Help get this topic noticed by sharing it on Twitter, Facebook, or email.

AV false positives

"And, because we had to use a 3rd party provider to make Ghostery for IE work efficiently, there are some smaller virus protection software makers that might mark it as against their rules (we’re actively working on this)."
Ghostery for IE Version 3.0.0 is Out! | The Purple Box

Well, publish all file sizes and hash values [SHA1 as well as MD5! SHA256?] and we can check to see if the AV flag is valid or false! [And file a false positive as well !!]

Should Process Explorer, etc., find any DLL files loaded in any relevant executables? Which DLLs in addition to the resident AV hooks? What hash values? Any TCP/IP traffic to remote hosts? What IP addresses?
3 people like
this idea
+1
Reply