False positive by DeepGuard (v4.10.50, IS 2012)

Dear Madam/Sir,

 

Yesterday DeepGuard was updated. From the logfile:

 

2013-03-11 12:21:58.589 [0220.2a38]  I: Downloaded 'F-Secure DeepGuard Update 2013-03-11_01' - 'hipsn' version '1362999601' from guts.sp.f-secure.com, 549377 bytes (download size 21770 bytes)
2013-03-11 12:21:58.870 [0220.0320]  I: Update check completed successfully.
2013-03-11 12:22:37.418 [0220.0904]  I: Installation of 'F-Secure DeepGuard Update 2013-03-11_01' : Success

 

DeepGuard just reported a program trying to connect to the internet, which is certainly not true. I am developing this program myself for 2 months now. I use Visual Studio 2010 C# and started the debugger today for the first time since the DeepGuard update. Before the last update I never had any problems with DeepGuard (or any IS2012 module).

 

My application does not use the registry and does not use an internet connection in any way. I have not even implemented file access yet!

 

Using:

Windows VIsta 32-bit SP2, latest updates

Computer Security 12.71 build 102
Anti-Virus 10.00 build 18410
DeepGuard 4.10 build 50
E-mail Filtering 1.02 build 13510
Management Agent 8.30 build 43098
User Interface 9.80 build 494

Comments

  • Hi Jason,

     

    Thanks for your reply!

     

    No problem, I can submit the current version of the program to your security lab, but it's the Visual Studio debugger that runs it. Doesn't that make a difference? I am not sure whether you can expect the same behaviour when ran outside the debugger.

     

    Kind regards,

     

    UpperKEES

  • Hi UpperKEES,

    Please include that in the description column or reply to the Lab Ticket so that our Analysts can test the sample in both enviroments.

    Thanks.


    Best Regards,
    Jayson

This discussion has been closed.
Feedback on New Design