Author Topic: False positive ATI Video drivers-SOLVED  (Read 13798 times)

0 Members and 1 Guest are viewing this topic.

Offline Soure73

  • Full Member
  • ***
  • Posts: 137
False positive ATI Video drivers-SOLVED
« on: December 26, 2010, 01:58:24 PM »
Using the latest virus database(101226-0) Avast5.1.845 beta with heuristics set to maximum detects some files on C:/Ati/Support/ as Win32:Malware-gen!
Does anybody else has the same problem? Using Windows 7 Home Premium 64bit and Ati drivers version 10.12 64bit.

« Last Edit: December 26, 2010, 11:28:26 PM by Soure73 »
HP Compaq with Amd AthlonII x2 2.7Ghz,4 Gig ram 1066 Mhz DDR3,ATI Radeon HD 3000(onboard),Windows 10 Home 64bit

Offline Pondus

  • Probably Bot
  • ****
  • Posts: 37547
  • Not a avast user
Re: False positive ATI Video drivers
« Reply #1 on: December 26, 2010, 02:06:46 PM »
can you upload the file to www.virustotal.com and test it with 43 malware scanners
when you have the result, copy the URL in the address bar and post it here

Hard_ROCKER

  • Guest
Re: False positive ATI Video drivers
« Reply #2 on: December 26, 2010, 02:09:47 PM »
You can delete that c:\ATI folder. It's just the unpacked driver installer in there so it's safe to delete. :)

Offline Soure73

  • Full Member
  • ***
  • Posts: 137
Re: False positive ATI Video drivers
« Reply #3 on: December 26, 2010, 02:15:16 PM »
This is the result scan of only one file, i'll try to post the rest later if needed: http://www.virustotal.com/file-scan/report.html?id=2a9d84b4e1c81adcee1edfd2f71e22b95ba920aec72430f90fa435705bea614a-1293369191
HP Compaq with Amd AthlonII x2 2.7Ghz,4 Gig ram 1066 Mhz DDR3,ATI Radeon HD 3000(onboard),Windows 10 Home 64bit

Offline Soure73

  • Full Member
  • ***
  • Posts: 137
Re: False positive ATI Video drivers
« Reply #4 on: December 26, 2010, 02:18:19 PM »
You can delete that c:\ATI folder. It's just the unpacked driver installer in there so it's safe to delete. :)

 Ok but only after we resolve this problem first ;)
HP Compaq with Amd AthlonII x2 2.7Ghz,4 Gig ram 1066 Mhz DDR3,ATI Radeon HD 3000(onboard),Windows 10 Home 64bit

Hard_ROCKER

  • Guest
Re: False positive ATI Video drivers
« Reply #5 on: December 26, 2010, 02:24:16 PM »
Sure i agree, this FP has to be resolved but just wanted to mention that those are installer files and are pretty useless anyway. Just taking up space IMHO. :)

I suspect though that this FP comes from the heuristics, no doubt cause you have it at the highest setting. Cause i don't get that FP at all and i am running the same build as you, same OS and same ATI drivers.

Offline Soure73

  • Full Member
  • ***
  • Posts: 137
Re: False positive ATI Video drivers
« Reply #6 on: December 26, 2010, 02:31:13 PM »
Sure i agree, this FP has to be resolved but just wanted to mention that those are installer files and are pretty useless anyway. Just taking up space IMHO. :)

I suspect though that this FP comes from the heuristics, no doubt cause you have it at the highest setting. Cause i don't get that FP at all and i am running the same build as you, same OS and same ATI drivers.

Well i disabled the heuristics and i get the same result? Maybe because i'm using Avast 5.1.845 beta?
HP Compaq with Amd AthlonII x2 2.7Ghz,4 Gig ram 1066 Mhz DDR3,ATI Radeon HD 3000(onboard),Windows 10 Home 64bit

Offline Pondus

  • Probably Bot
  • ****
  • Posts: 37547
  • Not a avast user
Re: False positive ATI Video drivers
« Reply #7 on: December 26, 2010, 02:31:29 PM »
Quote
I suspect though that this FP comes from the heuristics, no doubt cause you have it at the highest setting.
why is it then detected at VT ? ........or do they also use highest setting ?
« Last Edit: December 26, 2010, 02:35:07 PM by Pondus »

Offline Pondus

  • Probably Bot
  • ****
  • Posts: 37547
  • Not a avast user
Re: False positive ATI Video drivers
« Reply #8 on: December 26, 2010, 02:34:15 PM »
you can send the file(s) to    virus @ avast . com  in a password protected zip.file
subject: False Positive and password: infected


you may add a link to this topic in the mail

Offline Soure73

  • Full Member
  • ***
  • Posts: 137
Re: False positive ATI Video drivers
« Reply #9 on: December 26, 2010, 02:42:06 PM »
you can send the file(s) to    virus @ avast . com  in a password protected zip.file
subject: False Positive and password: infected


you may add a link to this topic in the mail

I already did sent one file to be analyzed via Avast chest
HP Compaq with Amd AthlonII x2 2.7Ghz,4 Gig ram 1066 Mhz DDR3,ATI Radeon HD 3000(onboard),Windows 10 Home 64bit

Hard_ROCKER

  • Guest
Re: False positive ATI Video drivers
« Reply #10 on: December 26, 2010, 02:42:28 PM »
@Pondus: I am gonna reinstall the drivers to see what's what. I'll report back.

Hard_ROCKER

  • Guest
Re: False positive ATI Video drivers
« Reply #11 on: December 26, 2010, 02:44:48 PM »
@Soure73: Do you have the 10.12 version with the old control center or the preview 10.12 driver with the new style control center ?

Offline Soure73

  • Full Member
  • ***
  • Posts: 137
Re: False positive ATI Video drivers
« Reply #12 on: December 26, 2010, 02:53:45 PM »
@Soure73: Do you have the 10.12 version with the old control center or the preview 10.12 driver with the new style control center ?

I downloaded the drivers here: http://sites.amd.com/us/game/downloads/Pages/integrated_win7-64.aspx and used the "AMD Catalystâ„¢ Accelerated Parallel Processing (APP) Technology Edition"

Ps: My Windows 7 Home Premium is 64 bit

HP Compaq with Amd AthlonII x2 2.7Ghz,4 Gig ram 1066 Mhz DDR3,ATI Radeon HD 3000(onboard),Windows 10 Home 64bit

Hard_ROCKER

  • Guest
Re: False positive ATI Video drivers
« Reply #13 on: December 26, 2010, 03:17:56 PM »
And that's exactly the version i have. Btw this file ATILog.dll is also in the program files folder. Scanned it and avast! says it's clean. I set the heuristics to max btw...

Offline Soure73

  • Full Member
  • ***
  • Posts: 137
Re: False positive ATI Video drivers
« Reply #14 on: December 26, 2010, 03:22:25 PM »
And that's exactly the version i have. Btw this file ATILog.dll is also in the program files folder. Scanned it and avast! says it's clean. I set the heuristics to max btw...

Really strange, even Malwarebytes won't detect anything, are you using the latest beta of Avast too?
And why only on my computer and virustotal are the places where this happens?

« Last Edit: December 26, 2010, 03:25:18 PM by Soure73 »
HP Compaq with Amd AthlonII x2 2.7Ghz,4 Gig ram 1066 Mhz DDR3,ATI Radeon HD 3000(onboard),Windows 10 Home 64bit