After an un-attended scan, ver# 8.0.2.27 on Windows XP Pro SP3, detected "c:program fileswinrarwinrar v3.41 final trial to full by great elmo!!.exe" and a subsequent scan found "c:windowssystem32cmdlineext03.dll". First file was cleaned but the second I searched and suspect this may be a false positive. I removed the winrar exe positive as I never use it anyway, but still suspect a false positive.
Malwarebytes and AVG have not tugged at these files ever. Just finished scans with these other two protectors came up clean, zero infections or malware.
Any conformation or clarification is appreciated.
Solved
Possible false positives?
Best answer by jbiel
Fast turnaround with the support. Resolved as follows.
Hello,
The winrar v3.41 final trial to full by great elmo!!.exe file is a crack/patch/keygen file which we do not normally detect. The detection on that file has been reversed, but due to the nature of the file we would not consider that to be a False Positive in the traditional sense.
The c:windowssystem32cmdlineext03.dll file is a suspicious file, but does appear to be a false positive, and the detection has been reversed.
Thanks,
Webroot Threat Research
Posted for others that may see these pop.
Many thanks.
View originalHello,
The winrar v3.41 final trial to full by great elmo!!.exe file is a crack/patch/keygen file which we do not normally detect. The detection on that file has been reversed, but due to the nature of the file we would not consider that to be a False Positive in the traditional sense.
The c:windowssystem32cmdlineext03.dll file is a suspicious file, but does appear to be a false positive, and the detection has been reversed.
Thanks,
Webroot Threat Research
Posted for others that may see these pop.
Many thanks.
Reply
Login to the community
No account yet? Create an account
Enter your E-mail address. We'll send you an e-mail with instructions to reset your password.