<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: False Positive Submission (generic.ml) in VirusTotal</title>
    <link>https://live.paloaltonetworks.com/t5/virustotal/false-positive-submission-generic-ml/m-p/209014#M427</link>
    <description>&lt;P&gt;This sample was manually evaluated and determined to be Greyware and the verdict has been changed.&amp;nbsp; It no longer shows as malware on Virus Total.&amp;nbsp; If you wonder what our classification for Greyware is see the below link and description.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;A href="https://www.paloaltonetworks.com/documentation/translated/70/newfeaturesguide/wildfire-features/wildfire-grayware-verdict" target="_blank"&gt;https://www.paloaltonetworks.com/documentation/translated/70/newfeaturesguide/wildfire-features/wildfire-grayware-verdict&lt;/A&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;The WildFire grayware verdict classifies files that behave similarly to malware, but are not malicious in nature or intent. A grayware verdict might be assigned to files that do not pose a direct security threat, but display otherwise obtrusive behavior (for example, installing unwanted software, changing various system settings, or reducing system performance). Examples of grayware software can typically include adware, spyware, and Browser Helper Objects (BHOs). The grayware verdict allows you to quickly distinguish malicious files on the network from grayware, and to prioritize accordingly.&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;Antivirus signatures are not generated for grayware and security policies cannot be enforced based on the grayware verdict. However, logs and reports can continue to alert to endpoints downloading grayware, enabling you to take any necessary action.&lt;/SPAN&gt;&lt;/P&gt;</description>
    <pubDate>Fri, 06 Apr 2018 10:47:02 GMT</pubDate>
    <dc:creator>tsullivan7</dc:creator>
    <dc:date>2018-04-06T10:47:02Z</dc:date>
    <item>
      <title>False Positive Submission (generic.ml)</title>
      <link>https://live.paloaltonetworks.com/t5/virustotal/false-positive-submission-generic-ml/m-p/208736#M419</link>
      <description>&lt;P class="lia-message-dates lia-message-post-date lia-component-post-date-last-edited"&gt;&amp;nbsp;&lt;/P&gt;&lt;P class="lia-message-dates lia-message-post-date lia-component-post-date-last-edited"&gt;&lt;SPAN class="DateTime lia-message-posted-on lia-component-common-widget-date"&gt;&lt;SPAN class="local-friendly-date"&gt;Kindly check IE New Tab Installer from SpringTech&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="lia-message-dates lia-message-post-date lia-component-post-date-last-edited"&gt;&amp;nbsp;&lt;/P&gt;&lt;P class="lia-message-dates lia-message-post-date lia-component-post-date-last-edited"&gt;&lt;SPAN class="DateTime lia-message-posted-on lia-component-common-widget-date"&gt;&lt;SPAN class="local-friendly-date"&gt;VirusTotal links:&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="lia-message-dates lia-message-post-date lia-component-post-date-last-edited"&gt;&lt;SPAN class="DateTime lia-message-posted-on lia-component-common-widget-date"&gt;&lt;SPAN class="local-friendly-date"&gt;&lt;A href="https://www.virustotal.com/#/file/a02a23cb14cbec75700a9c4af1c497a25ddb9b52fd0e0cfe5f91e0be7f30a232/detection&amp;nbsp;" target="_blank"&gt;https://www.virustotal.com/#/file/a02a23cb14cbec75700a9c4af1c497a25ddb9b52fd0e0cfe5f91e0be7f30a232/detection&amp;nbsp;&lt;/A&gt;&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="lia-message-dates lia-message-post-date lia-component-post-date-last-edited"&gt;&lt;SPAN class="DateTime lia-message-posted-on lia-component-common-widget-date"&gt;&lt;SPAN class="local-friendly-date"&gt;&lt;A href="https://www.virustotal.com/#/file/604ee5d72f162ba2ab80a2b236dfdf601d0ef6b0a3ffd733bc47255992993535/detection" target="_blank"&gt;https://www.virustotal.com/#/file/604ee5d72f162ba2ab80a2b236dfdf601d0ef6b0a3ffd733bc47255992993535/detection&lt;/A&gt;&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="lia-message-dates lia-message-post-date lia-component-post-date-last-edited"&gt;&amp;nbsp;&lt;/P&gt;&lt;DIV class="lia-message-body"&gt;&lt;DIV class="lia-message-body-content"&gt;&lt;DIV class="lia-message-body"&gt;&lt;DIV class="lia-message-body-content"&gt;&lt;P&gt;&lt;SPAN class="individual_detection style-scope vt-detections"&gt;Current VT Verdict: generic.ml&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;Thank you.&lt;/DIV&gt;&lt;/DIV&gt;&lt;/DIV&gt;&lt;/DIV&gt;</description>
      <pubDate>Wed, 04 Apr 2018 08:21:10 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/virustotal/false-positive-submission-generic-ml/m-p/208736#M419</guid>
      <dc:creator>kns123</dc:creator>
      <dc:date>2018-04-04T08:21:10Z</dc:date>
    </item>
    <item>
      <title>Re: False Positive Submission (generic.ml)</title>
      <link>https://live.paloaltonetworks.com/t5/virustotal/false-positive-submission-generic-ml/m-p/208791#M420</link>
      <description>&lt;P&gt;This will be processed for a manual review if it does appear to be a false positive a verdict change will be made.&lt;/P&gt;</description>
      <pubDate>Wed, 04 Apr 2018 17:43:48 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/virustotal/false-positive-submission-generic-ml/m-p/208791#M420</guid>
      <dc:creator>tsullivan7</dc:creator>
      <dc:date>2018-04-04T17:43:48Z</dc:date>
    </item>
    <item>
      <title>Re: False Positive Submission (generic.ml)</title>
      <link>https://live.paloaltonetworks.com/t5/virustotal/false-positive-submission-generic-ml/m-p/208793#M421</link>
      <description>&lt;P&gt;This file was processed for a manual evaluation:&lt;/P&gt;&lt;P&gt;&lt;A href="https://www.virustotal.com/#/file/604ee5d72f162ba2ab80a2b236dfdf601d0ef6b0a3ffd733bc47255992993535/detection" target="_blank"&gt;https://www.virustotal.com/#/file/604ee5d72f162ba2ab80a2b236dfdf601d0ef6b0a3ffd733bc47255992993535/detection&lt;/A&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;but this one was not, as we don't have it labled as malicious:&lt;/P&gt;&lt;P&gt;&lt;A href="https://www.virustotal.com/#/file/a02a23cb14cbec75700a9c4af1c497a25ddb9b52fd0e0cfe5f91e0be7f30a232/detection" target="_blank"&gt;https://www.virustotal.com/#/file/a02a23cb14cbec75700a9c4af1c497a25ddb9b52fd0e0cfe5f91e0be7f30a232/detection&lt;/A&gt;&lt;/P&gt;</description>
      <pubDate>Wed, 04 Apr 2018 17:53:44 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/virustotal/false-positive-submission-generic-ml/m-p/208793#M421</guid>
      <dc:creator>tsullivan7</dc:creator>
      <dc:date>2018-04-04T17:53:44Z</dc:date>
    </item>
    <item>
      <title>Re: False Positive Submission (generic.ml)</title>
      <link>https://live.paloaltonetworks.com/t5/virustotal/false-positive-submission-generic-ml/m-p/209014#M427</link>
      <description>&lt;P&gt;This sample was manually evaluated and determined to be Greyware and the verdict has been changed.&amp;nbsp; It no longer shows as malware on Virus Total.&amp;nbsp; If you wonder what our classification for Greyware is see the below link and description.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;A href="https://www.paloaltonetworks.com/documentation/translated/70/newfeaturesguide/wildfire-features/wildfire-grayware-verdict" target="_blank"&gt;https://www.paloaltonetworks.com/documentation/translated/70/newfeaturesguide/wildfire-features/wildfire-grayware-verdict&lt;/A&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;The WildFire grayware verdict classifies files that behave similarly to malware, but are not malicious in nature or intent. A grayware verdict might be assigned to files that do not pose a direct security threat, but display otherwise obtrusive behavior (for example, installing unwanted software, changing various system settings, or reducing system performance). Examples of grayware software can typically include adware, spyware, and Browser Helper Objects (BHOs). The grayware verdict allows you to quickly distinguish malicious files on the network from grayware, and to prioritize accordingly.&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;Antivirus signatures are not generated for grayware and security policies cannot be enforced based on the grayware verdict. However, logs and reports can continue to alert to endpoints downloading grayware, enabling you to take any necessary action.&lt;/SPAN&gt;&lt;/P&gt;</description>
      <pubDate>Fri, 06 Apr 2018 10:47:02 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/virustotal/false-positive-submission-generic-ml/m-p/209014#M427</guid>
      <dc:creator>tsullivan7</dc:creator>
      <dc:date>2018-04-06T10:47:02Z</dc:date>
    </item>
    <item>
      <title>Re: False Positive Submission (generic.ml)</title>
      <link>https://live.paloaltonetworks.com/t5/virustotal/false-positive-submission-generic-ml/m-p/209104#M430</link>
      <description>&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Noted on this, thank you!&lt;/P&gt;</description>
      <pubDate>Fri, 06 Apr 2018 23:16:18 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/virustotal/false-positive-submission-generic-ml/m-p/209104#M430</guid>
      <dc:creator>kns123</dc:creator>
      <dc:date>2018-04-06T23:16:18Z</dc:date>
    </item>
  </channel>
</rss>

