Attention! This forum has been replaced with support.emsisoft.com and is in read-only mode for achive now.
Welcome Guest Search | Active Topics | Members | Log In | Register

False Positive: Wise Cleaner Options
evilfantasy
Posted : Saturday, September 26, 2009 5:38:56 PM

Rank: Newbie
Groups: Member

Joined: 6/14/2008
Posts: 1
Location: Tulsa, OK
Todays scan found Wise Disk Cleaner and Wise Registry Cleaner as Trace.Directory.Wise Disk Cleaner!A2 and Trace.Directory.Wise Registry Cleaner!A2. wisecleaner.com

I've used these for around 2 years now and they are not rouges or have they harmed any of my computers. There is an option to install Ask.com software but that is a fairly normal thing nowdays.
Haemoglobin_Destroyer
Posted : Saturday, September 26, 2009 6:04:34 PM

Rank: Advanced Member
Groups: Member, Moderation

Joined: 10/23/2007
Posts: 931
Location: Lincs, UK
Hi, eveilfantasy, welcome to the forum.

Has this program installation been scanned by A2 Free before, or is this the first time you have used A2 Free?

Also, please look at the following article for information about traces

http://www.emsisoft.com/en/kb/articles/tec070120/

[Edit]

Added - please can you also submit the file to EMSI from the Quarantine list, please

PC1
Vista Ultimate SP2 (32-bit). Intel Core 2 Quad 2.66. 4GB RAM
Anti-Malware: A-Squared Anti-Malware
Supplementary protection: Finjan Secure Browsing; SpyWareBlaster; MVPS Hosts
Firewall: Sunbelt Personal Firewall 4.6 +NIPS
PC2
XP Pro SP3. P4 2.8. 1.5GB RAM
Anti-Malware: Mamutu. Sunbelt Vipre (Heuristics turned off). A2 Free + Beta
Supplementary Protection: MVPS Hosts. Spyware Blaster. Finjan Secure Browsing. Windows Defender
Firewall: Comodo with Defense+ off





Avatar Copyright: Dark Rainbow from Deviant Art
diligentinquirer
Posted : Sunday, September 27, 2009 3:12:10 AM

Rank: Advanced Member
Groups: Member

Joined: 3/8/2009
Posts: 50
Location: Beautiful Green Washington State, USA
@ Haemoglobin_Destroyer

FYI, had the like A2-free Wise Registry and Disk cleaner results this morning. Wise has a few faults, but not many, from my a/b 3 yr usage thereto. Been using A-2 for a/b 5 yrs.

If ya want, I run again and save the results so ya can see them. I just ignored the some 110 "trace" results with the name "wise...". To me it was such an obvious False Positive. Could be wrong. Don't think so.

My Best, Diligent.

Fools rush in where wise men fear to tread. - Alexander Pope (1688-1744); XP Home, SP3; CIS-free.
Lynx
Posted : Sunday, September 27, 2009 3:26:37 AM

Rank: Advanced Member
Groups: Member, Moderation

Joined: 2/24/2006
Posts: 4,495
Location: Australia
Hi diligentinquirer and evilfantasy,

As Haemoglobin_Destroyer pointed that is necessary to submit entries either from quarantine or better from the detection list.

That is is not necessary to post the report here, but it will be appreciated if it is saved in case developers will require to get it by e-mail.

If you both were using the said Software before and got those flaggings that could be FP - Software was changed / Signatures changed...
If so, that will be fixed.
Otherwise if developers have reasons for flagging it anyway, but you trust the Software - you will WhiteList

My regards

XP Pro, SP3 (32-bit); a2-Free 4.5.0.21(beta); Firewall: Comodo CIS (Defense+ HIPS); Software DEP: integrated into Firewall; Anti-Malware: Mamutu 2.0.0.23 (beta); Verification Engine PlugIn (resident); AntiVirus: AVG Free (guard resident); SpyBot SD (+TeaTimer resident)
diligentinquirer
Posted : Sunday, September 27, 2009 11:53:48 PM

Rank: Advanced Member
Groups: Member

Joined: 3/8/2009
Posts: 50
Location: Beautiful Green Washington State, USA
Lynx: OK I'll run a-2 again and save the detection list results, in case their needed by the developers. I just ignored those particular results yesterday morning.

Holler, if ya need the saved results emailed. Think ya have my email.

Diligent

Fools rush in where wise men fear to tread. - Alexander Pope (1688-1744); XP Home, SP3; CIS-free.
Lynx
Posted : Monday, September 28, 2009 4:35:29 AM

Rank: Advanced Member
Groups: Member, Moderation

Joined: 2/24/2006
Posts: 4,495
Location: Australia
No, I don't have your e-mail and we are not communicating by e-mail in this forum
My regards

XP Pro, SP3 (32-bit); a2-Free 4.5.0.21(beta); Firewall: Comodo CIS (Defense+ HIPS); Software DEP: integrated into Firewall; Anti-Malware: Mamutu 2.0.0.23 (beta); Verification Engine PlugIn (resident); AntiVirus: AVG Free (guard resident); SpyBot SD (+TeaTimer resident)
diligentinquirer
Posted : Tuesday, September 29, 2009 1:14:02 AM

Rank: Advanced Member
Groups: Member

Joined: 3/8/2009
Posts: 50
Location: Beautiful Green Washington State, USA
OK, then I won't run a-2 again to supply these "FP"'s info to provide by email to the developers I guess. I supplied my email when signing up. Was trying to help with a FYI message. I'll handle a-2's "wise" situation by elimination myself.

Thanks for the very kind thoughts. Diligent.

Fools rush in where wise men fear to tread. - Alexander Pope (1688-1744); XP Home, SP3; CIS-free.
Lynx
Posted : Tuesday, September 29, 2009 1:49:48 AM

Rank: Advanced Member
Groups: Member, Moderation

Joined: 2/24/2006
Posts: 4,495
Location: Australia
diligentinquirer wrote:
OK, then I won't run a-2 again to supply these "FP"'s info to provide by email to the developers I guess...

That's you personal choice whether you want to help by sending suspected FPs to EMSI developers or not.

I am not working for EMSI so internal e-mails has nothing to do with anything.

My regards

XP Pro, SP3 (32-bit); a2-Free 4.5.0.21(beta); Firewall: Comodo CIS (Defense+ HIPS); Software DEP: integrated into Firewall; Anti-Malware: Mamutu 2.0.0.23 (beta); Verification Engine PlugIn (resident); AntiVirus: AVG Free (guard resident); SpyBot SD (+TeaTimer resident)
diligentinquirer
Posted : Wednesday, September 30, 2009 1:23:30 AM

Rank: Advanced Member
Groups: Member

Joined: 3/8/2009
Posts: 50
Location: Beautiful Green Washington State, USA
Thanks for the clarification.

So, If one runs into a situation like this, where there is situation like this that an a-2 result is a FP, one can send these kinds of a-2 results to a developers email?

If so, what is that email.

Thanks, Diligent

Fools rush in where wise men fear to tread. - Alexander Pope (1688-1744); XP Home, SP3; CIS-free.
Lynx
Posted : Wednesday, September 30, 2009 2:08:27 AM

Rank: Advanced Member
Groups: Member, Moderation

Joined: 2/24/2006
Posts: 4,495
Location: Australia
diligentinquirer wrote:
... one can send these kinds of a-2 results to a developers email?
If so, what is that email...

Hi diligentinquirer,

Sending suspects to developers is one of the methods and that is actually the “old fashion” one, but still in use when resolving some cases are delayed for some reason or when user still not convinced.

The main method is submitting from the detection list.
You can submit from Quarantine as well. (see references below in “more details”)

As for e-mailing the address is EMSI fp@emsisoft.com

Before submitting, create a password protected archive (ZIP or RAR) containing the file(s). Make sure the main body of the email contains the password for the compressed archive.

There is a submission type, which we discussed in one of your previous requests:
http://forum.emsisoft.com/Default.aspx?g=posts&t=5076

If another security produced flaggings but a-squared did not raise an alarm you may send the suspect as a “new malware” as it's described here (passworded archives as well) .
http://www.emsisoft.com/en/support/submit/

===More details:

Please read the following link. In the reply from Thursday, 25 December under “submitting and or auto-rescanning” there are helpful references about different ways to do that.
I hope you will learn how to investigate, submit detected items, setting Re-Scan option, etc., e.g.: “How should I treat the malware I found?”
http://forum.emsisoft.com/Default.aspx?g=posts&t=4220

My regards

XP Pro, SP3 (32-bit); a2-Free 4.5.0.21(beta); Firewall: Comodo CIS (Defense+ HIPS); Software DEP: integrated into Firewall; Anti-Malware: Mamutu 2.0.0.23 (beta); Verification Engine PlugIn (resident); AntiVirus: AVG Free (guard resident); SpyBot SD (+TeaTimer resident)
diligentinquirer
Posted : Sunday, October 25, 2009 1:52:11 AM

Rank: Advanced Member
Groups: Member

Joined: 3/8/2009
Posts: 50
Location: Beautiful Green Washington State, USA
Am just ignoring a-2 "wise" scan results. Frankly, just tired of it all. Smiles, Diligent.

Fools rush in where wise men fear to tread. - Alexander Pope (1688-1744); XP Home, SP3; CIS-free.
Lynx
Posted : Sunday, October 25, 2009 3:07:43 AM

Rank: Advanced Member
Groups: Member, Moderation

Joined: 2/24/2006
Posts: 4,495
Location: Australia
Quote:
Attention! This forum has been replaced with http://support.emsisoft.com
No more new posts allowed here. Reply period ends on Oct 15.

diligentinquirer,

Please read this special announcement above.

Was it any purpose to resurrect this old thread?
Was it just because this forum accidentally not locked yet?
(It should be "read only" already)

Your remark is useless
since it does not provide any information regarding investigating the matter.

You can join our new forum and post there in case you have new request or valuable input

My regards

XP Pro, SP3 (32-bit); a2-Free 4.5.0.21(beta); Firewall: Comodo CIS (Defense+ HIPS); Software DEP: integrated into Firewall; Anti-Malware: Mamutu 2.0.0.23 (beta); Verification Engine PlugIn (resident); AntiVirus: AVG Free (guard resident); SpyBot SD (+TeaTimer resident)
Users browsing this topic
Guest User

Forum Jump
You cannot post new topics in this forum.
You cannot reply to topics in this forum.
You cannot delete your posts in this forum.
You cannot edit your posts in this forum.
You cannot create polls in this forum.
You cannot vote in polls in this forum.

Main Forum Rss Feed : RSS

Powered by Yet Another Forum.net - Copyright © 2003-2005 Yet Another Forum.net. All rights reserved.