<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: FALSE Positive in VirusTotal</title>
    <link>https://live.paloaltonetworks.com/t5/virustotal/false-positive/m-p/217597#M580</link>
    <description>&lt;P&gt;Our DLL's is signed, take a look&lt;/P&gt;</description>
    <pubDate>Tue, 12 Jun 2018 18:56:18 GMT</pubDate>
    <dc:creator>GunProtect</dc:creator>
    <dc:date>2018-06-12T18:56:18Z</dc:date>
    <item>
      <title>FALSE Positive</title>
      <link>https://live.paloaltonetworks.com/t5/virustotal/false-positive/m-p/217551#M574</link>
      <description>&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Hi&lt;BR /&gt;We are anti-cheat software developed, and our product were tagged as virus.&lt;BR /&gt;But as you can see it isn't a virus, it's a game based DLL packed with WinLicense to make it harder to get hacked by cheat developers, please we ask you to look every byte in this DLL because everytime we update our product and when we scan the file it's been detected again, please trust our files. We are here to provide you all the details you want.&lt;BR /&gt;Please take a look on our case.&lt;/P&gt;&lt;P&gt;Download link:&amp;nbsp;&lt;A href="https://www.sendspace.com/file/mg9wyd" target="_blank"&gt;https://www.sendspace.com/file/mg9wyd&lt;/A&gt;&lt;/P&gt;&lt;P&gt;Password: gitzac&lt;BR /&gt;Thanks in advance&lt;BR /&gt;Rizzo&lt;BR /&gt;GunProtect Team&lt;BR /&gt;&lt;A href="http://www.gunprotect.com.br" target="_blank"&gt;www.gunprotect.com.br&lt;/A&gt;&lt;/P&gt;</description>
      <pubDate>Tue, 12 Jun 2018 15:30:42 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/virustotal/false-positive/m-p/217551#M574</guid>
      <dc:creator>GunProtect</dc:creator>
      <dc:date>2018-06-12T15:30:42Z</dc:date>
    </item>
    <item>
      <title>Re: FALSE Positive</title>
      <link>https://live.paloaltonetworks.com/t5/virustotal/false-positive/m-p/217574#M575</link>
      <description>&lt;P&gt;Hello,&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Can you please supply the SHA256 of the file in question. We do not download from links, this ensures that we submit the correct file for review.&lt;/P&gt;</description>
      <pubDate>Tue, 12 Jun 2018 16:58:26 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/virustotal/false-positive/m-p/217574#M575</guid>
      <dc:creator>dparris</dc:creator>
      <dc:date>2018-06-12T16:58:26Z</dc:date>
    </item>
    <item>
      <title>Re: FALSE Positive</title>
      <link>https://live.paloaltonetworks.com/t5/virustotal/false-positive/m-p/217583#M576</link>
      <description>&lt;P&gt;&lt;SPAN&gt;9ba7ffb7c62ce4062cfc60a4564e19004c2c6e7512fc98d24a1c6ec419be6d0a&lt;/SPAN&gt;&lt;/P&gt;</description>
      <pubDate>Tue, 12 Jun 2018 17:48:41 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/virustotal/false-positive/m-p/217583#M576</guid>
      <dc:creator>GunProtect</dc:creator>
      <dc:date>2018-06-12T17:48:41Z</dc:date>
    </item>
    <item>
      <title>Re: FALSE Positive</title>
      <link>https://live.paloaltonetworks.com/t5/virustotal/false-positive/m-p/217584#M577</link>
      <description>&lt;P&gt;I have requested a review of the file that you submitted.&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Tue, 12 Jun 2018 17:54:56 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/virustotal/false-positive/m-p/217584#M577</guid>
      <dc:creator>dparris</dc:creator>
      <dc:date>2018-06-12T17:54:56Z</dc:date>
    </item>
    <item>
      <title>Re: FALSE Positive</title>
      <link>https://live.paloaltonetworks.com/t5/virustotal/false-positive/m-p/217585#M578</link>
      <description>&lt;P&gt;Ok and we are here to provide everything you want to fix this FALSE positive forever.&lt;/P&gt;</description>
      <pubDate>Tue, 12 Jun 2018 17:57:55 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/virustotal/false-positive/m-p/217585#M578</guid>
      <dc:creator>GunProtect</dc:creator>
      <dc:date>2018-06-12T17:57:55Z</dc:date>
    </item>
    <item>
      <title>Re: FALSE Positive</title>
      <link>https://live.paloaltonetworks.com/t5/virustotal/false-positive/m-p/217586#M579</link>
      <description>&lt;P&gt;Look into DLL signage. If you get your DLL's signed we can work with you to whitelist the signer.&lt;/P&gt;</description>
      <pubDate>Tue, 12 Jun 2018 18:09:30 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/virustotal/false-positive/m-p/217586#M579</guid>
      <dc:creator>mivaldi</dc:creator>
      <dc:date>2018-06-12T18:09:30Z</dc:date>
    </item>
    <item>
      <title>Re: FALSE Positive</title>
      <link>https://live.paloaltonetworks.com/t5/virustotal/false-positive/m-p/217597#M580</link>
      <description>&lt;P&gt;Our DLL's is signed, take a look&lt;/P&gt;</description>
      <pubDate>Tue, 12 Jun 2018 18:56:18 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/virustotal/false-positive/m-p/217597#M580</guid>
      <dc:creator>GunProtect</dc:creator>
      <dc:date>2018-06-12T18:56:18Z</dc:date>
    </item>
    <item>
      <title>Re: FALSE Positive</title>
      <link>https://live.paloaltonetworks.com/t5/virustotal/false-positive/m-p/217600#M581</link>
      <description>&lt;P&gt;Already did.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="Screen Shot 2018-06-12 at 4.02.42 PM.png" style="width: 800px;"&gt;&lt;img src="https://live.paloaltonetworks.com/t5/image/serverpage/image-id/15467i0D2E9CCC7909034D/image-size/large/is-moderation-mode/true?v=v2&amp;amp;px=999" role="button" title="Screen Shot 2018-06-12 at 4.02.42 PM.png" alt="Screen Shot 2018-06-12 at 4.02.42 PM.png" /&gt;&lt;/span&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="Screen Shot 2018-06-12 at 4.03.21 PM.png" style="width: 800px;"&gt;&lt;img src="https://live.paloaltonetworks.com/t5/image/serverpage/image-id/15468iEC48053BC2308A1B/image-size/large/is-moderation-mode/true?v=v2&amp;amp;px=999" role="button" title="Screen Shot 2018-06-12 at 4.03.21 PM.png" alt="Screen Shot 2018-06-12 at 4.03.21 PM.png" /&gt;&lt;/span&gt;&lt;/P&gt;</description>
      <pubDate>Tue, 12 Jun 2018 19:04:29 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/virustotal/false-positive/m-p/217600#M581</guid>
      <dc:creator>mivaldi</dc:creator>
      <dc:date>2018-06-12T19:04:29Z</dc:date>
    </item>
    <item>
      <title>Re: FALSE Positive</title>
      <link>https://live.paloaltonetworks.com/t5/virustotal/false-positive/m-p/217602#M582</link>
      <description>&lt;P&gt;Sorry, this version went online unsigned.&lt;/P&gt;&lt;P&gt;But this one is signed:&lt;BR /&gt;&lt;A href="https://www.virustotal.com/#/file/0f8b93833f4c860d1b9817d3ef2cbaf8c3f6d488786cbefc9f8fb2a4157eb9f5/detection" target="_blank"&gt;https://www.virustotal.com/#/file/0f8b93833f4c860d1b9817d3ef2cbaf8c3f6d488786cbefc9f8fb2a4157eb9f5/detection&lt;/A&gt;&lt;/P&gt;</description>
      <pubDate>Tue, 12 Jun 2018 19:43:59 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/virustotal/false-positive/m-p/217602#M582</guid>
      <dc:creator>GunProtect</dc:creator>
      <dc:date>2018-06-12T19:43:59Z</dc:date>
    </item>
    <item>
      <title>Re: FALSE Positive</title>
      <link>https://live.paloaltonetworks.com/t5/virustotal/false-positive/m-p/217615#M583</link>
      <description>&lt;P&gt;&lt;SPAN&gt;You requested the verdict be changed to &lt;STRONG&gt;&lt;SPAN&gt;benign&lt;/SPAN&gt;&lt;/STRONG&gt;. This request has been completed successfully.&lt;/SPAN&gt;&lt;/P&gt;</description>
      <pubDate>Tue, 12 Jun 2018 20:56:31 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/virustotal/false-positive/m-p/217615#M583</guid>
      <dc:creator>dparris</dc:creator>
      <dc:date>2018-06-12T20:56:31Z</dc:date>
    </item>
    <item>
      <title>Re: FALSE Positive</title>
      <link>https://live.paloaltonetworks.com/t5/virustotal/false-positive/m-p/217617#M584</link>
      <description>&lt;P&gt;&lt;SPAN&gt;0f8b93833f4c860d1b9817d3ef2cbaf8c3f6d488786cbefc9f8fb2a4157eb9f5 is showing clean for Palo Alto Networks.&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;That doesn't give me an indication that your signer *is not* in the trusted list already.&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;You can request the signer to be added if we come across a signed FP in the future.&lt;/P&gt;</description>
      <pubDate>Tue, 12 Jun 2018 21:16:36 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/virustotal/false-positive/m-p/217617#M584</guid>
      <dc:creator>mivaldi</dc:creator>
      <dc:date>2018-06-12T21:16:36Z</dc:date>
    </item>
  </channel>
</rss>

