you are getting false positives: the AV can truly detect only virus included in their virus databases. that means the new virus, not yet included on those databases, could damage the computer. to prevent that, the AV use 'heuristics', a methodology that tries to detect virus that are not yet included in the database. it does that by comparing the features of a file with those of a virus: if a file shares some features with a virus, it becames suspicious, and you get a virus warning as crossfire…