Help - Search - Members
Full Version: GSI vs VirusTotal
Kaspersky Lab Forum > English User Forum > GetSystemInfo
Kenshi90
Hi guys,
I'd like to ask you a question: we were trying to help an user in the Italian forum, she posted this GSI log, which detected an infected object. But when we tried to analyse it on VirusTotal, it was not marked as a virus by Kaspersky.
Does anybody know the reason? Do GSI and Kaspersky use different scanners?
Thanks in advance,
Kenshi90
Baz^^
GSI doesn't use any engine... it's detection based on names/locations.


I would prefer to see "infected" changed to "possibly infected" because in most of the cases I have seen so far it has been wrong.
Kamille
It's a little bit more complicated but yes there is no "engine" wink.gif


Anyway, I added the word "Possibly" into the summary smile.gif
Thanks
Berny
Hello,

Tool "getsysteminfo.exe" as well as "combofix.exe" are also getting "marked" by VirusTotal,
but i assume we don't have to worry at all about this ...

Berny +++
Kamille
Citation (Berny @ 31.03.2009 10:08) *
but i assume we don't have to worry at all about this ...
Hi Berny !

Exactly wink.gif
This is a "lo-fi" version of our main content. To view the full version with more information, formatting and images, please click here.
Invision Power Board © 2001-2009 Invision Power Services, Inc.