

    It's a BD component, Would make no sense for it to detect it self. What really matters is if alot of Other AV's are flagging it as malware.
     
  9. Arin

    Arin Registered Member

    The names which came up for me belong to age old file infectors like monxla and simple overwriting viruses like trivial.
     
  10. The Hammer

    The Hammer Registered Member

    Flagged by what exactly? I presume one of your other security programs flagged it and then you checked it on VirusTotal.
     
  11. Arin

    Arin Registered Member

    Panda detects it as "Univ".
     
Thread Status:
Not open for further replies.
  1. This site uses cookies to help personalise content, tailor your experience and to keep you logged in if you register.
    By continuing to use this site, you are consenting to our use of cookies.
    Dismiss Notice