Collapse column

 Main Menu -


 Last Topics -

FP on yorkyt.exe by Avast and 3 other Vendors 
Last update: jack_harold  - April 13, 2012, 02:30:22 AM
FP on theduel.exe F-secure, Bitdefender,nod32,Symantec and other 10 AV 
Last update: jack_harold  - April 12, 2012, 03:05:54 AM
FP on Classroom-Spy-Professional and ByteHero 
Last update: jack_harold  - March 27, 2012, 04:38:32 AM
Maximum Software Bug Doctor v7. 
Last update: fpr  - March 27, 2012, 02:06:41 AM
MOVED: False Positive on PEBench (exe) load time benchmark tool 
Last update: fpr  - March 25, 2012, 12:47:44 AM

 Users online -

5 Guests, 0 Users


Most Online Today: 13.
Most Online Ever: 37 (October 07, 2011, 12:09:30 PM)


-

Connect With Us

FPR On Twitter
FPR On Facebook
FPR On G+


Our Mission

Accountability. Transparency. Communication. Prevention.

Helping to prevent false positives and mis-rating of web sites, instead of merely retroactively addressing them

This is an effort to help slow, and document, the plague of false positives and mis-rated web sites that are harming countless small businesses every year. Some security companies do better than others, but never before has there been a place where false positives and mis-rated sites can be publicly reported. The security companies can then respond, fix the issue, then determine why it happened and work with the vendor to avoid it in the future. After all, once a false positive happens, damage is already done, so avoidance is paramount.

This is NOT about crucifying security companies. They have a terribly hard job. This site is about showing which companies are doing the best to avoid collateral damage. It is also intended to facilitate the mitigation of collateral damage when it occurs, and, through communication, help prevent collateral damage (FPs) from recurring. For instance, why did the FP or mis-rating occur? What can be done to avoid it in the future?

Also remember, public transparency and accountability will let consumers know which security companies care about the collateral damage they inflict. Is this not important in your purchasing decision? If not, it should be . By choosing carefully with whom you spend your money, YOU can help ensure companies behave ethically.

Here you can:

  1. Report false positives and mis-rated sites in REAL TIME to a CENTRAL LOCATION. Companies will know where to find false positives and mis-rated sites, if they care to look.
  2. You can then see which companies care to fix these issues, and how fast. You can also see which companies are interested in AVOIDING them in the future.
  3. Communicate with security companies to fix these issues, and help avoid these problems from recurring.
  4. Provide historical stories about damage inflicted to your innocent business and/or family.
  5. Communicate with other software vendors with similar concerns and troubles.

We can NOT guarantee a fix for your problem, that is not what this is about. While it is entirely possible that reporting here may lead to a fix, it is not our issue to fix, and no warranties are provided, expressed or implied. Please see the registration agreement when you sign up for additional legal agreements.


SUBMISSION GUIDELINES

It is important that security vendors can find their false positives or mis-ratings easily, so be sure to list the company name first. Then list what the false positive or rating is on. Then, in the content, go on to describe the trouble, how long it has persisted, if it has recurred, if they have been responsive, etc... You need NOT contact them first before reporting here. Eventually we would like for them to be monitoring this site so closely that they take care of issues without wasting the time of the already 'violated' innocent business or person.

The more information you provide, the more likely you are to get a quick resolution. Remember, we must verify false positives and mis-rated sites, we can not just take every once at face value (else we'd be abused).

ALL SUBMISSIONS SHOULD COME WITH A VIRUSTOTAL REPORT - AT LEAST

DO NOT LINK DIRECTLY TO THE AFFECTED FILES OR URL UNLESS YOU SWITCH HTTP WITH HXXP (so the link is not 'active')
NEVER RUN ANYTHING SUBMITTED ON THIS SITE, JUST TO BE SAFE.



Example False Positive:


Subject: Security software or company X False Positive on my software GameFortyFive
Content: This was first noticed on MM/DD/YYYY. We tried to get it resolved (or maybe you just came directly here). We have not been able to get any response or resolution! We would like to know why this happened, and what can be done to avoid it in the future.
(required) The VirusTotal report is here: xxxxxxx
(optional) MyWot history of the hosting domain is here: xxxxxx
(optional) TrustedSource history for the hosting domain is here: xxxxx

ALL URLs except VirusTotal, MyWot, and/or TrustedSource results should have HXXP instead of HTTP used to protect users from running any invalid submissions, and to protect this site itself from being rated RED.


Example Mis-Rating:

Subject:Security software or company X Mis-Rating on entire domain or specific URL: hxxp://example.com/SpecificFolderOrFileOrFullDomain
Content This was first noticed on MM/DD/YYYY. We tried to get it resolved (or maybe you just came directly here). We have not been able to get any response or resolution! We would like to know why this happened, and what can be done to avoid it in the future.
(required) The VirusTotal report for this domain is here: xxxxxxx
(optional) MyWot history of the hosting domain is here: xxxxxx
(optional) TrustedSource history for the hosting domain is here: xxxxx

ALL URLs except VirusTotal, MyWot, and/or TrustedSource results should have HXXP instead of HTTP used to protect users from running any invalid submissions, and to protect this site itself from being rated RED.






SOFTWARE VENDORS AND SITE OWNERS: Surely a false positive or mis-rating has happened to you at some point (if not, maybe you should check http://VirusTotal.com to be sure). It may have been resolved quickly, as most security companies are responsive to false positive problems. However, it is important that you support and backlink to this effort. The security companies do not hate this effort, they want to help - they do not like false positives or mis-rated sites any more than us. So, have no fear, and please backlink to us out of principle. You can always remove it later, if you have cause to..


FPR backlink
[smaller backlink image]

Backlink customized FPR images AND main logo by Rh Jannini, a wonderfully talented graphics artist.