<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: MTGAInstaller.exe False Positive (generic.ml) in VirusTotal</title>
    <link>https://live.paloaltonetworks.com/t5/virustotal/mtgainstaller-exe-false-positive-generic-ml/m-p/209307#M432</link>
    <description>&lt;P&gt;Thank you. I found there was a request already submitted by a Palo Alto Networks customer on this sample.&lt;/P&gt;&lt;P&gt;The sample will be analyzed for verdict reconsideration shortly.&lt;/P&gt;</description>
    <pubDate>Mon, 09 Apr 2018 19:57:07 GMT</pubDate>
    <dc:creator>mivaldi</dc:creator>
    <dc:date>2018-04-09T19:57:07Z</dc:date>
    <item>
      <title>MTGAInstaller.exe False Positive (generic.ml)</title>
      <link>https://live.paloaltonetworks.com/t5/virustotal/mtgainstaller-exe-false-positive-generic-ml/m-p/209280#M431</link>
      <description>&lt;P&gt;We have users asking about this file being blocked, so I'm looking into it for them. This looked like it was flagged as a false positive back in January in a similar way:&lt;/P&gt;&lt;P&gt;&lt;A href="https://live.paloaltonetworks.com/t5/VirusTotal/MTGAInstaller-exe/m-p/196540#M334" target="_blank"&gt;https://live.paloaltonetworks.com/t5/VirusTotal/MTGAInstaller-exe/m-p/196540#M334&lt;/A&gt;&lt;/P&gt;&lt;P&gt;So I wanted to do my due diligence and try to verify that this isn't another false positive. Can someone take a look, perhaps?&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;File Hash: 28a290fd512631abf5132a099d9153498a26bda2f9e92d72f63e69d3725b793d&lt;/P&gt;&lt;P&gt;Link to Virustotal report for the file: &lt;A href="https://www.virustotal.com/en/file/28a290fd512631abf5132a099d9153498a26bda2f9e92d72f63e69d3725b793d/analysis/" target="_blank"&gt;https://www.virustotal.com/en/file/28a290fd512631abf5132a099d9153498a26bda2f9e92d72f63e69d3725b793d/analysis/&lt;/A&gt;&lt;/P&gt;&lt;P&gt;Current VirustTotal Verdict: malware (generic.ml)&lt;/P&gt;&lt;P&gt;Description: Detection ratio 4/66&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Thanks!&lt;/P&gt;</description>
      <pubDate>Mon, 09 Apr 2018 17:53:02 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/virustotal/mtgainstaller-exe-false-positive-generic-ml/m-p/209280#M431</guid>
      <dc:creator>onedrum</dc:creator>
      <dc:date>2018-04-09T17:53:02Z</dc:date>
    </item>
    <item>
      <title>Re: MTGAInstaller.exe False Positive (generic.ml)</title>
      <link>https://live.paloaltonetworks.com/t5/virustotal/mtgainstaller-exe-false-positive-generic-ml/m-p/209307#M432</link>
      <description>&lt;P&gt;Thank you. I found there was a request already submitted by a Palo Alto Networks customer on this sample.&lt;/P&gt;&lt;P&gt;The sample will be analyzed for verdict reconsideration shortly.&lt;/P&gt;</description>
      <pubDate>Mon, 09 Apr 2018 19:57:07 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/virustotal/mtgainstaller-exe-false-positive-generic-ml/m-p/209307#M432</guid>
      <dc:creator>mivaldi</dc:creator>
      <dc:date>2018-04-09T19:57:07Z</dc:date>
    </item>
    <item>
      <title>Re: MTGAInstaller.exe False Positive (generic.ml)</title>
      <link>https://live.paloaltonetworks.com/t5/virustotal/mtgainstaller-exe-false-positive-generic-ml/m-p/210056#M442</link>
      <description>&lt;P&gt;Hi mivaldi,&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Has this been analyzed yet?&amp;nbsp; I assumed it may take a few days, but we're at four days so I'm thinking perhaps my expectations are off.&amp;nbsp;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Thanks!&lt;/P&gt;</description>
      <pubDate>Fri, 13 Apr 2018 16:32:40 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/virustotal/mtgainstaller-exe-false-positive-generic-ml/m-p/210056#M442</guid>
      <dc:creator>onedrum</dc:creator>
      <dc:date>2018-04-13T16:32:40Z</dc:date>
    </item>
    <item>
      <title>Re: MTGAInstaller.exe False Positive (generic.ml)</title>
      <link>https://live.paloaltonetworks.com/t5/virustotal/mtgainstaller-exe-false-positive-generic-ml/m-p/210063#M443</link>
      <description>&lt;P&gt;Yes it has and it has been found to be Benign.&lt;/P&gt;&lt;P&gt;Sorry I didn't circle back to you earlier, I was not notified when the change was made because I was not who placed the original request.&lt;/P&gt;</description>
      <pubDate>Fri, 13 Apr 2018 17:23:33 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/virustotal/mtgainstaller-exe-false-positive-generic-ml/m-p/210063#M443</guid>
      <dc:creator>mivaldi</dc:creator>
      <dc:date>2018-04-13T17:23:33Z</dc:date>
    </item>
  </channel>
</rss>

