Author Topic: Flufferminer FP  (Read 1738 times)

0 Members and 1 Guest are viewing this topic.

bossfan

  • Guest
Flufferminer FP
« on: November 14, 2013, 11:41:37 PM »
I had the Flufferminer virus detected in my scans today, both a regular scan and a boot time scan.  Two files affected that I quarantined to the virus chest.  I came to the forum for information and I see that it has been identified as a false positive so now I am confused on what to do next.  Do I restore the files from the virus chest now or am I supposed to leave it in the virus chest until the false positive is resolved?  Please advise and thank you for your help.

« Last Edit: November 14, 2013, 11:45:14 PM by bossfan »

Offline polonus

  • Avast Überevangelist
  • Probably Bot
  • *****
  • Posts: 33904
  • malware fighter
Re: Flufferminer FP
« Reply #1 on: November 14, 2013, 11:58:55 PM »
Has this been flagged? C:\ProgramData\Microsoft\Windows Defender\Scans\mpcache-96D2B895C0A3A82D1F69D810D6989EB0795D098B.bin.VF [L] VBS:FlufferMiner-D [Trj] (0)
Leave it in chest to be restored as this situation has been cleared up.

polonus
Cybersecurity is more of an attitude than anything else. Avast Evangelists.

Use NoScript, a limited user account and a virtual machine and be safe(r)!

bossfan

  • Guest
Re: Flufferminer FP
« Reply #2 on: November 15, 2013, 03:36:49 AM »
Has this been flagged? C:\ProgramData\Microsoft\Windows Defender\Scans\mpcache-96D2B895C0A3A82D1F69D810D6989EB0795D098B.bin.VF [L] VBS:FlufferMiner-D [Trj] (0)
Leave it in chest to be restored as this situation has been cleared up.

polonus

My virus info shows that it is in Windows Defender however the numbers after the mpache are different in my results.

In my full system scan the file name is mpache-5983114AD33BB72B1948A023C5C3B0E8DC7D5154.bin.VF

In my boot time scan trzF3B9.tmp was found

If the file names that I have are not the same as what you asked was flagged then is this still the same false positive issue and if it is false positives how long should I keep it in the chest before restoring it?

Thank you for your help.