<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Virustotal false positive on AltDrag 1.43 software in VirusTotal</title>
    <link>https://live.paloaltonetworks.com/t5/virustotal/virustotal-false-positive-on-altdrag-1-43-software/m-p/406611#M1865</link>
    <description>&lt;P&gt;Hello,&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;I have submitted this sample for re-analysis.&lt;/P&gt;&lt;P&gt;Best&lt;/P&gt;&lt;P&gt;Himai&lt;/P&gt;</description>
    <pubDate>Thu, 13 May 2021 18:56:11 GMT</pubDate>
    <dc:creator>hisingh</dc:creator>
    <dc:date>2021-05-13T18:56:11Z</dc:date>
    <item>
      <title>Virustotal false positive on AltDrag 1.43 software</title>
      <link>https://live.paloaltonetworks.com/t5/virustotal/virustotal-false-positive-on-altdrag-1-43-software/m-p/405949#M1861</link>
      <description>&lt;P&gt;I am a developer of the AltDrag software that allows you to move/resize windows with the Alt+Click combo like under Linux. Main page here:&lt;/P&gt;&lt;P&gt;&lt;A href="https://github.com/RamonUnch/AltDrag" target="_blank" rel="noopener"&gt;https://github.com/RamonUnch/AltDrag&lt;/A&gt;&lt;/P&gt;&lt;P&gt;Latest release 1.43 can be found here: &lt;A href="https://github.com/RamonUnch/AltDrag/releases/download/1.43/AltDrag1.43-inst.exe" target="_blank" rel="noopener"&gt;https://github.com/RamonUnch/AltDrag/releases/download/1.43/AltDrag1.43-inst.exe&lt;/A&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;It seems that&lt;SPAN class="engine-name"&gt; "Palo Alto Networks" antivirus improperly flags the file with the "&lt;STRONG&gt;&lt;SPAN class="individual-detection"&gt;Generic.ml&lt;/SPAN&gt;&lt;/STRONG&gt;" flag.&lt;BR /&gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;File Hash: BA170C1B2BE713FAE625D5B69F1A2248B8E209EDE260D2BB77DCA1F32530CDCE&lt;/P&gt;&lt;P&gt;Link to Virustotal report for the file: &lt;A href="https://www.virustotal.com/gui/file/ba170c1b2be713fae625d5b69f1a2248b8e209ede260d2bb77dca1f32530cdce/detection" target="_blank" rel="noopener"&gt;https://www.virustotal.com/gui/file/ba170c1b2be713fae625d5b69f1a2248b8e209ede260d2bb77dca1f32530cdce/detection&lt;/A&gt;&lt;/P&gt;&lt;P&gt;Current VirustTotal Verdict: &lt;SPAN class="engine-name"&gt;&lt;STRONG&gt;&lt;SPAN class="individual-detection"&gt;Generic.ml&lt;/SPAN&gt;&lt;/STRONG&gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Description: I am 100% sure it is a false positive as I am the main developer of the program and I make the builds myself.&lt;/P&gt;&lt;P&gt;AltDrag does hook the mouse and keyboard to enhance the window management. This is probably why it may look suspicious to some anti-viruses.&lt;/P&gt;&lt;P&gt;It is a problem for some of my users and I would be grateful if you could investigate this and suppress this false alert.&lt;/P&gt;&lt;P&gt;Thanks in advance&lt;/P&gt;</description>
      <pubDate>Tue, 11 May 2021 08:49:20 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/virustotal/virustotal-false-positive-on-altdrag-1-43-software/m-p/405949#M1861</guid>
      <dc:creator>RamonUnch</dc:creator>
      <dc:date>2021-05-11T08:49:20Z</dc:date>
    </item>
    <item>
      <title>Re: Virustotal false positive on AltDrag 1.43 software</title>
      <link>https://live.paloaltonetworks.com/t5/virustotal/virustotal-false-positive-on-altdrag-1-43-software/m-p/406611#M1865</link>
      <description>&lt;P&gt;Hello,&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;I have submitted this sample for re-analysis.&lt;/P&gt;&lt;P&gt;Best&lt;/P&gt;&lt;P&gt;Himai&lt;/P&gt;</description>
      <pubDate>Thu, 13 May 2021 18:56:11 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/virustotal/virustotal-false-positive-on-altdrag-1-43-software/m-p/406611#M1865</guid>
      <dc:creator>hisingh</dc:creator>
      <dc:date>2021-05-13T18:56:11Z</dc:date>
    </item>
    <item>
      <title>Re: Virustotal false positive on AltDrag 1.43 software</title>
      <link>https://live.paloaltonetworks.com/t5/virustotal/virustotal-false-positive-on-altdrag-1-43-software/m-p/407404#M1898</link>
      <description>&lt;P&gt;&lt;SPAN&gt;This sample is benign now&lt;/SPAN&gt;&lt;/P&gt;</description>
      <pubDate>Mon, 17 May 2021 22:52:32 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/virustotal/virustotal-false-positive-on-altdrag-1-43-software/m-p/407404#M1898</guid>
      <dc:creator>DaBone</dc:creator>
      <dc:date>2021-05-17T22:52:32Z</dc:date>
    </item>
  </channel>
</rss>

