Jump to content
Ant

How does one keep track of false positive/FP submissions from SAS Free?

Recommended Posts

Hello.

Once in a while I submit a positive false positive/FP to SuperAntispyware/SAS. Is there a way to track my submissions without waiting for updates and rescan?

I just submitted one from extracted Wireshark v1.4.0 portable (http://media-2.cacetech.com/wireshark/win32/WiresharkPortable-1.4.0.paf.exe) through the latest SAS Free and it found a possible non-cookie infection:

SUPERAntiSpyware Scan Log

https://www.superantispyware.com

Generated 09/15/2010 at 10:05 PM

Application Version : 4.43.1000

Core Rules Database Version : 5515

Trace Rules Database Version: 3327

Scan type : Complete Scan

Total Scan Time : 00:54:51

Memory items scanned : 509

Memory threats detected : 0

Registry items scanned : 14771

Registry threats detected : 0

File items scanned : 107556

File threats detected : 5

Adware.Tracking Cookie

cdn2.themis-media.com [ C:\Users\foobar\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\88VCHVG6 ]

dlr1.wdpromedia.com [ C:\Users\foobar\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\88VCHVG6 ]

msnbcmedia.msn.com [ C:\Users\foobar\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\88VCHVG6 ]

objects.tremormedia.com [ C:\Users\foobar\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\88VCHVG6 ]

Trojan.Agent/Gen-OnlineGames

D:\WORK\TOOLS\WIRESHARKPORTABLE140\APP\WIRESHARK\PLUGINS\1.4.0\COSEVENTCOMM.DLL

I checked other sites and scanners and they said no problems:

http://virusscan.jotti.org/en/scanresult/e0cfec6b0a78a454ff08c00219fb7fc6b8f5fcb7

http://www.viruschief.com/report.html?report_id=29152251c285f5ba793febbc36b30f67f8592b91

http://www.virscan.org/report/5d5e1925f22a5d9a16fe03d9f42d9f0b.html

http://www.virustotal.com/file-scan/report.html?id=3866563cf27ebf7a4410400ea04ebbece62e67d445296fd439e2b50197fd5ecd-1284663580 (one by your program)

Thank you in advance. :)

Share this post


Link to post
Share on other sites
Guest
This topic is now closed to further replies.

×