[clamav-users] libclamunrar.dll being quarantined by Vipre Enterprise

Steve Basford steveb_clamav at sanesecurity.com
Tue Feb 18 14:16:56 UTC 2020


On 2020-02-18 13:58, Brian Fluet wrote:
> File libclamunrar.dll from ClamAV 0.102.2 win x86 portable is being
> quarantined by Sunbelt Vipre Enterprise as Trojan.GenericKD.42582612.
> 
> The first detection was at 5:44 PM EST on Friday Feb 14.
> 
> Microsoft is the only product that flags it as infected on VirusTotal
> as Trojan:Win32/Detplock.
> 
> I submitted the file as a false positive to Sunbelt yesterday but
> have not heard back.
> 
> I apologize if this ends up being a duplicate post.  I attempted one
> yesterday that has not appeared in the archives.
> 

  SHA-256 
8244bc93e71a78be156adf1bfef0785b4f3cd6725d095ffe7ed528ff08e8458c

Other AV's are also flagging... but maybe the same FP signature:

https://www.virustotal.com/gui/file/8244bc93e71a78be156adf1bfef0785b4f3cd6725d095ffe7ed528ff08e8458c/detection


-- 
Cheers,

Steve
Sanesecurity



More information about the clamav-users mailing list