Posts by aD

1) Message boards : Questions and problems : Eset and other anti-virus products false positive on Windows wrapper exe (Message 55997)
Posted 11 Sep 2014 by aD
Post:
You ought to report false positives and press for their resolution. The more people who complain, the more the shredder becomes overloaded. Eventually, someone has to read the reports :-)
2) Message boards : Questions and problems : Eset and other anti-virus products false positive on Windows wrapper exe (Message 55985)
Posted 11 Sep 2014 by aD
Post:
Thanks for such a quick reply. I've posted on the POGS forum so will concentrate my efforts there. Cheers.
3) Message boards : Questions and problems : Eset and other anti-virus products false positive on Windows wrapper exe (Message 55980)
Posted 11 Sep 2014 by aD
Post:
Having just switched BOINC on for the coming British winter I noticed that Eset anti-virus is incorrectly detecting the Windows wrapper exe, distributed via the project theSkyNetPOGS, as "a variant of Win32/BitCoinMiner.CC potentially unsafe application".

The exe in question is downloaded by BOINC from http://pogs.theskynet.org/pogs/download/wrapper_windows_intelx86.exe_340.gz
SHA256 of extracted exe: aa059926a41b13379342c0c7d091c9f1070cc306a0f8ec5972889ef37e33ba2c

I have reported this false positive to Eset but unfortunately got this reply:
"we do not consider this a false positive and it will not likely be reclassified, as multiple vendors are detecting this file. Please see https://www.virustotal.com/en/file/aa059926a41b13379342c0c7d091c9f1070cc306a0f8ec5972889ef37e33ba2c/analysis/1407612101/ "

The linked VirusTotal page lists 16 other anti-virus products that incorrectly detect this program as a "Hacking tool", trojan or an unsolicited BitCoin miner.

I am sure that any new users who get such a spurious warning from their anti-virus product may be put off contributing as a result.

I am an Eset reseller as part of my business, and have a channel of communication with them. If BOINC could assist in confirming that this exe is in fact innocent it would be appreciated. samples@eset.com is the email address at Eset that deal with virus signature queries.




Copyright © 2024 University of California.
Permission is granted to copy, distribute and/or modify this document under the terms of the GNU Free Documentation License, Version 1.2 or any later version published by the Free Software Foundation.