VirusTotal
Have you encountered a false positive verdict for Palo Alto Networks (Known Signatures) on VirusTotal? Use this forum to submit a verdict change request. Change requests should include the File Hash, Link to VirusTotal report, current VirusTotal verdict, and description.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
Announcements
VirusTotal
Have you encountered a false positive verdict for Palo Alto Networks (Known Signatures) on VirusTotal? Use this forum to submit a verdict change request. Change requests should include the File Hash, Link to VirusTotal report, current VirusTotal verdict, and description.
About VirusTotal

Welcome to the VirusTotal discussion forum. This forum exists as a place to submit verdict review requests for False Positive verdicts for Palo Alto Networks (Known Signatures) seen on VirusTotal. All posts to this forum must be properly structured in order to be reviewed by our team.

For an introduction to the forum, please see the sticky!

Disclaimer:
This forum is not a customer support venue. Palo Alto Networks staff will not engage in active discussions on this forum. Our staff will ingest properly formatted submissions for review and update Palo Alto Networks (Known Signatures) verdicts when appropriate. For information on contacting Palo Alto Networks support, click here.

Discussions

VirusTotal Verdict Change Request for False Positive

Sticky post for VirusTotal Discussion Forum.

 

This forum is here to enable those who are not Palo Alto Networks customers to submit a false positive verdict change request for a Palo Alto Networks verdict on VirusTotal. (i.e. malware or malicious

...

brcook by L2 Linker
  • 9721 Views
  • 0 replies
  • 5 Likes

VirusTotal False Positive

The sample is in a password protected zip file

The password for the attachment is infected

Please investigate and whitelist the product “CCBootCloud”.

Official website: “https://www.ccboot.com/”

https://www.virustotal.com/gui/file/26eafe88472e5fef31a

...

Resolved! VirusTotal False Positive: ccml.io domain

Hi there - 

 

Content Camel (https://www.contentcamel.io/) is a b2b provider of marketing and sales software. We manage the ccml.io domain for our customers for use in b2b communication with their end users and customers. The short domain is designed

...

Adobe Reader DC install being treated as a virus

Hi

 

We have recently increased the level of security for wildfire and since then the firewall is blocking the installer for Adobe Reader DC and saying it has a virus Win32.WGeneric.lsaqu on it.

 

This is happening on different machines and we when we tr

...

VirusTotal Verdict Confirmation

The following signature has been flagged for us recently by WildFire. Could someone please confirm if this is a legitimate threat or false positive?

 

Name: Virus/Win32.WGeneric.dugvfd

Unique Threat ID: 554886710

Create Time: 2022-10-26 18:25:06 (UTC

...

VirusTotal Verdict Change Request for False Positive

File Hash: 1bf278fe71e67145171bf9d6b44dcb4e76ec675adda15d923f8f2fba5120fad2

Link to Virustotal report for the file: <link>

Current VirustTotal Verdict: <Undetected, not in database>

Description: <Purple Knight is an Active Directory and Azure AD secu

...

Resolved! False positive report

Hello,

 

https://www.ampyazilim.com.tr

 

Our site www.ampyazilim.com.tr on virustotal.com the autoshun engine (now closed, there is no such engine at the current state) is marked as Malicious, therefore It is also labeled as high risk on https://urlf

...

frkgns by L0 Member
  • 4234 Views
  • 2 replies
  • 0 Likes

Resolved! VirusTotal Verdict Change Request for False Positive

File Hash: 374a44b99c54c95314e75f19289bc94af2647bdce37dbf868c32261441b7a750

Link to Virustotal report for the file: <link>

Current VirustTotal Verdict: <Generic.ml>

Description: <airRohr-firmware-flasher-0.3.1-Windows_32bit.exe>

 

File Hash: 517558b2

...

False Positive Virustotal

File Hash: FEEF14A4977D2A91E18D82DF42FD2429FBA73679D29A2CE0A593E80F360B4F54

Link to Virustotal report for the file: https://www.virustotal.com/gui/file/feef14a4977d2a91e18d82df42fd2429fba73679d29a2ce0a593e80f360b4f54

Current VirustTotal Verdict: 19/7

...

false positive report

hello , 
we found out that our setup program reported as virus as false positive
this is a simple setup program for antivirus program which is called trueep as known as trojancut
Our products are delivered to almost all Korean public companies, and t
...

False Positive (Generic.ml)

The following file is being flagged by Palo Alto Networks as Generic.ml. The file is an installer for the application: Restoro 2.0.3.5. For more information, you may visit their page: www.restoro.com 

Please help us investigate and resolve the detect

...

Resolved! VirusTotal Verdict Change Request for False Positive

File Hash: <008d78f81461a12e9a82b3be2ab75b5ffbedfa92e56d27a861e2f69276bf090c>

Link to Virustotal report for the file: <link>

Current VirustTotal Verdict: <Generic.ml>

Description: <Autologger.exe>

 

This is a log collector which we use very often to

...

Sandor by L1 Bithead
  • 2097 Views
  • 2 replies
  • 0 Likes

Resolved! VirusTotal Verdict Change Request for False Positive

 

@DaBone 

File Hash: <ba2672ccf71cea15798a3968a1fa2d5d28e969bcb44bceece54fe6a127791018>

Link to Virustotal report for the file: <link>

Current VirusTotal Verdict: 2/69 - Generic.ml

Description: <RemotePC.exe>

Download Link :<Link To Download >

 

We

...

Resolved! VirusTotal False Positive (Generic.ml)

File Hash: 5ebd0d4d28ea7288b4407f0ecf525e209793417fe657cea5edc3c7c0a930aef6

VirusTotal: https://www.virustotal.com/gui/file/5ebd0d4d28ea7288b4407f0ecf525e209793417fe657cea5edc3c7c0a930aef6/detection

Current VirusTotal Verdict: Generic.ml

Description:

...

TOP-GTA by L0 Member
  • 2127 Views
  • 2 replies
  • 0 Likes

Virus Total - False Positive

Hi All,

 
I am writing on behalf of Idrive Software Inc, to intimate about the false positive warning displayed in VirusTotal Website with PaloAltoNetwork for our Remote Access Software. Since our Application is having all the security validations an
...

  • 728 Posts
  • 59 Subscriptions