Register a free account to unlock additional features at BleepingComputer.com
Welcome to BleepingComputer, a free community where people like yourself come together to discuss and learn how to use their computers. Using the site is easy and fun. As a guest, you can browse and view the various discussions in the forums, but can not create a new topic or reply to an existing one unless you are logged in. Other benefits of registering an account are subscribing to topics and forums, creating a blog, and having no ads shown anywhere on the site.


Click here to Register a free account now! or read our Welcome Guide to learn how to use this site.

Generic User Avatar

Is this a false positive from virus total?


  • Please log in to reply
3 replies to this topic

#1 reggiereg

reggiereg

  •  Avatar image
  • Members
  • 328 posts
  • OFFLINE
  •  
  • Gender:Male
  • Local time:04:02 AM

Posted Yesterday, 11:59 AM

Hi all,

 

I'm trying to install this piece of open source software from https://www.digikam.org/download/ file = "digiKam-8.3.0-Win64.exe" so checked it with virustotal before installing it, but it came back with W32.AIDetectMalware from 1 of 56 venders (Bkav Pro).

 

https://www.virustotal.com/gui/file/9c8e5dbbbf0eb4d275ff945dbb98006579c80ce2e765f7d349a02b30cac2f364/detection

 

Is it a false positive and safe to install?

 



BC AdBot (Login to Remove)

 


#2 quietman7

quietman7

    Bleepin' Gumshoe


  •  Avatar image
  • Global Moderator
  • 62,051 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:Virginia, USA
  • Local time:11:02 PM

Posted Yesterday, 12:06 PM

The consensus among most experts is that if 90% of the results of an online file analysis (VirusTotal, Jotti's virusscan, VirSCAN, Hybrid-Analysis, etc) indicate a file submission is clean, then you can disregard the other detection(s) as a false positive...especially if the detection is more generic, suspicious, potentially unwanted programs (PUPs) and/or was made by any of the lesser known security vendors. This is typically due to the security program's heuristic analysis engine which provides the ability to detect possible new variants of malware.
 
Submitting file samples to the anti-virus vendor which made the detection for further analysis allows the lab Techs to quickly investigate and confirm if the detection is actually malware. Some security programs have built-in options for submitting a file directly from the quarantined area to the vendor's lab for analysis. Most user guides will explain how to do that. Other anti-virus solutions automatically submit files or provide an alert to do so if you have checked the option to "Submit for analysis in the program's settings. If those options are unavailable, most anti-virus vendors have instructions for sample file submissions posted on their web sites. You should also contact and advise the program vendor that one of their files is being detected as a threat. In many cases they will work with the anti-virus labs in an attempt to resolve the detection.


.
.
Microsoft MVP Alumni 2023Windows Insider MVP 2017-2020, MVP Reconnect 2016-2023

Microsoft MVP Consumer Security 2007-2015 kO7xOZh.gif
Member of UNITE, Unified Network of Instructors and Trusted Eliminators
Retired Police Officer, Federal Agent and Coast Guard Chief

If I have been helpful & you'd like to consider a donation, click 38WxTfO.gif


#3 reggiereg

reggiereg
  • Topic Starter

  •  Avatar image
  • Members
  • 328 posts
  • OFFLINE
  •  
  • Gender:Male
  • Local time:04:02 AM

Posted Yesterday, 12:17 PM

Thanks for that extremely through explanation Gumshoe.



#4 quietman7

quietman7

    Bleepin' Gumshoe


  •  Avatar image
  • Global Moderator
  • 62,051 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:Virginia, USA
  • Local time:11:02 PM

Posted Yesterday, 12:37 PM

You're welcome and good luck.


.
.
Microsoft MVP Alumni 2023Windows Insider MVP 2017-2020, MVP Reconnect 2016-2023

Microsoft MVP Consumer Security 2007-2015 kO7xOZh.gif
Member of UNITE, Unified Network of Instructors and Trusted Eliminators
Retired Police Officer, Federal Agent and Coast Guard Chief

If I have been helpful & you'd like to consider a donation, click 38WxTfO.gif





1 user(s) are reading this topic

0 members, 1 guests, 0 anonymous users