Author Topic: Driver\cx88vid.sys false positive  (Read 5484 times)

0 Members and 1 Guest are viewing this topic.

Offline magna86

  • Anti Malware Fighter
  • Avast Evangelist
  • Massive Poster
  • ***
  • Posts: 4235
    • Ambulanta MyCity Forum - ASAP Member
Driver\cx88vid.sys false positive
« on: June 24, 2010, 10:42:09 PM »
Hello avast team  ;)

avast5 AV were reported to me that this file is malware.

Code: [Select]
C:\Windows\System32\drivers\cx88vid.sys
Of course it is a false positive.
I send cx88vid.sys to virustotal.

Virustotal link:
http://www.virustotal.com/analisis/3745895e431ff3dcbe7182446589827195d552e4803f98bce13c25302383ab48-1277313745

Screen Shot of avast which were report:



if you need a copy of the file...just asc  :)
OS is Windows7

Greeting

Offline DavidR

  • Avast Überevangelist
  • Certainly Bot
  • *****
  • Posts: 89116
  • No support PMs thanks
Re: Driver\cx88vid.sys false positive
« Reply #1 on: June 24, 2010, 11:25:54 PM »
I would say it is highly unlikely that a VT scan would find anything wrong as it isn't doing the same anti-rootkit scan as you can see from the VT results even avast doesn't detect it on a conventional scan.

The file should be uploaded (or details about the detection) to avast as is suggested you allow it to be sent. I think this happens automatically during update checks if you have enabled the Community participation, see image.
Windows 10 Home 64bit/ Acer Aspire F15/ Intel Core i5 7200U 2.5GHz, 8GB DDR4 memory, 256GB SSD, 1TB HDD/ avast! free 24.3.6108 (build 24.3.8975.762) UI 1.0.801/ Firefox, uBlock Origin, uMatrix/ MailWasher Pro/ Avast! Mobile Security

Offline magna86

  • Anti Malware Fighter
  • Avast Evangelist
  • Massive Poster
  • ***
  • Posts: 4235
    • Ambulanta MyCity Forum - ASAP Member
Re: Driver\cx88vid.sys false positive
« Reply #2 on: June 25, 2010, 12:05:53 AM »
Hi...

this option has already been activated.
I sent a copy of that file to your mail for examples of malware.
Code: [Select]
virus@avast.com Is this Ok?  :)

Offline DavidR

  • Avast Überevangelist
  • Certainly Bot
  • *****
  • Posts: 89116
  • No support PMs thanks
Re: Driver\cx88vid.sys false positive
« Reply #3 on: June 25, 2010, 12:22:26 AM »
It isn't my email, I'm just an avast user like yourself ;D

However, that is the correct email address, ideally the file should be zipped in a password protected archive and attached to the email with the password in the email and false positive in the email subject.
Windows 10 Home 64bit/ Acer Aspire F15/ Intel Core i5 7200U 2.5GHz, 8GB DDR4 memory, 256GB SSD, 1TB HDD/ avast! free 24.3.6108 (build 24.3.8975.762) UI 1.0.801/ Firefox, uBlock Origin, uMatrix/ MailWasher Pro/ Avast! Mobile Security

Offline magna86

  • Anti Malware Fighter
  • Avast Evangelist
  • Massive Poster
  • ***
  • Posts: 4235
    • Ambulanta MyCity Forum - ASAP Member
Re: Driver\cx88vid.sys false positive
« Reply #4 on: June 25, 2010, 01:22:09 AM »
Quote
It isn't my email, I'm just an avast user like yourself

i know...english is not my home language...sow i made mistake...  ;D
 i put password on archive...they know password
 thx for everything   ;)

Offline DavidR

  • Avast Überevangelist
  • Certainly Bot
  • *****
  • Posts: 89116
  • No support PMs thanks
Re: Driver\cx88vid.sys false positive
« Reply #5 on: June 25, 2010, 02:17:26 AM »
You're welcome.
Windows 10 Home 64bit/ Acer Aspire F15/ Intel Core i5 7200U 2.5GHz, 8GB DDR4 memory, 256GB SSD, 1TB HDD/ avast! free 24.3.6108 (build 24.3.8975.762) UI 1.0.801/ Firefox, uBlock Origin, uMatrix/ MailWasher Pro/ Avast! Mobile Security

Offline Milos

  • Avast team
  • Super Poster
  • *
  • Posts: 2294
Re: Driver\cx88vid.sys false positive
« Reply #6 on: June 25, 2010, 07:43:49 AM »
Hello avast team  ;)

avast5 AV were reported to me that this file is malware.

Code: [Select]
C:\Windows\System32\drivers\cx88vid.sys
Of course it is a false positive.
I send cx88vid.sys to virustotal.

Virustotal link:
http://www.virustotal.com/analisis/3745895e431ff3dcbe7182446589827195d552e4803f98bce13c25302383ab48-1277313745

Screen Shot of avast which were report:



if you need a copy of the file...just asc  :)
OS is Windows7

Greeting

Hello,
it is detected by antirootkit module, not by VPS (so it's not detected on VT), I'll resent it to our antirrotkit developers.

Milos

Offline magna86

  • Anti Malware Fighter
  • Avast Evangelist
  • Massive Poster
  • ***
  • Posts: 4235
    • Ambulanta MyCity Forum - ASAP Member
Re: Driver\cx88vid.sys false positive
« Reply #7 on: June 25, 2010, 02:03:31 PM »
I think...this is a driver for TV card ... :-\
or...
http://www.runscanner.net/lib/CX88Vid.sys.html

pls ...If you are not a problem let me know what you found.

Thanks ;)