Win32:Evo-gen [Susp] - false positive

please fix that!!

Report to avast lab here https://support.avast.com

https://www.virustotal.com/en/file/3f90d9cb593140274b980f6d29a04f03706808fa48b3cc1a095a8a0fb1018dc3/analysis/1420823169/

https://www.virustotal.com/en/file/293520d6baf7a4961ef18717bb405f6707712ac64e8f64be22f7407a40cad516/analysis/1421937921/

Hello
I’m busy with some samples to be sent to detection of avast, as I have not your files, VT (virus total) distributed results are not feasible,I will attempt.

not fixed,reported also to https://support.avast.com

https://www.virustotal.com/en/file/986513a5b0a7bb7cf1c916cb5a2c39e89810d48886a1edee7b2568c5b9225048/analysis/1423474832/

another detection,reported also to https://support.avast.com

your detection algorithm for Win32:Evo-gen is very buggy

again problems with this buggy detection
https://www.virustotal.com/ro/file/cedce8909da8037c31962300a30f3262bc9b3ad3c8cacb728a24a59ba5573909/analysis/1449815675/
sent also by AV interface

For a while I could sent directly from webpage that kind of problems,now link page doesn’t work (The page you were looking for doesn’t exist) : https://support.avast.com/index.php

Must be a problem on your end.
It is working for me without a problem.

https://www.avast.com/contact-form.php?subject=VIRUS-FILE

your link,works
thanks!

I’m sending files using https://www.avast.com/contact-form.php?subject=VIRUS-FILE and I get no answer/no email confirmation
I have again problems with :Evo-gen [Susp] - false positive
https://www.virustotal.com/en/file/c53570b28a370481cfa78d06a04db742da55eefbdab7f3f6bf0445431d3653d5/analysis/1451469211/

Hello,
thanks for notice, when did you submit the form?
FP will be fixed in next stream update.

Milos

mrapi,

after submitting avast will only contact you if the need/want more information.

A automated confirmation by email could be a little improvement for the service.

Something like : Thank you for sending us file x.y We received it at : yyyymmdd hh:mm Filesize : 12.3Mb SHA-256 : 0x e3b0c44298fc1c149afbf4c8996fb92427ae41e4649b934ca495991b7852b855

We will analyze it and make changes in the detection when needed.
In case we need more information you will soon receive a request from us.

Hi,I’ve submitted today

another FP : https://www.virustotal.com/en/file/98fec49374fb710b920e97e6c4448546de105018f63be7aa789f077b092762a4/analysis/1452073649/

another file: https://www.virustotal.com/en/file/107c8108c3fb1918f60e612455ce7de1f0dbf388a592fe6bfa5e4d615e1b341c/analysis/1452753606/

another file,I’ve uploaded there it has 56 MB : https://www.dropbox.com/s/m4v8om1ah4s8mkh/installAllnetSFXP.exe?dl=0

Detection seems correct … Riskware / PUP
https://www.virustotal.com/en/file/5b2f7cc9c8798da7f6a6ec7f154609b468dd95f7ced4a2296763e198f26b6e4a/analysis/1453475312/

Hi
We own that setup file,it includes PublicF1.exe used for remote connections based on a password: http://www.freeremotesupport.net/i-need-remote-assistance

If I scan only that file I got it is just the same VT log as you got on setup
https://www.virustotal.com/en/file/9fb0e612bc0923f7dbe9decfe2aee85ccbcf578d50d91ab6cbfedaef05b256c3/analysis/1453476885/
so detection is on this containing file but avast doesn’t detect PublicF1.exe as Win32:Evo-gen it detects the setup file,that’t the OLD BIG AVAST PROBLEM: FALSE POSITIVE EVEO-GEN !

Detection is still there,take a a look now:
https://www.virustotal.com/en/file/90af6b97db468aa5a2e7ab0cff9f3453d52bc298031e885872a2a4a748f2f713/analysis/1453704642/

file is there https://www.dropbox.com/s/m4v8om1ah4s8mkh/installAllnetSFXP.exe?dl=0