Перейти к содержимому


Фото
- - - - -

Possible false positives from Dr.Web CureIt!


  • Please log in to reply
2 ответов в этой теме

#1 Эмануил

Эмануил

    Newbie

  • Posters
  • 5 Сообщений:

Отправлено 05 Январь 2020 - 12:31

Hi everyone, my disk is encrypted with VeraCrypt and when I pass the disinfection tool I get two threats that I think are related to the use of VeraCrypt. Attached is the report. I hope that some expert on the forum can confirm if these are, as I think, false positives or if it is an infection. Thank you very much in advance.

Greetings and happy New Year to all.

\DISK\0\Partition1\VBR - probably infected with DISK:SUSPICIOUS.FakedVBR.1
\DISK\0\Partition1\VBR - infected - 0ms, 0 bytes
\DISK\0\Partition0\VBR - probably infected with DISK:SUSPICIOUS.FakedVBR.1
\DISK\0\Partition0\VBR - infected - 0ms, 0 bytes

VeraCrypt:

https://www.virustotal.com/gui/file/8633e3ea7382f2cb2370b0beccbb815d96d4c232cb61e08a1db82544b21bf51c/detection

 

 



#2 Konstantin Yudin

Konstantin Yudin

    Смотрящий

  • Dr.Web Staff
  • 18 255 Сообщений:

Отправлено 06 Январь 2020 - 00:27

yes it's FA on encrypted volume. we are worked on fix.


With best regards, Konstantin Yudin
Doctor Web, Ltd.

#3 Эмануил

Эмануил

    Newbie

  • Posters
  • 5 Сообщений:

Отправлено 06 Январь 2020 - 03:55

Thank you very much. You can close the topic.

 

Best regards. :)




Читают тему: 1

0 пользователей, 1 гостей, 0 скрытых