[clamav-users] FP Detection / Reclassify Request

Joel Esler (jesler) jesler at cisco.com
Thu Jul 16 23:35:14 UTC 2015


On Jul 16, 2015, at 6:30 PM, Daphne Galme (daphgalm) <daphgalm at cisco.com<mailto:daphgalm at cisco.com>> wrote:

Hi,

I submitted these info several days ago (and someone also did, several weeks ago) for FP.

File MD5: 574e52839d9453a0c0b9c32c11f6157e
File SHA1: 8530c174909e06ebfde906b94a7c4777aa9dd4a6

I’m still seeing it on VirusTotal though as Win.Trojan.Genpack-445 for ClamAV.

If it’s ok, I’d like to know how long do you process FP request? And once it’s processed, do you publish the result/change in VT right away?



Usually it’s pretty fast, but I don’t see the file marked as an FP in the system.  I’ve so marked it.

--
Joel Esler
Manager, Threat Intelligence Team & Open Source
Talos Group
http://www.talosintel.com




More information about the clamav-users mailing list