<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: False Positive Submission for Removal in VirusTotal</title>
    <link>https://live.paloaltonetworks.com/t5/virustotal/false-positive-submission-for-removal/m-p/198631#M354</link>
    <description>&lt;P&gt;We have submitted this file for analysis and a possible verdict change.&amp;nbsp; Please allow our analysts 24 to 48 hours to process this request.&amp;nbsp; Also, both files posted in your threads (&lt;SPAN&gt;ContentExplorer Applet &amp;amp;&amp;nbsp;Desktop ContentExplorer&amp;nbsp;Web Start application)&lt;/SPAN&gt; appear to have the same hash.&amp;nbsp; Please provide clarification if necessary.&lt;/P&gt;</description>
    <pubDate>Fri, 02 Feb 2018 22:17:40 GMT</pubDate>
    <dc:creator>bvandivier</dc:creator>
    <dc:date>2018-02-02T22:17:40Z</dc:date>
    <item>
      <title>False Positive Submission for Removal</title>
      <link>https://live.paloaltonetworks.com/t5/virustotal/false-positive-submission-for-removal/m-p/198624#M353</link>
      <description>&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;File Hash: MD5&amp;nbsp;&lt;SPAN class="s1"&gt;157ceac1f3eb730d3c844c332ad67a60&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;Link to Virustotal report for the file:&amp;nbsp;&lt;A href="https://www.virustotal.com/#/file/07ab4c147fa9534b2384a47e9b86761018da634d1da1211781becaad85bf7735/detection" target="_blank"&gt;https://www.virustotal.com/#/file/07ab4c147fa9534b2384a47e9b86761018da634d1da1211781becaad85bf7735/detection&lt;/A&gt;&lt;/P&gt;&lt;P&gt;Current VirustTotal Verdict:&amp;nbsp;DesktopContentExplorer.jar verdict: Clean (0/42)&lt;/P&gt;&lt;P&gt;Description: This is our Desktop ContentExplorer&amp;nbsp;Web Start application&amp;nbsp;for editing content with Percussion Software's Rhythmyx CMS. It is currently be flagged as&amp;nbsp;&amp;nbsp;“Win32.WGeneric.pmlqw” virus:&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Here are it's hashes.&amp;nbsp;&lt;/P&gt;&lt;P&gt;MD5 42863d38e8e1333d279284e87076a6ca&lt;/P&gt;&lt;P&gt;SHA1 ec94c9a050a585ff07044a81465f10ec4aa0abab&lt;/P&gt;&lt;P&gt;SHA256 658c275cb64affafd7fc16e54b000dc1204514f600ba3104eced6ebd577b2dc4&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;This is blocking users from editing / maintaining production content.&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;The file can be &lt;A href="http://cdn.percussion.com/downloads/support/virustotal/DesktopContentExplorer__V732_201611P01_732_20171201_98.jar" target="_self"&gt;downloaded here&lt;/A&gt;.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Fri, 02 Feb 2018 21:39:15 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/virustotal/false-positive-submission-for-removal/m-p/198624#M353</guid>
      <dc:creator>natechadwick</dc:creator>
      <dc:date>2018-02-02T21:39:15Z</dc:date>
    </item>
    <item>
      <title>Re: False Positive Submission for Removal</title>
      <link>https://live.paloaltonetworks.com/t5/virustotal/false-positive-submission-for-removal/m-p/198631#M354</link>
      <description>&lt;P&gt;We have submitted this file for analysis and a possible verdict change.&amp;nbsp; Please allow our analysts 24 to 48 hours to process this request.&amp;nbsp; Also, both files posted in your threads (&lt;SPAN&gt;ContentExplorer Applet &amp;amp;&amp;nbsp;Desktop ContentExplorer&amp;nbsp;Web Start application)&lt;/SPAN&gt; appear to have the same hash.&amp;nbsp; Please provide clarification if necessary.&lt;/P&gt;</description>
      <pubDate>Fri, 02 Feb 2018 22:17:40 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/virustotal/false-positive-submission-for-removal/m-p/198631#M354</guid>
      <dc:creator>bvandivier</dc:creator>
      <dc:date>2018-02-02T22:17:40Z</dc:date>
    </item>
    <item>
      <title>Re: False Positive Submission for Removal</title>
      <link>https://live.paloaltonetworks.com/t5/virustotal/false-positive-submission-for-removal/m-p/198633#M356</link>
      <description>&lt;P&gt;Thanks!&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;The MD5 hashes's do seem different for the files?&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Do you mean the virus hashes that they are being flagged with are the same?&amp;nbsp; Both files are being flagged&amp;nbsp;as being&amp;nbsp;same virus and are being blocked on the network.&lt;/P&gt;</description>
      <pubDate>Fri, 02 Feb 2018 22:24:07 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/virustotal/false-positive-submission-for-removal/m-p/198633#M356</guid>
      <dc:creator>natechadwick</dc:creator>
      <dc:date>2018-02-02T22:24:07Z</dc:date>
    </item>
    <item>
      <title>Re: False Positive Submission for Removal</title>
      <link>https://live.paloaltonetworks.com/t5/virustotal/false-positive-submission-for-removal/m-p/198634#M357</link>
      <description>&lt;P&gt;The MD5s are different and both come up clean.&amp;nbsp; The second SHA256 hash you have referenced in both of your posts are the same.&lt;/P&gt;</description>
      <pubDate>Fri, 02 Feb 2018 22:31:13 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/virustotal/false-positive-submission-for-removal/m-p/198634#M357</guid>
      <dc:creator>bvandivier</dc:creator>
      <dc:date>2018-02-02T22:31:13Z</dc:date>
    </item>
    <item>
      <title>Re: False Positive Submission for Removal</title>
      <link>https://live.paloaltonetworks.com/t5/virustotal/false-positive-submission-for-removal/m-p/198641#M358</link>
      <description>&lt;P&gt;The second set of hashes were supplied to me&amp;nbsp;by our mutual customer. As I understand it, they are the hashes that your system is reporting for the specific virus that our tools are being flagged with.&amp;nbsp; &amp;nbsp;We can&amp;nbsp;remove them from the posts if it will cause confusion - we just weren't sure if it would be helpful for you to have.&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;-n&lt;/P&gt;</description>
      <pubDate>Fri, 02 Feb 2018 22:35:18 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/virustotal/false-positive-submission-for-removal/m-p/198641#M358</guid>
      <dc:creator>natechadwick</dc:creator>
      <dc:date>2018-02-02T22:35:18Z</dc:date>
    </item>
  </channel>
</rss>

