Author Topic: False Positive Infection:Win32:Evo-gen [Susp] For SuperAntiSpyware Download???  (Read 4941 times)

Offline JazzyFair

  • Newbie
  • *
  • Posts: 10
    • Personal Message (Offline)
Hello

Today i was going to do one of my routine cleanups with SuperAntiSpyware and before i could download it my Avast web sheild blocked it
I Have used this site and program for over a year now for regular cleanup a so this has to be a false positive

here is the full Infection Report and Url for the infection
Infection Details
URL:   http://cdn.superantispyware.com/SUPERAntiSpyware.exe
Process:   C:\Program Files (x86)\Google\Chrome\App...
Infection:   Win32:Evo-gen [Susp]

sence i have recieved this notification i have run scans including

SuperAntiSpyware (which i luckily still had in my downloaded files)
MalawareBytes
And My Avast
And A Boot Time Scan with no infection

Each i ran twice and found no infection on my computer

ive already sent a false positive report to avast about this but can anyone else help?

« Last Edit: January 31, 2013, 03:40:25 AM by JazzyFair »

Offline True Indian

  • Malware Hunter
  • Advanced Poster
  • **
  • Posts: 728
  • Gender: Male
  • A Good Old Indian!
    • Personal Message (Offline)
New virus defs were released...update please  ;D

Offline mike406

  • Newbie
  • *
  • Posts: 12
    • Personal Message (Offline)
I get this FP as well. My engine and definitions versions are current.

Offline Amrynel

  • Newbie
  • *
  • Posts: 3
    • Personal Message (Offline)
Also getting this same Web Shield warning with 130130-3 when attempting to install the latest Flash Player.

Blocked whether from Adobe or even Avast's own website (i.e. the link that comes up when you don't have Flash installed and you attempt to view the Web Shield Traffic History)!

Offline JazzyFair

  • Newbie
  • *
  • Posts: 10
    • Personal Message (Offline)
same for me everything is up to date they realy need to fix this issue


Offline Manimecker

  • Newbie
  • *
  • Posts: 4
    • Personal Message (Offline)
Same overhere, it also occurs when downloading anything from Microsoft (e.g. NetFramework).

Using lastest virus database...

Offline Torxi

  • Newbie
  • *
  • Posts: 1
    • Personal Message (Offline)
Hi,

got this notification on startup:

Infection Details
URL:   http://files.avast.com/files/emupdate/20121107.exe
Process:   C:\Program Files\AVAST Software\Avast\AvastEmUpdate.exe
Infection:   Win32:Evo-gen [Susp]

Is this false or should I be concerned?

Offline Milos

  • avast! team
  • Advanced Poster
  • *
  • Posts: 1081
  • Gender: Male
    • Personal Message (Offline)
It should be fixed.

Milos

Offline Bill Harris

  • Newbie
  • *
  • Posts: 11
    • Personal Message (Offline)
It hasn't. I'm having the same problem with products from Microsoft and compiled with Microsoft compilers.

Offline spywar

  • Malware Hunter
  • Poster
  • *
  • Posts: 411
    • Personal Message (Offline)
It hasn't. I'm having the same problem with products from Microsoft and compiled with Microsoft compilers.
From what you say these are not the same files as mentioned previously (SAS).
Please submit them to "virus[AT]avast.com"with False Positive in the subject (make sure to compress them with a password like "infected") and maybe a link to your post in this topic.

spywar

 

Google Chrome

AVAST recommends using the FREE Google Chrome™ browser.

Download Google Chrome Now