False Positives

Win32.Agent.wlv

For some strange reason, some of the files offered here for download are flagged as being infected with Win32.Agent.wlv by Aladdin esafe. Aladdin esafe is the only such scanner to reach this conclusion and only on certain RAR archives offered here. I haven't the foggiest idea why it thinks they're infected, but here's what I know:

  • The files listed as being infected are all WinRAR archives of older Boredom Software programs. These programs were created using (now) obsolete versions of a particular IDE and packed using an older version of WinRAR. I don't know if these facts have anything to do with this false positive, but they seem to be the only common thread shared by the "infected" files and not found in the newer files which are not "infected."

For example, here is a link to the VirusTotal analysis for the downloadable RAR archive one of my older programs, Windows Reactivator: Link. As you can see, esafe is the only scanner that finds anything unusual.

Win32/Kryptik.YI

More recently, Nod32 has been detecting all my stuff as being "a variant of Win32/Kryptik.YI." This is likely due to my use of the UPX PE Packer. I have contacted ESET regarding this. Virus Total Scan (Note: ESET has confirmed the false positive and updated their detection engine.)

PAK_Generic.001

Same as above except using Trend Micro instead of Nod32. Virus Total Scan

Medium Risk Malware

Same as above except using Prevx instead of Nod32. Virus Total Scan

Win32:Malware-Gen

About every month or so, Avast Antivirus decides that my VolControl application is infected with this malware. The eminently descriptive name given indicates that this is a heuristic detection, so there's not a whole lot for me to do about it aside from bitch at Avast. Virus Total Scan