Discussion in 'Prevx Betas' started by Triple Helix, Aug 12, 2011.
Does Submit a file work at this point?
Prompt with a valid file....and send in the background....I hope
I hope so to but want to know for sure as I did ask during the closed beta to support but lost the conversation before I got an answer!
It didnt work till now ? i must have sent 3 - 4 files by now !
These files are being sent but not processed at the moment until we finish some additional components within our support interfaces. In the meantime, you may want to send files to firstname.lastname@example.org or speak to our support team to varrange upload.
For what it's worth, any time you allow/deny/block/override a file within the UI, that information is automatically uploaded to our team so you won't need to upload it separately unless you want a human response.
I tried to send files in a Password Protected RAR file to email@example.com but it keeps getting bounced back! So I have been sending the VT results until it's fixed!
Can we get a notification from wsa when it flags a file as allow/deny/monitor ?
IF I remember correctly it accepts Zip, not RAR.
It's the other way around no WinZip but only 7zip or RAR! https://www.wilderssecurity.com/showthread.php?t=245129
I have a program that I purchased about 3 years ago which I believe has a trojan in it. My system is showing all kinds of odd behavior after installing it. I believe it is creating lots of other files with strange nonsense names. If I submit it can I get some feedback about Webroots findings?
Are you still using WSA? If so send in a scan log to firstname.lastname@example.org if not upload to VT and tell us how many AV's detect it!
idk how well ur system of it auto submitting is since ive had to back in the closed beta and now whitelist these 2 files which are part of my system builders drivers and software which i know are legitimate and clean yet still nothing been done to solve the FP. lol ive sent the files in maybe 3 times now since closed beta and i thought they were actually going thru this entire time thru the UI submission system. Thats probly something that shuldve been stated from the start so people didnt really waste their time...
The UI submission and automatic overriding is not fully implemented through to our support team yet - if you have any delay, just write into our tech support inbox to get them to fix the FPs.
And how about this issue Joe? https://www.wilderssecurity.com/showpost.php?p=1919542&postcount=6
Where is this done in the UI? Quarantine->Configure->Add File ??
It will be fastest to just send in MD5s to our customer support inbox for them to add them centrally
Yes, that's correct.
How does the staff know I'm not reporting samples which are actually benign? Wouldn't you need the samples to see if I'm actually right? If I may ask...
I process tons of malware each day, and it would be easy for me to just send the MD5s.
We look them up in our database (the MD5 is one of the hashes we use). Samples are helpful but just the MD5 still gets us the link to all of the behaviors we've seen.
Separate names with a comma.