matlihan
Newbie
Posts: 1
Registered: 12-5-2017
Member Is Offline
Mood: No Mood
|
|
installation halted by antivirus program
I run ESET antivirus which removes the *exe post installation of GSB, claiming it contains malicious code. I assume this is a false positive, please
confirm.
|
|
|
Carl
Member
 
Posts: 343
Registered: 10-5-2017
Member Is Offline
Mood: No Mood
|
|
Hi Matlihan,
I have the same issues with Avira Antivirus and Norton Security.
According to Avira and Norton every GSB update contains a different kind of malicious code
Carl
|
|
|
admin
Super Administrator
       
Posts: 5069
Registered: 7-4-2017
Member Is Offline
Mood: No Mood
|
|
Ive looked into why this happens. GSB code is obfuscated so it cant be reverse engineered or illegally copied.
People who make virus also obfuscate their code. As AV programs cant tell the content of obfuscated code, all obfuscated coded is treated as a virus.
The only thing solution I can think of is to turn off AV when you install, and the add gsb.exe to excluded file, or better still add the GSB folder to
exclusion.
That would be better as there tend to be GSB updates most weeks, and it would stop the problem for future installs.
|
|
|
admin
Super Administrator
       
Posts: 5069
Registered: 7-4-2017
Member Is Offline
Mood: No Mood
|
|
I have found a potential fix that will be applied after version 19.96. Please give feedback if this works or fails.
|
|
|
admin
Super Administrator
       
Posts: 5069
Registered: 7-4-2017
Member Is Offline
Mood: No Mood
|
|
This MIGHT be fixed in today's build
|
|
|
Carl
Member
 
Posts: 343
Registered: 10-5-2017
Member Is Offline
Mood: No Mood
|
|
Avira antivirus is okay with GSB version 20.1.
But Norton Security still does see a possible threat in 20.1: Heur.AdvML.B.
|
|
|
admin
Super Administrator
       
Posts: 5069
Registered: 7-4-2017
Member Is Offline
Mood: No Mood
|
|
Thanks for comments Carl. I dont see any fix for this apart from disabled av during install, and or whitelist the gsb folder and or exe file.
|
|
|
admin
Super Administrator
       
Posts: 5069
Registered: 7-4-2017
Member Is Offline
Mood: No Mood
|
|
I have this fixed, and know how to verify it. Use https://virustotal.com/
anything after 20.3 will be ok now.
|
|
|