Community
Ru 6.9 detected by Mcafee EndPoint Security
Links used in this discussion
Thank you for the report. We will immediately contact McAfee and submit a false positive removal request.
After a few days, mcafee endpoint is finding rutviewer.exe as a threat again.
Thank you
Thank you for your message.
So they are detecting the same file with the same hash and signature all over again :) We can only hope that they are much better at detecting viruses and trojans than at not detecting legitimate software.
Thank you for your message.
We participate in McAfee whitelisting program and provided all our program files to them. They said they whitelisted them. We immediately inform McAfee whenever they falsely detect our software as malware and they report that they fixed the issue. For example, it was just a few days ago that there was yet another false positive that they said they fixed.
Pardon my sarcasm, but what makes users ask us for help in this situation, and not ask McAfee to help? How can we help if an antivirus software company falsely detects a legitimate and digitally signed file (the same file, not even changed) again and again? It's them, not us who mistakenly detect and remove legitimate software from your computer.
Please, don't think that we don't want to help you. We do. But we can only help with matters that we have at least some control over.
first of all, thank you for your support. It's very appreciated.
In order to respond to your legitimate sarcasm, I'll tell you that I opened a support request with mcafee on 21 November. I submitted a "false positive" request on rutview.exe file. That request is still open without any response.
In my specific case, I asked for help to both parties, as we have a solid security policy based on Macafee products ( about which we are satisfied as far as
security is concerned); however, if this problem is not completely solved we will be forced to choose a different product for remote assistance, much to our regret,
considering that RU is a very, very good product.
I anyway still wonder why so many antivirus products detect RU as a threat.
Thanks in advance for your support.
Best Regards
I am sorry to hear that. But this is also beyond our control. We cannot make McAfee become more customer-oriented overnight even if we wanted.In order to respond to your legitimate sarcasm, I'll tell you that I opened a support request with mcafee on 21 November. I submitted a "false positive" request on rutview.exe file. That request is still open without any response.
Thank you for the kind words. Actually, we are very sorry to hear that antivirus software companies care so little about their customers' business.In my specific case, I asked for help to both parties, as we have a solid security policy based on Macafee products ( about which we are satisfied as far as
security is concerned); however, if this problem is not completely solved we will be forced to choose a different product for remote assistance, much to our regret,
considering that RU is a very, very good product.
I'm afraid you are exaggerating. Here is a current VirusTotal report on rutview.exe (version 6.9, the current one).I anyway still wonder why so many antivirus products detect RU as a threat.
Rising is a Chinese antivirus that are really hard to get in contact with. As for Yandex, this is a Russian web browser "antivirus engine" that we still can't make stop detecting our software despite the fact they we contacted them and they said that they are working on the problem.
Thanks.
P.S. Sorry, modified the post since the VirusTotal link just wouldn't work properly. Now it works ok through a URL shortener.
I don't know how VirusTotal works, but that report doesn't reflect the reality.
Mcafee is listed as "clean" but despite this RUviewer.exe is still identified as a threat on our systems (to be more precise: it is identified as "Threat Prevention False Positive Mitigation").
However: I'm doing all I can in order to resolve this issue. If there is more I can do, please let me know.
From our past experience this report is very close to reality. Whenever there was a complaint by a customer that this or that a/v engines falsely detects the product, the detection was also present on VirusTotal.I don't know how VirusTotal works, but that report doesn't reflect the reality.
There might be two reasons - either you have outdated signature/definitions databases or this is a different McAfee product, not the one listed on VirusTotal.Mcafee is listed as "clean" but despite this RUviewer.exe is still identified as a threat on our systems (to be more precise: it is identified as "Threat Prevention False Positive Mitigation").
The only way to resolve this, in the end, is to contact McAfee and ask them to remove this detection. No amount of our discussion or willingness to help on our end can help fix this problem :)However: I'm doing all I can in order to resolve this issue. If there is more I can do, please let me know.
* Website time zone: America/New_York (UTC -5)