#4420 Clicking Ignore after discovering risky behavior has no effect.
Information provided, last edited by Jarvis last edited by Jarvis
The reproduced video and trace are placed in the network disk.
The "Ignore" button doesn't work.
The "Ignore" button works.
Operating system: Win 11, x64
System: Intel Core i7 10700k, Samsung 970 EVO Plus
Product Version: 126.96.36.1995
Product Logs: https://pan.huang1111.cn/s/ygebt6
I think the choice of how to handle this threat should be left to the user, as it could be a false positive by the program.
Hello! Let me explain. It's particularity of our "curing" process: when a threat is founded, two parallel process start: 1) AV starts to "cure" threat, it locks file and has highest priority 2) notification is shown in notification center. Its a "backup" action to solve minor threats (like an official apps, which can be used to harm you), or if first auto-AV process has failed. Our release-state app should do both process "almost simultaneously", so user won't see a notification and can click several times button without effect.
This is a game accelerator, but it will modify the hosts file to set the resolution of some specific addresses to fixed IPs, and then redirect these IPs through the game accelerator. It is modified in a special way. It will first rename the hosts file to hostvk. Then add a hosts file, this behavior will be recognized as dangerous behavior by Kaspersky.
This behavior can be ignored by clicking the "Ignore" button in 21MR3, which should be a bug in the Beta version.