Hi, yesterday I tried to download a backup of from my server and avast detected and halted the download in its tracks,
detecting HTML:Bankfraud-BCS [Trj] . I did a google search and it seems like it’s not clear if this is a threat or false positive?
Anyone have any idea? I’m not able to download the backup because of it.
Also my hosting provider ran a scan of the server with Maldet scan and everything was clean.
Thanks
Pondus
March 23, 2016, 4:27pm
2
I tried to download a backup of from my server
How big is the file?
could you test it here? >> www.virustotal.com 128mb / www.metadefender.com 140mb
what is the full message from avast? … you may post a screenshot
I did a google search and it seems like it's not clear if this is a threat or false positive?
It is not something you can verify from a detection name, you need the detected file or url and check it
How big is the file?
could you test it here? >> www.virustotal.com 128mb / www.metadefender.com 140mb
what is the full message from avast? … you may post a screenshot
It is not something you can verify from a detection name, you need the detected file or url and check it
The file is 700MB.
I’ve attached a screenshot.
Where does avast put it’s logs so I can copy and check the URL on the sites you gave me?
Thanks
Pondus
March 23, 2016, 5:21pm
4
you can check the url on your screenshot here www.virustotal.com click the url tab (this is a blacklist check)
after scan, click the additional info tab and scroll down to Sucuri link and click it … this will scan for infection
How to report a False poitive >> https://forum.avast.com/index.php?topic=14433.msg1289438#msg1289438
Submit a support ticket >> https://support.avast.com/support/tickets/new
I did the virustotal.com scan for the URL and it came back clean. Also did the scan for Sucuri but it couldn’t located the URL or file
I will submit a support ticket and false positive report. Thanks for the URLs