Update: UltraVNC 1.4.3.6 and UltraVNC SC 1.4.3.6: viewtopic.php?t=37885
Important: Please update to latest version before to create a reply, a topic or an issue: viewtopic.php?t=37864

Join us on social networks and share our announcements:
- Website: https://uvnc.com/
- GitHub: https://github.com/ultravnc
- Mastodon: https://mastodon.social/@ultravnc
- Facebook: https://www.facebook.com/ultravnc1
- X/Twitter: https://twitter.com/ultravnc1
- Reddit community: https://www.reddit.com/r/ultravnc
- OpenHub: https://openhub.net/p/ultravnc

False positive detections

Post Reply
WindChaser
Posts: 1
Joined: 2015-10-09 12:12

False positive detections

Post by WindChaser »

Hi folks,

As a normal procedure, we always submit all our files to anti-viral software firms (i.e.: Norton, Kaspersky, McAfee, AVG, etc...) for inclusion in their whitelists in order to make sure that these files are included in their AV software definitions and are not mistaken for threats or false positives. However, it seems that Kaspersky is currently refusing to include the remote access tool that we created using the Single-Click procedure. The Kaspersky technical support department has indicated that they cannot include the file in their whitelist definitions because it contains the following:

(sha1) 0x66a2c4cb7957442c175628f550a54576d23896a2 - not-a-virus:RemoteAdmin.Win32.WinVNC.ahq, WinVNC.exe

(sha1) 0x7cafa32600e01d29eccae4329dc584f29cf86675 - not-a-virus:RemoteAdmin.Win32.WinVNC.ahq, SCHook.dll

(sha1) 0xb509f44bf10406f6340662d73a6202715cc8bc56 - not-a-virus:RemoteAdmin.Win32.WinVNC.ahq, VNCHooks.dll

Has anyone else encountered such a situation or know how to manage the circumstance?
24stdpcnotdienst
Posts: 4
Joined: 2016-03-14 18:32

Re: False positive detections

Post by 24stdpcnotdienst »

We have the same problem - and the joke is you can add the thing in the exclutions/trusted applications ... the problems remain the same!
So if somebody has any solution for this problem....
Rules are for exemple: ....temp\7z*\vnchooks.dll because the temp path changes.
Post Reply