Jump to content

Feather Wallet - FALSE POSITIVE


Recommended Posts

Feather Wallet is legitimated Monero cryptocurrency wallet which I have used for a long time but recently it started getting deleted by Kaspersky Antivirus.

You can find it on https : // featherwallet . org /, download, test it, and please update your database ASAP!

Quote

Event: Malicious object detected
Application: feather.exe
User: XXXXXXXXXX
User type: Active user
Component: System Watcher
Result description: Detected
Type: Trojan
Name: PDM:Trojan.Win32.Generic
Threat level: High
Object type: Process
Object path: c:\program files\feather wallet
Object name: feather.exe
Reason: Databases
Databases release date: Yesterday, 16/09/2022 11:50:00

 

Link to comment
Share on other sites

Hi @harlan4096

  1. Not deleted, assigned Low Restricted, in KTS app control (image 1). 
  2. Also, Unknown &, fewer than 100 users, according to KSN (image 2).
  3. From the exe: VirusTotal - File - 0affc3e7ba24d0def89b47494abd70d9c2e726556b457c0fbb4e2ef1bb28d8f3
Spoiler

image.thumb.png.29056ba4875298228bc47e9926882d4c.png

Spoiler

image.thumb.png.c388c07d9072f192b568dcba7afef2b6.png

Thank you🙏
Flood🐳+🐋

Edited by Flood and Flood's wife
Link to comment
Share on other sites

Quote

 

Hello,

This is a false positive of the PDM module.
Detection will disappear within 24 hours.
Thank you for your help.

Sincerely, Alexander
Malware Analyst
39A/3 Leningradskoe Shosse, Moscow, 125212, Russia Tel./Fax: + 7 (495) 797 8700 http://www.kaspersky.com https://securelist.com
https://opentip.kaspersky.com/ - get insights about suspicious files, hashes, URLs, IP addresses or domain names

 

 

Link to comment
Share on other sites

Create an account or sign in to comment

You need to be a member in order to leave a comment

Create an account

Sign up for a new account in our community. It's easy!

Register a new account

Sign in

Already have an account? Sign in here.

Sign In Now
 Share



×
×
  • Create New...

Important Information

We have placed cookies on your device to help make this website better. You can adjust your cookie settings, otherwise we'll assume you're okay to continue.