VirusTotal
Have you encountered a false positive verdict for Palo Alto Networks (Known Signatures) on VirusTotal? Use this forum to submit a verdict change request. Change requests should include the File Hash, Link to VirusTotal report, current VirusTotal verdict, and description.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
Announcements
Please sign in to see details of an important advisory in our Customer Advisories area.
VirusTotal
Have you encountered a false positive verdict for Palo Alto Networks (Known Signatures) on VirusTotal? Use this forum to submit a verdict change request. Change requests should include the File Hash, Link to VirusTotal report, current VirusTotal verdict, and description.
About VirusTotal

Welcome to the VirusTotal discussion forum. This forum exists as a place to submit verdict review requests for False Positive verdicts for Palo Alto Networks (Known Signatures) seen on VirusTotal. All posts to this forum must be properly structured in order to be reviewed by our team.

For an introduction to the forum, please see the sticky!

Disclaimer:
This forum is not a customer support venue. Palo Alto Networks staff will not engage in active discussions on this forum. Our staff will ingest properly formatted submissions for review and update Palo Alto Networks (Known Signatures) verdicts when appropriate. For information on contacting Palo Alto Networks support, click here.

Discussions

VirusTotal Verdict Change Request for False Positive

Sticky post for VirusTotal Discussion Forum.

 

This forum is here to enable those who are not Palo Alto Networks customers to submit a false positive verdict change request for a Palo Alto Networks verdict on VirusTotal. (i.e. malware or malicious

...

brcook by L2 Linker
  • 8373 Views
  • 0 replies
  • 4 Likes

Palo Alto appliance FP detections

I have come across numerous FPs. I am curious how the Palo Alto appliance alerts on files. The Threat Vault shows a file hash and a Virus total link generally. The files triggering signatures have nothing in common with the signatures often so I woul...

Resolved! FP Removal request

Hi there,

 

Can I ask you to reanalyse this file and remove from detection please?

 

Thanks.

Resolved! False positive detection "generic.ml"

Hello.
We have checked our software on VirusTotal and see false positive detections (generic.ml).
File Hash: 3c708afa2e1e50cdfc41f4ad233206969f20fef3
Current VT Verdict: generic.ml
Description: False positive detection in Safebytes_Anti-Malware.exe with

...

Resolved! false positvie for a ruler for windows

virus total is reporting a false positive ( Palo Alto Networks (Known Signatures) - generic.pup ) for my program, a ruler for windows.   The program does not include malware, and none of the other 60 engines used by Virustotal are flagging it as malw

...

Resolved! generic.ml believed false positive

The most recent installer 1,3 installer for php 5.5 of: https://www.iis.net/downloads/microsoft/wincache-extension is flagged as a virus. I belive this is wrong. Download available here: https://sourceforge.net/projects/wincache/files/wincache-1.3.7/

...

jabbera by L0 Member
  • 4303 Views
  • 2 replies
  • 0 Likes

Resolved! False Positive Removal Request

Hi,

 

Could you please white-list our software installers as there’re marked as generic.pup on virustotal.com website which should be a false-positive.

 

File Hash: c324f1f4904389346b2666078c120c06a8d97b70be2d9b618a1c29ead6a4ef26

Current VT Verdict: gener

...

Resolved! Other false positive removal request

Greetings,


We have checked our software on VirusTotal and see other 8 false positive detections (generic.pup). The latest reports from VT are: 

 

https://www.virustotal.com/en/file/88ec8d191565b5e6c64965f61b8a03154423e3b7b378339f0b45cd245618593b/analysi

...

Resolved! Virus total false positive, dll-files.com Client

Hi, 

 

We recently noticed a flag on our software at virustotal.com from your company. I believe this is a false positive. 

Our product is developed with strict security in mind and we've been promoting our brand online since 1998, first software in 201

...

Resolved! VirusTotal False positives

Greetings,

 

We have recently noticed some of our software showing as "generic.pup" on Virustotal by your program Palo Alto Networks (known signatures)

 

Paretologic PC Health Advisor foreign language installers:

 

https://www.virustotal.com/en/file/e9a6a1

...

pbirch by L0 Member
  • 3320 Views
  • 2 replies
  • 0 Likes

Resolved! False Positive submission

Hello,

 

Our software updater ARMupdt.exe has been flagged as 'generic.pup' by Palo Alto Networks version 20170403, as discovered on virustotal.com: https://www.virustotal.com/en/file/71334cacc6b943e20628acdf2fc521d142e73da27e8aa397f54dfda4d57d0d8c/ana

...

gdmdata by L0 Member
  • 3644 Views
  • 1 replies
  • 0 Likes

Virus Total PaloAltoNetworks FALSE POSITIVE

Based on VirusTotal results,  PaloAltoNetworks  reports http://www.dol.gr/helioskiosk.gr/PCReader/HeliosInstaller.exe as a virus.   We are  sure the file is secure, so we think it is a False Positive.   We would appreciate any guidance on the matter....

kozois by L0 Member
  • 2634 Views
  • 1 replies
  • 0 Likes

Resolved! False Positive for IWsIMF_AV.exe

Dear Sir or Madam,
 
This is Maggie from IObit.
 
You have mistakenly detected the file IWsIMF_AV.exe in IObit Malware Fighter v5 as threats. It is a false positive.  It will bring troubles to both our users and affect our reputation.
 
 
Please check detai
...

Resolved! False Positive Removal Request

Greetings,


We have checked our software on VirusTotal and see false positive detections (generic.pup).

File Hash: b3dee21b8f7f4e7c6d37c70bb37222ffa4415c7e0fe61ace1a22cd2b60a3c8cc
Current VT Verdict: generic.pup
Description: False positive detection in pc

...

Resolved! False positive for LiteManager

Hi!
I'm not sure, but one of our user send me report about virustotsl detection for LiteManager
Paloalto detect LiteManager as Virus/Win32.malicious.iown

LiteManager is not Virus , Trojan or malware
http://litemanager.com/soft/pro/ROMServer.zip
QuickSuppo

...

lic_agreeement_new.png

Resolved! False Positive generic.ml

Hello,

 

the file beds.exe is detected as generic.ml .

This is a false positive. The file is clean. It is not malware.

https://www.virustotal.com/de/file/7fa9416d398733ab81d36497402389eedeaac813a627a16de74c9c40fe3d6cc5/analysis/1490704605/

 

Please fix thi

...