VirusTotal
Have you encountered a false positive verdict for Palo Alto Networks (Known Signatures) on VirusTotal? Use this forum to submit a verdict change request. Change requests should include the File Hash, Link to VirusTotal report, current VirusTotal verdict, and description.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
VirusTotal
Have you encountered a false positive verdict for Palo Alto Networks (Known Signatures) on VirusTotal? Use this forum to submit a verdict change request. Change requests should include the File Hash, Link to VirusTotal report, current VirusTotal verdict, and description.
About VirusTotal

Welcome to the VirusTotal discussion forum. This forum exists as a place to submit verdict review requests for False Positive verdicts for Palo Alto Networks (Known Signatures) seen on VirusTotal. All posts to this forum must be properly structured in order to be reviewed by our team.

For an introduction to the forum, please see the sticky!

Disclaimer:
This forum is not a customer support venue. Palo Alto Networks staff will not engage in active discussions on this forum. Our staff will ingest properly formatted submissions for review and update Palo Alto Networks (Known Signatures) verdicts when appropriate. For information on contacting Palo Alto Networks support, click here.

Discussions

VirusTotal Verdict Change Request for False Positive

Sticky post for VirusTotal Discussion Forum. This forum is here to enable those who are not Palo Alto Networks customers to submit a false positive verdict change request for a Palo Alto Networks verdict on VirusTotal. (i.e. malware or malicious verdict for a file that is demonstrably benign). Please submit the following information in the...

brcook by L2 Linker
  • 13870 Views
  • 0 replies
  • 7 Likes

False Positive: HelpDesk Viewer.

A false positive has been detected for HelpDeskViewer.exe. File Hash: <ec9eebf141d9f9a6bfc29b7de82f39a94286f05dcc85088d1c0d6e022fd76290> Link to Virustotal report for the file: <https://www.virustotal.com/gui/file/ec9eebf141d9f9a6bfc29b7de82f39a94286f05dcc85088d1c0d6e022fd76290/details> Current VirustTotal Verdict: <Generic.ml&...

Resolved! Fals Positive: HelpDesk Viewer.

A false positive has been detected for HelpDeskViewer.exe. File Hash: <960174182b583970c00a7948ffd2a1237dfd98699a8200a780490783d1ae5c1e> Link to Virustotal report for the file: <https://www.virustotal.com/gui/file/960174182b583970c00a7948ffd2a1237dfd98699a8200a780490783d1ae5c1e/detection> Current VirustTotal Verdict: <Generic.m...

FP

File Hash: 9a3fbfc0c1eef91b91b19f3c3976d5d8265a151628a301a08d309f44378d2ae0 Link to Virustotal report for the file:https://www.virustotal.com/gui/file/9a3fbfc0c1eef91b91b19f3c3976d5d8265a151628a301a08d309f44378d2ae0?nocache=1 Current VirustTotal Verdict: Generic.ml Description: False Positive of AirMyPC software

beniam by L2 Linker
  • 3142 Views
  • 2 replies
  • 0 Likes

VLC False positive

Hi all. File Hash: 9742689a50e96ddc04d80ceff046b28da2beefd617be18166f8c5e715ec60c59Link to Virustotal report for the file: https://www.virustotal.com/gui/file/9742689a50e96ddc04d80ceff046b28da2beefd617be18166f8c5e715ec60c59 Current VirustTotal Verdict: Benign Description: VLC Media Player https://www.videolan.org/vlc/index.es.html Its being...

false positive

File Hash: a7a6ad3776336e39a9fbdbbf59f5a32aca7e5fa9a73b141a1f2db9e3d167c239 https://www.virustotal.com/gui/file/a7a6ad3776336e39a9fbdbbf59f5a32aca7e5fa9a73b141a1f2db9e3d167c239Current VirustTotal Verdict: Generic.mlThis is the one-click setup client software for the well-known public DNS service OneDNS. It has been mistakenly detected as Generic...

bobopu by L0 Member
  • 2555 Views
  • 2 replies
  • 0 Likes

Palo EDL list - some malicious IPs not included

Hi, Just want to make sure I understand Palo's EDL's correctly: a client has a query about 3 IP addresses that are not included in Palo's EDL, but is picked up as malicious via Virus Total and MXToolbox 138.199.15.177 179.43.149.114 45.148.10.237 The client wants to know why these specific IPs are not present in the EDLs and want's Palo to i...

R.Bester by L0 Member
  • 2841 Views
  • 2 replies
  • 0 Likes

Apple Relay Blocked

Hi All I have suddenly started seeing a lot of Blocks for icloud.net and .com addresses, after checking them on Virustotal, they are all rated benign, the logs are HIGH and the action is Sinkhole which is fine because that is the policy that is configured, my question is why suddenly now? is there any reason anybody knows why this configuratio...

Report false positive 2

File Hash: 3008e28f2e50ca89e0b24b4eaa2a43caea6f45eea1d819ae4ed8dd45a83b657e Link to Virustotal report for the file: https://www.virustotal.com/gui/file/3008e28f2e50ca89e0b24b4eaa2a43caea6f45eea1d819ae4ed8dd45a83b657e Current VirustTotal Verdict: Generic.ml Description: This application is used to run some Softexpert applications using the URI vi...

Report False positive

File Hash: 512aee2bf9656af68d0c001af9470070563a1b592e668569d7191998828d1698 Link to Virustotal report for the file: https://www.virustotal.com/gui/file/512aee2bf9656af68d0c001af9470070563a1b592e668569d7191998828d1698 Current VirustTotal Verdict: Generic.ml Description: This application is used to update some Softexpert applications on the user'...

VT Request change for False Positive

File Hash: fe18039452f6289f3a5fcd252fe0317b9dca717ba826516da1cfdd395acfad37 Link to Virustotal report for the file: VirusTotal - File - fe18039452f6289f3a5fcd252fe0317b9dca717ba826516da1cfdd395acfad37 Current VirustTotal Verdict: Generic.ml Description: RGBLedBarTool #ModulaWMS

Resolved! VT Change Request for False Positive

Dear Vendor, I am writing from the developer company of the file contained in the following virustotal link: VirusTotal - File - fe18039452f6289f3a5fcd252fe0317b9dca717ba826516da1cfdd395acfad37 I request kind support in reviewing the search engine verdict as the file in question is a non-malicious software component and part of our installation ...

False postive on https://app.wavecnct.com/

Hi there, we are not Palo Alto Networks customers but some of our customers are and they are getting false positives on our domain https://app.wavecnct.com/. When checking with https://urlfiltering.paloaltonetworks.com/query/ , I see that we are categorized as an high risk website. Please advise on how we can go about getting this resolved.

Resolved! False Positive

A false positive has been detected for RemotePC.exe. Please resolve this. File Hash: <929803af7c4690cb6b282a05e503698ac5ea3fede9562eaa3ef5e11d17b4c264> Link to Virustotal report for the file: <https://www.virustotal.com/gui/file/929803af7c4690cb6b282a05e503698ac5ea3fede9562eaa3ef5e11d17b4c264/detection> Current VirustTotal Verdict:...

HelpDesk Viewer: False Positive

False positive has been detected for the HelpDeskViewer.exe. Please review. File Hash: <276d5242719b7f8230bc1e6fba1cc5a49deee02506f7e52520a8f03748d5a1fd> Link to Virustotal report for the file: <https://www.virustotal.com/gui/file/276d5242719b7f8230bc1e6fba1cc5a49deee02506f7e52520a8f03748d5a1fd/detection> Current VirustTotal Verdic...

Trying to understand what is wrong with my servers ip 5.182.39.34

Hi everyone, I have server (for last 6 months) with ip 5.182.39.34 (for internal purposes, no public services at all) partially used as proxy for accessing services with region restrictions, but some of them warns me that my reputation on virustotal is bad (or just denies usage at all), so had to start investigation. for now I have this situ...

roma by L1 Bithead
  • 3328 Views
  • 3 replies
  • 0 Likes
  • 792 Posts
  • 67 Subscriptions
Top Solution Authors