<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: False Positive : generic.ml in VirusTotal</title>
    <link>https://live.paloaltonetworks.com/t5/virustotal/false-positive-generic-ml/m-p/245163#M848</link>
    <description>&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Hi&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Sorry for my delay in responding.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;We reviewed both of your samples and now the verdict for both have been "Clean".&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;A href="https://www.virustotal.com/#/file/04c40d3d7e736a7bed42dc5067b3e796b3fd035fcc1527b38041aaf700dede50/detection" target="_blank"&gt;https://www.virustotal.com/#/file/04c40d3d7e736a7bed42dc5067b3e796b3fd035fcc1527b38041aaf700dede50/detection&lt;/A&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;&lt;A href="https://www.virustotal.com/#/file/32d2cbedf45e7dc8fde686bbefd6a9c2f1b0ca7a8fce271e935188726bac7da8/detection" target="_blank"&gt;https://www.virustotal.com/#/file/32d2cbedf45e7dc8fde686bbefd6a9c2f1b0ca7a8fce271e935188726bac7da8/detection&lt;/A&gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;Please check the above VT links for the latest information for our analysis result.&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;Best&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;-Koji&lt;/SPAN&gt;&lt;/P&gt;</description>
    <pubDate>Tue, 08 Jan 2019 03:10:19 GMT</pubDate>
    <dc:creator>kkawachi</dc:creator>
    <dc:date>2019-01-08T03:10:19Z</dc:date>
    <item>
      <title>False Positive : generic.ml</title>
      <link>https://live.paloaltonetworks.com/t5/virustotal/false-positive-generic-ml/m-p/244854#M844</link>
      <description>&lt;P&gt;Hello&lt;BR /&gt;&lt;BR /&gt;These 2 files belong to official package 3.1.7.7 for SuperR's Kitchen - Donate (not free) version - checked &amp;amp; approved by XDA.&lt;/P&gt;&lt;P&gt;&lt;BR /&gt;- &lt;A href="https://www.virustotal.com/#/file/32d2cbedf45e7dc8fde686bbefd6a9c2f1b0ca7a8fce271e935188726bac7da8/detection" target="_self"&gt;https://www.virustotal.com/#/file/32d2cbedf45e7dc8fde686bbefd6a9c2f1b0ca7a8fce271e935188726bac7da8/detection&lt;/A&gt;&lt;/P&gt;&lt;P&gt;SHA-256File nameFile sizeLast analysis&lt;/P&gt;&lt;TABLE&gt;&lt;TBODY&gt;&lt;TR&gt;&lt;TD&gt;32d2cbedf45e7dc8fde686bbefd6a9c2f1b0ca7a8fce271e935188726bac7da8&lt;/TD&gt;&lt;/TR&gt;&lt;TR&gt;&lt;TD&gt;ramdisk.exe&lt;/TD&gt;&lt;/TR&gt;&lt;TR&gt;&lt;TD&gt;1.31 MB&lt;/TD&gt;&lt;/TR&gt;&lt;TR&gt;&lt;TD&gt;2019-01-04 02:00:09 UTC&lt;/TD&gt;&lt;/TR&gt;&lt;/TBODY&gt;&lt;/TABLE&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;- &lt;A href="https://www.virustotal.com/#/file/04c40d3d7e736a7bed42dc5067b3e796b3fd035fcc1527b38041aaf700dede50/detection" target="_self"&gt;https://www.virustotal.com/#/file/04c40d3d7e736a7bed42dc5067b3e796b3fd035fcc1527b38041aaf700dede50/detection&lt;/A&gt;&lt;/P&gt;&lt;P&gt;SHA-256File nameFile sizeLast analysis&lt;/P&gt;&lt;TABLE&gt;&lt;TBODY&gt;&lt;TR&gt;&lt;TD&gt;04c40d3d7e736a7bed42dc5067b3e796b3fd035fcc1527b38041aaf700dede50&lt;/TD&gt;&lt;/TR&gt;&lt;TR&gt;&lt;TD&gt;superr.exe&lt;/TD&gt;&lt;/TR&gt;&lt;TR&gt;&lt;TD&gt;2.39 MB&lt;/TD&gt;&lt;/TR&gt;&lt;TR&gt;&lt;TD&gt;2019-01-04 02:00:15 UTC&lt;/TD&gt;&lt;/TR&gt;&lt;/TBODY&gt;&lt;/TABLE&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;They triggered several AV engines because they use Pyinstaller module even thought there is no malicious code/activity.&lt;BR /&gt;&lt;BR /&gt;I'm helping its developer for the reassessment requests = many major AV vendor have already reclassified &amp;amp; whitelisted it.&lt;BR /&gt;&lt;BR /&gt;&lt;BR /&gt;I can't provide You obviously the full package, but I'm leaving&amp;nbsp;a temporary link to download just those 2 specific files .&lt;BR /&gt;&lt;BR /&gt;- &lt;A href="https://www.sendspace.com/file/x49xuz" target="_self"&gt;https://www.sendspace.com/file/x49xuz&lt;/A&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;STRONG&gt;ZIP Password = infected&lt;BR /&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;/STRONG&gt;Thanks in advance&lt;/P&gt;</description>
      <pubDate>Fri, 04 Jan 2019 02:19:23 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/virustotal/false-positive-generic-ml/m-p/244854#M844</guid>
      <dc:creator>RawMain</dc:creator>
      <dc:date>2019-01-04T02:19:23Z</dc:date>
    </item>
    <item>
      <title>Re: False Positive : generic.ml</title>
      <link>https://live.paloaltonetworks.com/t5/virustotal/false-positive-generic-ml/m-p/244855#M845</link>
      <description>&lt;P&gt;Hi please let us dig into the samples in question.&amp;nbsp;&lt;/P&gt;&lt;P&gt;We will keep you updated once we get an update.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Best&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;-Koji&lt;/P&gt;</description>
      <pubDate>Fri, 04 Jan 2019 02:43:47 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/virustotal/false-positive-generic-ml/m-p/244855#M845</guid>
      <dc:creator>kkawachi</dc:creator>
      <dc:date>2019-01-04T02:43:47Z</dc:date>
    </item>
    <item>
      <title>Re: False Positive : generic.ml</title>
      <link>https://live.paloaltonetworks.com/t5/virustotal/false-positive-generic-ml/m-p/245163#M848</link>
      <description>&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Hi&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Sorry for my delay in responding.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;We reviewed both of your samples and now the verdict for both have been "Clean".&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;A href="https://www.virustotal.com/#/file/04c40d3d7e736a7bed42dc5067b3e796b3fd035fcc1527b38041aaf700dede50/detection" target="_blank"&gt;https://www.virustotal.com/#/file/04c40d3d7e736a7bed42dc5067b3e796b3fd035fcc1527b38041aaf700dede50/detection&lt;/A&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;&lt;A href="https://www.virustotal.com/#/file/32d2cbedf45e7dc8fde686bbefd6a9c2f1b0ca7a8fce271e935188726bac7da8/detection" target="_blank"&gt;https://www.virustotal.com/#/file/32d2cbedf45e7dc8fde686bbefd6a9c2f1b0ca7a8fce271e935188726bac7da8/detection&lt;/A&gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;Please check the above VT links for the latest information for our analysis result.&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;Best&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;-Koji&lt;/SPAN&gt;&lt;/P&gt;</description>
      <pubDate>Tue, 08 Jan 2019 03:10:19 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/virustotal/false-positive-generic-ml/m-p/245163#M848</guid>
      <dc:creator>kkawachi</dc:creator>
      <dc:date>2019-01-08T03:10:19Z</dc:date>
    </item>
  </channel>
</rss>

