Reporting False Positive on behalf of a Software Vendor


Dave_Coleman wrote:

http://community.norton.com/t5/Norton-Internet-Security-Norton/How-To-Report-a-False-Positive/td-p/228110

 

In any of these cases Norton offers a fast and simple way to dispute our detection or categorization of a file.  Simply go to: https://submit.symantec.com/dispute/ to enter your dispute.  The forms are monitored 24 hours a day so that Norton can immediately begin to research and correct any issue.


I have some issues which although raised in the past have never been responded to.

Some of the forms are clearly marked "!The software vendor making the claim must complete the form before Symantec will begin a review"

 

If you are asking users to complete for example a Security Risk Dispute Submission or False Positive Submission it seems to me that the form prohibits such reporting unless the user is the owner/vendor.

 

Even though the form  says "I am the vendor of the potentionally mis-identified software yes/no, the preamble is clear.

 

Moreover the form requires information as mandatory that may not be possible for example Company Name. Not all users have a company.

 

I have completed this form (as best I can) in the past and never had any feedback one way or the other.

 

I think some general clarification will help others... I am probably a lost cause.

 

<<Edit: Subject edited as a result of moving the message to a thread of its own. Included link to the thread that is reffered.>>


Dave_Coleman wrote:

http://community.norton.com/t5/Norton-Internet-Security-Norton/How-To-Report-a-False-Positive/td-p/228110

 

In any of these cases Norton offers a fast and simple way to dispute our detection or categorization of a file.  Simply go to: https://submit.symantec.com/dispute/ to enter your dispute.  The forms are monitored 24 hours a day so that Norton can immediately begin to research and correct any issue.


I have some issues which although raised in the past have never been responded to.

Some of the forms are clearly marked "!The software vendor making the claim must complete the form before Symantec will begin a review"

 

If you are asking users to complete for example a Security Risk Dispute Submission or False Positive Submission it seems to me that the form prohibits such reporting unless the user is the owner/vendor.

 

Even though the form  says "I am the vendor of the potentionally mis-identified software yes/no, the preamble is clear.

 

Moreover the form requires information as mandatory that may not be possible for example Company Name. Not all users have a company.

 

I have completed this form (as best I can) in the past and never had any feedback one way or the other.

 

I think some general clarification will help others... I am probably a lost cause.

 

<<Edit: Subject edited as a result of moving the message to a thread of its own. Included link to the thread that is reffered.>>

Most of our submission actually come from software vendors, so I suppose the form has evolved to cater more to them than user submissions.  Fair comment that we need to make it friendlier to one and all.

 

We make thing mandatory because we need the information to resolve the issue as quickly as possible.  A lot of valuable time can be lost in a back and forth trying to get the information we need.  We’ve tried just explaining how important it is.  That doesn’t seem to work.  That said, people find a way to submit without the mandatory information.  I take from your post that you did.  So it’s really not that mandatory.  We understand you may not know something, don’t let that stop you from submitting. 

 

Whether you are the vendor or not you should receive acknowledgement of a submission.   If you haven’t that’s an error on our part.   You should receive an immediate acknowledgement of the submission with a tracking number.  If you have any of those send them to me and I will run down what happened.  If you didn’t even get that much of an acknowledgement check your junk email folder.  The system is automated and this would be the first time I’ve head of an issue.  But we’ll double check on our end.

 

We are currently working on a redesign of the page.  Your comments are well timed and we will try to work out the issues you raised as part of improving the page.

 

Kevin


Kevin_Haley wrote:

 

Whether you are the vendor or not you should receive acknowledgement of a submission.   If you haven’t that’s an error on our part.   You should receive an immediate acknowledgement of the submission with a tracking number. .

 

Kevin


With respect here is the email as received save only that I have blanked my email address. Can you spot the tracking number?

 

To: moi
From: SecurityResponseSubmissions@symantec.com
Subject: False Positive Submission Confirmation
Thank you for your submission.

We have received your recent inquiry to Symantec's Detection Review database. Complete submissions with all necessary information will be processed immediately. Once a determination has been made regarding your submission you will be notified via e-mail as to the decision made and the next steps, if any. For False Positive dispute submissions, Symantec will target a response of our final determination within 2 working days (Mon - Fri). This timeframe is subject to Symantec being supplied with all the necessary information to allow for a proper determination. Submission of incomplete information may result in a delay of the final determination. Any request for additional information regarding your submission will be sent to the contact email address you provided at the time of submission.

Sincerely,

Symantec Security Response
http://securityresponse.symantec.com