Author Topic: A lot of FP in new update  (Read 2033 times)

0 Members and 1 Guest are viewing this topic.


  • Guest
A lot of FP in new update
« on: April 24, 2008, 07:15:00 PM »
Since yesterday i get few FP..
For instance, it says a hc.dll (22mb size) in one ISO image file for "hard to be a god" video game (around 2gb size) is Win32: Ranky-ID (Trj) which is simply impossible because i have this iso on desktop for...almost 4 months and avast never complayed about it..and i doubt any virus or trojan would create  22mb size trojan  in existing ISO image...
It also found in system volume information folder...but cant find it i dont know which trojan was found...maybe ranky-id again..
I have avast 4.8 professional
vps file version 080424-0

« Last Edit: April 24, 2008, 07:27:54 PM by next_sa_pulpom »

Offline Lisandro

  • Avast team
  • Certainly Bot
  • *
  • Posts: 67194
Re: A lot of FP in new update
« Reply #1 on: April 24, 2008, 07:17:46 PM »
Can you send the samples to ?
You can zip and password the files... Inform a link to this thread and the password used.
You can send the files to Chest and, from there, resend to Alwil for analysis.

Although, you can use Alwil FTP server as a second way to transfer only big files. Upload them to (please, note that you won't have READ access to the ftp server, just write - so you won't even be able to see what you've just uploaded).
The best things in life are free.


  • Guest
Re: A lot of FP in new update
« Reply #2 on: April 24, 2008, 07:27:35 PM »
allright, ill upload hc.dll...21.9mb..
ok, its rar-ed, password is and im uploading it to ftp serv..
eta 15 min..
edit: blah...connection broke..
now i cant upload it with hc.rar name so i rename it to hc1.rar
« Last Edit: April 24, 2008, 07:55:14 PM by next_sa_pulpom »


  • Guest
Re: A lot of FP in new update
« Reply #3 on: April 30, 2008, 06:08:33 PM »
I just had avast complain about the exact same file, exact same trojan detected. This file is part of my install of the "The Witcher". I've uploaded it to the ftp site you mentioned, filename, password "virus".