False Positive Submission (Generic.ml) - RSIT

cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 

False Positive Submission (Generic.ml) - RSIT

L1 Bithead

Hello,

 

I'm asking you to remove a false positive to another known tool called Random's System Information Tool which produced in two versions - one for x86 and one for x64 system.

 

File Hash for x86: 643f9279743c1737607e4a69d5dfcc3f692e495ac84c50205f6c613c2055919a

File Hash for x64: e119101ce1753c2ef56fdffddb5fe940961a72a106fa62efcb35f432615a9567

Link to Virustotal report for the x86: https://www.virustotal.com/gui/file/643f9279743c1737607e4a69d5dfcc3f692e495ac84c50205f6c613c2055919a...

Link to Virustotal report for the x64: https://www.virustotal.com/gui/file/e119101ce1753c2ef56fdffddb5fe940961a72a106fa62efcb35f432615a9567...

Download links:

https://www.safezone.cc/resources/randoms-system-information-tool-rsit-dlja-win-x86.4/download

https://www.safezone.cc/resources/randoms-system-information-tool-rsit-dlja-win-x64.6/download

Detection name for both: Generic.ml

 

Also I'd like to admit that this tool RSIT is included in Autologger.

 

Thanks in advance.

1 accepted solution

Accepted Solutions

L4 Transporter

The verdict was changed to benign.

View solution in original post

2 REPLIES 2

L4 Transporter

Under Review

 

L4 Transporter

The verdict was changed to benign.

  • 1 accepted solution
  • 2485 Views
  • 2 replies
  • 0 Likes
Like what you see?

Show your appreciation!

Click Like if a post is helpful to you or if you just want to show your support.

Click Accept as Solution to acknowledge that the answer to your question has been provided.

The button appears next to the replies on topics you’ve started. The member who gave the solution and all future visitors to this topic will appreciate it!

These simple actions take just seconds of your time, but go a long way in showing appreciation for community members and the LIVEcommunity as a whole!

The LIVEcommunity thanks you for your participation!