Jump to content

Housecall - False Positive?


Recommended Posts

Eset keeps producing the 'Cleaned by Deleting - Quarartined' message on Housecall files; the file names change every few days - I'm assuning its the update files. The threat is shown as 'Win32/Riskware.PEMalform.B application' for each file.

 

Anybody else experiencing this? Is it a false positive?

 

Thanks.

Link to comment
Share on other sites

Looks like a FP,

I would add House call to the exclusions list in advanced settings > antivirus & antispyware > exclusions

Do you have Enable detection of potentially unsafe applications enabled ? If so, you could also uncheck that if it falls in that category.

 

If it falls under the unwanted or unsafe category, its not considered an FP, but an accurate detection, and you would simply need to exclude the directory.

Edited by Arakasi
Link to comment
Share on other sites

  • Administrators

The detection is correct. It is corrupted malformed PE files that are flagged by the mentioned detection name.

Link to comment
Share on other sites

Guest
This topic is now closed to further replies.
  • Recently Browsing   0 members

    • No registered users viewing this page.
×
×
  • Create New...