Please add the functionality to bypass scanning of files with valid signatures from well-known vendors. This would dramatically reduce the number of false positives with Heuristic, SONAR, or Insight scans. For example, there should be no reason to categorize as malware a .cab file that's been signed by Microsoft or Citrix and the hash verified. This would also improve performance since the vast majority of system files are signed. There should be an option for administrators to enable this functionality if they choose to.
↧