Driver\cx88vid.sys false positive

Hello avast team :wink:

avast5 AV were reported to me that this file is malware.

C:\Windows\System32\drivers\cx88vid.sys

Of course it is a false positive.
I send cx88vid.sys to virustotal.

Virustotal link:
http://www.virustotal.com/analisis/3745895e431ff3dcbe7182446589827195d552e4803f98bce13c25302383ab48-1277313745

Screen Shot of avast which were report:


http://j.imagehost.org/t/0535/avast_sta_javlja.jpg

if you need a copy of the file…just asc :slight_smile:
OS is Windows7

Greeting

I would say it is highly unlikely that a VT scan would find anything wrong as it isn’t doing the same anti-rootkit scan as you can see from the VT results even avast doesn’t detect it on a conventional scan.

The file should be uploaded (or details about the detection) to avast as is suggested you allow it to be sent. I think this happens automatically during update checks if you have enabled the Community participation, see image.

Hi…

this option has already been activated.
I sent a copy of that file to your mail for examples of malware.

virus@avast.com

Is this Ok? :slight_smile:

It isn’t my email, I’m just an avast user like yourself ;D

However, that is the correct email address, ideally the file should be zipped in a password protected archive and attached to the email with the password in the email and false positive in the email subject.

It isn't my email, I'm just an avast user like yourself

i know…english is not my home language…sow i made mistake… ;D
i put password on archive…they know password
thx for everything :wink:

You’re welcome.

Hello,
it is detected by antirootkit module, not by VPS (so it’s not detected on VT), I’ll resent it to our antirrotkit developers.

Milos

I think…this is a driver for TV card … :-\
or…
http://www.runscanner.net/lib/CX88Vid.sys.html

pls …If you are not a problem let me know what you found.

Thanks :wink: