VirusTotal Results - Razer Files

Can anyone interpret this for me?

https://www.virustotal.com/en/file/37821149d0c8251e40d2878ab07cecf3f56bc6021a48d02f7a002c85ab6bba75/analysis/1487824162/

There is nothing to interpret.
2 av’s are detecting the file as malicious.

It showed up flagged in the newest version of Avast (which has had problems since day one). My scans in the newest version of avast don’t finish completely (they get stuck at a percentage). I extracted the files from the virus chest and then rescanned and moved them to virus chest and/or deleted them if they weren’t flagging after I tested them on VirusTotal. Also of weird note, VirustTotal shows avast not flagging them. If you look at some of the relationships there is some heavily flagged items.

All you did was tell me how many AV programs flagged it. I’d like more help than that.

Can you attach any screenshots of the scan results or the detection alert you got?

It seems like This file was created or detected during the sandboxed execution of the 2 files that were flagged heavily on VT.Did avast detect the file you posted results for? Any screenshots?

Virustotal only does a on-demand scan, not other scans.
That is why a av can find something while it doesn’t on VT.

I didn’t keep any screenshots. However here is a screenshot of my virus chest.
http://i.imgur.com/ukakr5S.png

Something of note from that picture: Those files were last changed on 12/9/2016. On the previous version of Avast, these files never showed as flagged. I update often, and scan often. These files had been scanned with the previous version of avast without any issues.

Also, I’m on Version 17.1.2286 (build 17.3394.42) and using Virus Def 170222-3.

The detection came from AVG engine.Probably a heuristic detection.You can right click on the files and submit them as false positive to avast if you think they are benign.

I recommend not restoring them for now since it was created by a process that was malicious as virustotal said.

Or use the form to report it > https://www.avast.com/false-positive-file-form.php

Submitted through app.

Pondus, can you chime in on this when you get a second?

what you want to know?

VT detection seems like a false positive
First submission 2016-09-30 00:59:40 UTC ( 4 months, 3 weeks ago )

Got to at Work now, and a ferry to catch :wink:

Just your thoughts. Thanks.

He has the same thoughts as always…
Dirty ones ;D