TZAC antivirus false positives
•
26 Aug 2011, 12:03
•
Journals
I've digitally signed all files (example) and according to virustotal.com, amount of false positives has lowered a bit.. this is test on identical files, except one is signed and the other is left unsigned:
unsigned client.tzac: http://www.virustotal.com/file-scan/report.html?id=43ee2002122e4bfd65f31c06b28b82bfe6df3062a35ba10031cc939da842d02d-1314355959 (2/42)
signed client.tzac: http://www.virustotal.com/file-scan/report.html?id=63040e193a9cf44a9084aa3d777b530d4a1be4025593803b4dbe367e78af1bbe-1314355307 (1/42)
unsigned et.tzmod: http://www.virustotal.com/file-scan/report.html?id=debe790c6c4dee2090ebfdb35d8f754e3365913f3eff794f988e3304a6e1162c-1314355470 (4/44)
signed et.tzmod: http://www.virustotal.com/file-scan/report.html?id=75a39d957ae99b0c25650a4b5ffb54285a4094c1e7523434667792ac92754846-1314355802 (1/41)
unsigned cod4.tzmod: http://www.virustotal.com/file-scan/report.html?id=41fdb477de322175e67f97773c48629402cf6b01fa31b74b811edbc94ed28ed3-1314355449 (3/42)
signed cod4.tzmod: http://www.virustotal.com/file-scan/report.html?id=645ec01eccdecd6754d7f50c409dbd97c8a3eaf46af530bd8776547c6d9d06e7-1314355265 (0/44)
But these are static analysis, i don't know if it had any effect on runtime analysis and heuristic virus detections... which is why I created this journal. If you had false positives before, please reply here whether you're still getting them or they're gone.
unsigned client.tzac: http://www.virustotal.com/file-scan/report.html?id=43ee2002122e4bfd65f31c06b28b82bfe6df3062a35ba10031cc939da842d02d-1314355959 (2/42)
signed client.tzac: http://www.virustotal.com/file-scan/report.html?id=63040e193a9cf44a9084aa3d777b530d4a1be4025593803b4dbe367e78af1bbe-1314355307 (1/42)
unsigned et.tzmod: http://www.virustotal.com/file-scan/report.html?id=debe790c6c4dee2090ebfdb35d8f754e3365913f3eff794f988e3304a6e1162c-1314355470 (4/44)
signed et.tzmod: http://www.virustotal.com/file-scan/report.html?id=75a39d957ae99b0c25650a4b5ffb54285a4094c1e7523434667792ac92754846-1314355802 (1/41)
unsigned cod4.tzmod: http://www.virustotal.com/file-scan/report.html?id=41fdb477de322175e67f97773c48629402cf6b01fa31b74b811edbc94ed28ed3-1314355449 (3/42)
signed cod4.tzmod: http://www.virustotal.com/file-scan/report.html?id=645ec01eccdecd6754d7f50c409dbd97c8a3eaf46af530bd8776547c6d9d06e7-1314355265 (0/44)
But these are static analysis, i don't know if it had any effect on runtime analysis and heuristic virus detections... which is why I created this journal. If you had false positives before, please reply here whether you're still getting them or they're gone.
i trust jotti more :)
tzac-et.exe isnt digitally signed or white listed @comodo and gets auto sandboxed :>
I sumbitted it to to comodo.. if i look it up it is an unknown file.
what about slac? does this client still work?
must i creat a new tzac account?
pls answer!
http://www.crossfire.nu/?x=news&mode=item&id=6883
i just wanna know if i have to download a new client to play offis in the future!
You will NOT need a new ID.
However,
You will need to download the new client.
You will need a new password, use the password recovery feature.
Simple enough?