Donate Now Goal amount for this year: 799 USD, Received: 100 USD (13%)
Please donate to help support this website. The funds will be used to purchase owned license of LiteSpeed Web Server Enterprise (2-CPU). It provides superior performance in terms of raw speed, scalability and anti-DDoS capabilities.

Page 1 of 2 12 Last
Results 1 to 10 of 11
  1. #1
    Guest
    Points: 45,457, Level: 100
    Level completed: 0%, Points required for next Level: 0
    Overall activity: 44.0%
    Achievements:
    31 days registered3 months registered1 year registeredVeteranTagger Second Class

    Join Date
    May 2007
    Location
    Philippines
    Posts
    4,081
    Liked
    520 times

    On the way to better testing

    Have you ever found a false positive when uploading a file to a website like VirusTotal? Sometimes it happens that not just one scanner detects the file, but several. This leads to an absurd situation where every product which doesn't detect this file automatically looks bad to users who don't understand that it's just false positives.
    Analyst Diary | Viruslist.com

    PCmag| Tests Show Problems With AV Detections
    "positive anything is better than negative nothing"


  2. #2
    Tech Wiz
    Points: 6,587, Level: 53
    Level completed: 19%, Points required for next Level: 163
    Overall activity: 0.5%
    Achievements:
    31 days registered3 months registered100 Experience Points500 Experience Points1000 Experience Points

    Join Date
    Oct 2009
    Posts
    572
    Liked
    6 times
    wow, ceyfer, thanks for the article...it was good read....and also shows that such scanners cant be totally relied on.....
    If nothing else works, open command prompt and type 'del C:\Windows'

  3. #3
    Loverboy
    Points: 57,861, Level: 100
    Level completed: 0%, Points required for next Level: 0
    Overall activity: 24.0%
    Achievements:
    31 days registered3 months registered1 year registeredTagger Second Class100 Experience Points

    Join Date
    Jul 2009
    Location
    Singapore
    Posts
    6,123
    Liked
    227 times
    Agreed...that is why I don't rely on VirusTotal as much as I used to...false positives are becoming more 'common' nowadays...what started out as a service to help users differentiate a clean file from a malicious file has now become a "try-and-guess" service...especially now that it has been widely abused by the warez community....
    They call me the mysterious one...
    my motto is...when it's hot, chill baby

  4. #4
    *nix Technical Support
    Points: 25,110, Level: 95
    Level completed: 76%, Points required for next Level: 240
    Overall activity: 18.0%
    Achievements:
    Recommendation Second Class31 days registered3 months registered1 year registeredTagger Second Class
    Awards:
    Frequent Poster

    Join Date
    Jan 2009
    Location
    /home/hellnoire
    Posts
    10,231
    Liked
    293 times
    Well, what I like is my application that I've written myself trips off Norton... that kinda tells me Norton and other scanners need to update, and quickly.
    pacman -Syyu life not found in sync db

  5. #5
    Loverboy
    Points: 57,861, Level: 100
    Level completed: 0%, Points required for next Level: 0
    Overall activity: 24.0%
    Achievements:
    31 days registered3 months registered1 year registeredTagger Second Class100 Experience Points

    Join Date
    Jul 2009
    Location
    Singapore
    Posts
    6,123
    Liked
    227 times
    Norton's Sonar is known for being sensitive if I'm not wrong (that's what most users said)...perhaps ceyfer can tell us more in detail...but then again, I'm sure ceyfer would ask you hellnoire to report it to Norton since it's a FP

  6. #6
    Senior Techie
    Points: 3,445, Level: 36
    Level completed: 64%, Points required for next Level: 55
    Overall activity: 0.4%
    Achievements:
    31 days registered3 months registered100 Experience Points500 Experience Points1000 Experience Points

    Join Date
    Oct 2009
    Posts
    223
    Liked
    1 times
    I could understand them- the malware cleaning industry is now having a stiff competition, no one would like to leave behind.But, understand is not tolerate just like detecting doesn't mean successful clean.Hence, they should carefully analyse the samples before compile it into database...

  7. #7
    Loverboy
    Points: 57,861, Level: 100
    Level completed: 0%, Points required for next Level: 0
    Overall activity: 24.0%
    Achievements:
    31 days registered3 months registered1 year registeredTagger Second Class100 Experience Points

    Join Date
    Jul 2009
    Location
    Singapore
    Posts
    6,123
    Liked
    227 times
    Have you ever found a false positive when uploading a file to a website like VirusTotal? Sometimes it happens that not just one scanner detects the file, but several. This leads to an absurd situation where every product which doesn't detect this file automatically looks bad to users who don't understand that it's just false positives.
    I forgot that I wanted to say YES!!! Quite a few times in fact

  8. #8
    Junior Techie
    Points: 2,145, Level: 27
    Level completed: 97%, Points required for next Level: 5
    Overall activity: 0.9%
    Achievements:
    31 days registered3 months registered1 year registered100 Experience Points500 Experience Points

    Join Date
    Sep 2009
    Posts
    164
    Liked
    0 times
    Overall, that's a Dead-End situation:

    -"Aggressive" Scanners =>False Positives!
    -"Mild" Scanners =>Lower Detection!


    Taking this "about FP" Thread as an initiative, I ask you:

    -What AV Scanner to Trust?
    -Do AV vendors respond *Early enough* to Malware
    (through Heuristics, Cloud etc.)
    when 50,000 new types of Malware, on Average, come up each day?


    Reymond's TEST No.6 revealed much...Summary Results:
    http://lookpic.com/i/872/AjUmZCPC.png

    Thank you Reymond for your Revealing work!!!
    Last edited by 212eta; 02-04-2010 at 09:02 PM.

  9. #9
    *nix Technical Support
    Points: 25,110, Level: 95
    Level completed: 76%, Points required for next Level: 240
    Overall activity: 18.0%
    Achievements:
    Recommendation Second Class31 days registered3 months registered1 year registeredTagger Second Class
    Awards:
    Frequent Poster

    Join Date
    Jan 2009
    Location
    /home/hellnoire
    Posts
    10,231
    Liked
    293 times
    Ceyfer can tell me to report a FP, I already have. Norton hasn't gotten back to me yet.

  10. #10
    Loverboy
    Points: 57,861, Level: 100
    Level completed: 0%, Points required for next Level: 0
    Overall activity: 24.0%
    Achievements:
    31 days registered3 months registered1 year registeredTagger Second Class100 Experience Points

    Join Date
    Jul 2009
    Location
    Singapore
    Posts
    6,123
    Liked
    227 times
    I guess it'll take time hellnoire...they can't possibly attend to everyone who reports within a short time...what more if it is the developer of the program himself who reports it..

 

 
Page 1 of 2 12 Last

Similar Threads

  1. Five tips for testing Web browser security
    By sujay in forum Spyware/Viruses
    Replies: 7
    Last Post: 01-09-2011, 01:48 PM
  2. BackBox Linux 1 RC - Penetration testing
    By leofelix in forum Linux
    Replies: 5
    Last Post: 09-24-2010, 01:55 PM
  3. AV-Test: Real World Testing
    By Neo in forum Spyware/Viruses
    Replies: 12
    Last Post: 09-17-2010, 01:59 AM
  4. web site testing tool
    By netha in forum General Forum
    Replies: 3
    Last Post: 02-03-2010, 09:54 PM
  5. browser for testing and reviews
    By trinidude in forum General Forum
    Replies: 11
    Last Post: 07-01-2008, 05:32 PM
All times are GMT +8. The time now is 06:11 PM.