<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Flase Positive in windows antivirus product in VirusTotal</title>
    <link>https://live.paloaltonetworks.com/t5/virustotal/flase-positive-in-windows-antivirus-product/m-p/366883#M1703</link>
    <description>&lt;P&gt;ahh my bad, I thought you guys would have direct download using the link from the site.&lt;/P&gt;&lt;P&gt;Here is the sha256:&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;A&gt;447d01383e9dfc897a1dd0663a2c0c21eb3d613308ef0f3d0a6e3b89f5412ade&lt;/A&gt;&lt;/P&gt;&lt;P&gt;&lt;A&gt;c3ba8e9982dae17b41d1eb0650b3a036b91351c621e8b169b8e9083461b8d382&lt;/A&gt;&lt;/P&gt;</description>
    <pubDate>Wed, 02 Dec 2020 22:19:17 GMT</pubDate>
    <dc:creator>ericsia</dc:creator>
    <dc:date>2020-12-02T22:19:17Z</dc:date>
    <item>
      <title>Flase Positive in windows antivirus product</title>
      <link>https://live.paloaltonetworks.com/t5/virustotal/flase-positive-in-windows-antivirus-product/m-p/366861#M1701</link>
      <description>&lt;DIV&gt;removed&lt;/DIV&gt;</description>
      <pubDate>Wed, 23 Feb 2022 18:04:16 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/virustotal/flase-positive-in-windows-antivirus-product/m-p/366861#M1701</guid>
      <dc:creator>ericsia</dc:creator>
      <dc:date>2022-02-23T18:04:16Z</dc:date>
    </item>
    <item>
      <title>Re: Flase Positive in windows antivirus product</title>
      <link>https://live.paloaltonetworks.com/t5/virustotal/flase-positive-in-windows-antivirus-product/m-p/366874#M1702</link>
      <description>&lt;P&gt;Hello&amp;nbsp;,&lt;/P&gt;&lt;P&gt;&lt;SPAN class="UserName lia-user-name lia-user-rank-L0-Member lia-component-message-view-widget-author-username"&gt;&lt;SPAN class=""&gt;Can you please use the SHA256 hashes of your files?&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN class="UserName lia-user-name lia-user-rank-L0-Member lia-component-message-view-widget-author-username"&gt;&lt;SPAN class=""&gt;I see no records in Palo Alto Networks for either ,&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;DIV&gt;Medlexo32 MD5:&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;SPAN&gt;5774F7FED8E83098AA00BB2CC82F2EE1&lt;/SPAN&gt;&lt;/DIV&gt;&lt;DIV&gt;&lt;SPAN&gt;or&lt;/SPAN&gt;&lt;/DIV&gt;&lt;DIV&gt;Medlexo64 MD5:&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;SPAN&gt;E6123D707C54C23ED25DAED1F83BB26E&lt;/SPAN&gt;&lt;/DIV&gt;</description>
      <pubDate>Wed, 02 Dec 2020 21:16:07 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/virustotal/flase-positive-in-windows-antivirus-product/m-p/366874#M1702</guid>
      <dc:creator>dparris</dc:creator>
      <dc:date>2020-12-02T21:16:07Z</dc:date>
    </item>
    <item>
      <title>Re: Flase Positive in windows antivirus product</title>
      <link>https://live.paloaltonetworks.com/t5/virustotal/flase-positive-in-windows-antivirus-product/m-p/366883#M1703</link>
      <description>&lt;P&gt;ahh my bad, I thought you guys would have direct download using the link from the site.&lt;/P&gt;&lt;P&gt;Here is the sha256:&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;A&gt;447d01383e9dfc897a1dd0663a2c0c21eb3d613308ef0f3d0a6e3b89f5412ade&lt;/A&gt;&lt;/P&gt;&lt;P&gt;&lt;A&gt;c3ba8e9982dae17b41d1eb0650b3a036b91351c621e8b169b8e9083461b8d382&lt;/A&gt;&lt;/P&gt;</description>
      <pubDate>Wed, 02 Dec 2020 22:19:17 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/virustotal/flase-positive-in-windows-antivirus-product/m-p/366883#M1703</guid>
      <dc:creator>ericsia</dc:creator>
      <dc:date>2020-12-02T22:19:17Z</dc:date>
    </item>
    <item>
      <title>Re: Flase Positive in windows antivirus product</title>
      <link>https://live.paloaltonetworks.com/t5/virustotal/flase-positive-in-windows-antivirus-product/m-p/366922#M1704</link>
      <description>&lt;P&gt;For:&lt;/P&gt;&lt;P&gt;&lt;U&gt;&lt;A&gt;447d01383e9dfc897a1dd0663a2c0c21eb3d613308ef0f3d0a6e3b89f5412ade&lt;/A&gt;&lt;/U&gt;&lt;/P&gt;&lt;P&gt;I've requested further analysis over the above hash.&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;A&gt;c3ba8e9982dae17b41d1eb0650b3a036b91351c621e8b169b8e9083461b8d382&lt;/A&gt;&lt;/P&gt;&lt;P&gt;This hash is not seen as malicious by us.&amp;nbsp;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Searching here for the hash, and it comes up as nothing:&lt;BR /&gt;&lt;A href="https://threatvault.paloaltonetworks.com/" target="_blank"&gt;https://threatvault.paloaltonetworks.com/&lt;/A&gt;&lt;/P&gt;&lt;P&gt;Also, in VT we are not showing this as malicious either.&lt;/P&gt;&lt;P&gt;&lt;A href="https://www.virustotal.com/gui/file/c3ba8e9982dae17b41d1eb0650b3a036b91351c621e8b169b8e9083461b8d382/detection" target="_blank"&gt;https://www.virustotal.com/gui/file/c3ba8e9982dae17b41d1eb0650b3a036b91351c621e8b169b8e9083461b8d382/detection&lt;/A&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Wed, 02 Dec 2020 23:33:57 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/virustotal/flase-positive-in-windows-antivirus-product/m-p/366922#M1704</guid>
      <dc:creator>DaBone</dc:creator>
      <dc:date>2020-12-02T23:33:57Z</dc:date>
    </item>
    <item>
      <title>Re: Flase Positive in windows antivirus product</title>
      <link>https://live.paloaltonetworks.com/t5/virustotal/flase-positive-in-windows-antivirus-product/m-p/366937#M1706</link>
      <description>&lt;P&gt;Yes thank you for the progress and quick response,&amp;nbsp; I am aware only this is flagging&amp;nbsp;&lt;A href="https://www.virustotal.com/gui/file/447d01383e9dfc897a1dd0663a2c0c21eb3d613308ef0f3d0a6e3b89f5412ade/detection" target="_blank"&gt;https://www.virustotal.com/gui/file/447d01383e9dfc897a1dd0663a2c0c21eb3d613308ef0f3d0a6e3b89f5412ade/detection&lt;/A&gt;&lt;/P&gt;&lt;P&gt;I submitted two just wanted to make sure you guys don't flag the 32bit version in near future as well as it would trouble each other to open and resolve a ticket again.&lt;/P&gt;</description>
      <pubDate>Thu, 03 Dec 2020 00:25:17 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/virustotal/flase-positive-in-windows-antivirus-product/m-p/366937#M1706</guid>
      <dc:creator>ericsia</dc:creator>
      <dc:date>2020-12-03T00:25:17Z</dc:date>
    </item>
  </channel>
</rss>

