False positive or not?

http://www.virustotal.com/analisis/3c9294db45e92714ec9856c61a8430f937b3226ea601f69fdf5e02963625871a-1264064183

The makers of the program says its a false positive, but I am not sure. the older version of the program was dead and did not have this. this team picked it up and ever since it had this. The file is the uninstall file. they say its a false positive from the id generator, but the old version had the same thing.


Welcome to the forums, Kazo :slight_smile:

I checked the MD5 given by VirusTotal with several MD5 sites and no results. That makes it suspect to me but please wait for comments from other forum members.


Hello,
try to rescan with curent VPS (100121-0) and if still detected then send us (virus@avast.com) the file to analyze and put the “false positive” to subject.

Thank you,
Milos

I cant email it, its being scaned, deteced and blocked by yahoo. So here is a upload of it in a rar file.

http://www.mediafire.com/?nzy3ttzzoeo

Thank you, will be fixed in next VPS update.

Milos

so is this file safe or not?

It is classed as a false positive (FP) and the virus signature that detected it has been corrected and will be included in the next VPS Update, so it will no longer be detected.

So yes it is safe but you will have to wait for that VPS Update to restore it from the chest or avast would alert again. You could exclude it from scans, but the VPS Update should be out soon.