Bitcoin Forum

Alternate cryptocurrencies => Altcoin Discussion => Topic started by: digitalindustry on May 12, 2013, 02:52:07 AM



Title: Kaspersky marks cgminer 3.0 as a dangerous object and deletes it.
Post by: digitalindustry on May 12, 2013, 02:52:07 AM
I got it from Github.

: \

normally i wouldn't mention it but Kaspersky im my opinion the best anti malware out - is usally on the spot knowing what is and isn't malware?

fresh Win 7 install {not rig setup just PC} - only thing that has been loaded is Kaspersky - from disc, then put USB from other PC in.

- ALL DATABASES WERE UPDATED - AS WAS ALL WIN UPDATES.

EDIT**

I BELEIVE I FOUND THE PROBLEM -


after trying to figure it out - i went and downloaded it again from the clean OS install and checked it and it came up fine -

so then i put that clean version CGminer unpacked onto the USB - and put the usb back to the other computer , then screwed around for a while , then back to the clean OS

sure enough , a virus that must be present on the other machine is infecting CGminer.

lucky I haven't been mining yet , looks like i'll be reinstalling that .





Title: Re: Kaspersky marks cgminer 3.0 as a dangerous object and deletes it.
Post by: Number6 on May 12, 2013, 03:06:54 AM
That is what scares me about all those so-called virus scanners and malware protection programs. Not saying the version of cgminer you had wasn't a virus, maybe it was, but it does seem too many of these simply hit on the names and do not do a real in-depth review of the files. Sure they may look at file sizes and a few other criteria, but I think they too often give a false sense of protection when they sound the all-clear. I guess I would rather them have a few false positives rather than the other way, but it still seems like they could be doing a better job.


Title: Re: Kaspersky marks cgminer 3.0 as a dangerous object and deletes it.
Post by: computerparts on May 12, 2013, 03:20:14 AM
just google before making stupid posts like this  ::)


Title: Re: Kaspersky marks cgminer 3.0 as a dangerous object and deletes it.
Post by: digitalindustry on May 12, 2013, 03:34:21 AM
That is what scares me about all those so-called virus scanners and malware protection programs. Not saying the version of cgminer you had wasn't a virus, maybe it was, but it does seem too many of these simply hit on the names and do not do a real in-depth review of the files. Sure they may look at file sizes and a few other criteria, but I think they too often give a false sense of protection when they sound the all-clear. I guess I would rather them have a few false positives rather than the other way, but it still seems like they could be doing a better job.

yeh the reason i posted is becasue from my experience , Kaspersky actually does do a good job in that respect, for example most of the time Kas will recogize all non malware - this time straight up deleted it.

ok computer parts, thanks for the feedback...

i Googled "computerparts beating off to pictuers of his mum"

didn't get anything about CGminer but.

thanks anyhow.



Title: Re: Kaspersky marks cgminer 3.0 as a dangerous object and deletes it.
Post by: Tittiez on May 12, 2013, 03:37:30 AM
I got it from Github.

: \

normally i wouldn't mention it but Kaspersky im my opinion the best anti malware out - is usally on the spot knowing what is and isn't malware?

fresh Win 7 install {not rig setup just PC} - only thing that has been loaded is Kaspersky - from disc, then put USB from other PC in.



It autodeletes it because people commonly use cgminer for botnets. Add it to exceptions.


Title: Re: Kaspersky marks cgminer 3.0 as a dangerous object and deletes it.
Post by: Rave on May 12, 2013, 03:40:18 AM
just google before making stupid posts like this  ::)
I love it, when I google something and the first 3 results link to a forum where there's alway this one guy which tells me to google it. Maybe it's always the same guy. It might be a conspiracy.


Title: Re: Kaspersky marks cgminer 3.0 as a dangerous object and deletes it.
Post by: digitalindustry on May 12, 2013, 03:43:29 AM
I got it from Github.

: \

normally i wouldn't mention it but Kaspersky im my opinion the best anti malware out - is usally on the spot knowing what is and isn't malware?

fresh Win 7 install {not rig setup just PC} - only thing that has been loaded is Kaspersky - from disc, then put USB from other PC in.



It autodeletes it because people commonly use cgminer for botnets. Add it to exceptions.

yeah , maybe i will, or maybe i'll contact Kaspersky and submit the file and ask for an explanation,  rather than just "marking for exclusion" something that is marked as a Virus.

50% of hacking is social engineering.  


Title: Re: Kaspersky marks cgminer 3.0 as a dangerous object and deletes it.
Post by: digitalindustry on May 12, 2013, 03:44:24 AM
just google before making stupid posts like this  ::)
I love it, when I google something and the first 3 results link to a forum where there's alway this one guy which tells me to google it. Maybe it's always the same guy. It might be a conspiracy.

+1

just gold pure gold !


Title: Re: Kaspersky marks cgminer 3.0 as a dangerous object and deletes it.
Post by: MrWizard on May 12, 2013, 07:45:47 AM
I have Kaspersky anti-virus and I have all versions of cgminer, and I get no complaints from Kaspersky for any of them. 


Title: Re: Kaspersky marks cgminer 3.0 as a dangerous object and deletes it.
Post by: Punkonjunk on May 12, 2013, 07:51:05 AM
update your definitions, don't load AV from a disk. you should always be installing from kasp's website, NOT a disk. The disk will not be up to date.

I can't speak to kasp's realtime AV, but they make some really nice tools.

It shouldn't detect cgminer unless it's baked into or bundled into a payload elseways: to do so would just be lazy, which they usually aren't.

I'm guessing you need to update your definitions and it will clear fine. It's probably outdated on the defs, as you installed it from the disk, and it's hueristics are having a shit fit.

Why are you installing it from the disk, anyhow? If the machine isn't connected to the internet, or can't connect to the internet, you don't need antivirus on it. No network means it's not vulnerable online, only in meatspace. But.... no network would also mean no mining.

Download the AV from the manufacturer. Don't install from a disk. DUH.

(I work in malware research on wild samples. I run MSE because it's free, but I have a bias in that i know what i'm touching and what it's doing and why, and I can clear anything that gets into my system.... which it doesn't.)


Title: Re: Kaspersky marks cgminer 3.0 as a dangerous object and deletes it.
Post by: digitalindustry on May 12, 2013, 07:54:47 AM
I have Kaspersky anti-virus and I have all versions of cgminer, and I get no complaints from Kaspersky for any of them. 

how long have you had it Kaspersky , and how old is your install of OS?


Just to give you feedback , my OS is less than 24hour old, and never went onto the net until the Disc version of Kaspersky was loaded, then secure connected to update database- the Version of Kaspersky is 2013.


Then after that updated all the Win hotfix.

Then went to this forum.

DL Cgminer from a diff computer put into new install Kaspersky marked and deleted the file.

before that it had marked many as "Keys" or "not a virus" - {yellow}

marked CGminer - {RED} and Deleted it.

i will send Kaspersky support an email today or toinight, just to give the feedback.


Title: Re: Kaspersky marks cgminer 3.0 as a dangerous object and deletes it.
Post by: digitalindustry on May 12, 2013, 07:56:27 AM
update your definitions, don't load AV from a disk. you should always be installing from kasp's website, NOT a disk. The disk will not be up to date.

I can't speak to kasp's realtime AV, but they make some really nice tools.

It shouldn't detect cgminer unless it's baked into or bundled into a payload elseways: to do so would just be lazy, which they usually aren't.

I'm guessing you need to update your definitions and it will clear fine. It's probably outdated on the defs, as you installed it from the disk, and it's hueristics are having a shit fit.

Why are you installing it from the disk, anyhow? If the machine isn't connected to the internet, or can't connect to the internet, you don't need antivirus on it. No network means it's not vulnerable online, only in meatspace. But.... no network would also mean no mining.

Download the AV from the manufacturer. Don't install from a disk. DUH.

(I work in malware research on wild samples. I run MSE because it's free, but I have a bias in that i know what i'm touching and what it's doing and why, and I can clear anything that gets into my system.... which it doesn't.)

i'm just going to assume you are retarded ok.


Title: Re: Kaspersky marks cgminer 3.0 as a dangerous object and deletes it.
Post by: Punkonjunk on May 12, 2013, 08:06:52 AM
and I'm going to assume you don't know how to whitelist something you know is legit. Or shutdown your AV temporarily. Good luck! you not hashing is my diff staying down.


Title: Re: Kaspersky marks cgminer 3.0 as a dangerous object and deletes it.
Post by: computerparts on May 12, 2013, 06:40:40 PM
That is what scares me about all those so-called virus scanners and malware protection programs. Not saying the version of cgminer you had wasn't a virus, maybe it was, but it does seem too many of these simply hit on the names and do not do a real in-depth review of the files. Sure they may look at file sizes and a few other criteria, but I think they too often give a false sense of protection when they sound the all-clear. I guess I would rather them have a few false positives rather than the other way, but it still seems like they could be doing a better job.

yeh the reason i posted is becasue from my experience , Kaspersky actually does do a good job in that respect, for example most of the time Kas will recogize all non malware - this time straight up deleted it.

ok computer parts, thanks for the feedback...

i Googled "computerparts beating off to pictuers of his mum"

didn't get anything about CGminer but.

thanks anyhow.



So in other words, you're too incompetent to use google? If you had taken 10 seconds you would have found that it's in the FAQ on the official site


Q: Is this a virus?
A: Cgminer is being packaged with other trojan scripts and some antivirus
software is falsely accusing cgminer.exe as being the actual virus, rather
than whatever it is being packaged with. If you installed cgminer yourself,
then you do not have a virus on your computer. Complain to your antivirus
software company. They seem to be flagging even source code now from cgminer
as viruses, even though text source files can't do anything by themself.

https://github.com/ckolivas/cgminer