Author

Topic: Kaspersky marks cgminer 3.0 as a dangerous object and deletes it. (Read 1585 times)

sr. member
Activity: 378
Merit: 250
That is what scares me about all those so-called virus scanners and malware protection programs. Not saying the version of cgminer you had wasn't a virus, maybe it was, but it does seem too many of these simply hit on the names and do not do a real in-depth review of the files. Sure they may look at file sizes and a few other criteria, but I think they too often give a false sense of protection when they sound the all-clear. I guess I would rather them have a few false positives rather than the other way, but it still seems like they could be doing a better job.

yeh the reason i posted is becasue from my experience , Kaspersky actually does do a good job in that respect, for example most of the time Kas will recogize all non malware - this time straight up deleted it.

ok computer parts, thanks for the feedback...

i Googled "computerparts beating off to pictuers of his mum"

didn't get anything about CGminer but.

thanks anyhow.



So in other words, you're too incompetent to use google? If you had taken 10 seconds you would have found that it's in the FAQ on the official site


Q: Is this a virus?
A: Cgminer is being packaged with other trojan scripts and some antivirus
software is falsely accusing cgminer.exe as being the actual virus, rather
than whatever it is being packaged with. If you installed cgminer yourself,
then you do not have a virus on your computer. Complain to your antivirus
software company. They seem to be flagging even source code now from cgminer
as viruses, even though text source files can't do anything by themself.

https://github.com/ckolivas/cgminer
member
Activity: 78
Merit: 10
Hey, eat this snail quick
and I'm going to assume you don't know how to whitelist something you know is legit. Or shutdown your AV temporarily. Good luck! you not hashing is my diff staying down.
hero member
Activity: 798
Merit: 1000
‘Try to be nice’
update your definitions, don't load AV from a disk. you should always be installing from kasp's website, NOT a disk. The disk will not be up to date.

I can't speak to kasp's realtime AV, but they make some really nice tools.

It shouldn't detect cgminer unless it's baked into or bundled into a payload elseways: to do so would just be lazy, which they usually aren't.

I'm guessing you need to update your definitions and it will clear fine. It's probably outdated on the defs, as you installed it from the disk, and it's hueristics are having a shit fit.

Why are you installing it from the disk, anyhow? If the machine isn't connected to the internet, or can't connect to the internet, you don't need antivirus on it. No network means it's not vulnerable online, only in meatspace. But.... no network would also mean no mining.

Download the AV from the manufacturer. Don't install from a disk. DUH.

(I work in malware research on wild samples. I run MSE because it's free, but I have a bias in that i know what i'm touching and what it's doing and why, and I can clear anything that gets into my system.... which it doesn't.)

i'm just going to assume you are retarded ok.
hero member
Activity: 798
Merit: 1000
‘Try to be nice’
I have Kaspersky anti-virus and I have all versions of cgminer, and I get no complaints from Kaspersky for any of them. 

how long have you had it Kaspersky , and how old is your install of OS?


Just to give you feedback , my OS is less than 24hour old, and never went onto the net until the Disc version of Kaspersky was loaded, then secure connected to update database- the Version of Kaspersky is 2013.


Then after that updated all the Win hotfix.

Then went to this forum.

DL Cgminer from a diff computer put into new install Kaspersky marked and deleted the file.

before that it had marked many as "Keys" or "not a virus" - {yellow}

marked CGminer - {RED} and Deleted it.

i will send Kaspersky support an email today or toinight, just to give the feedback.
member
Activity: 78
Merit: 10
Hey, eat this snail quick
update your definitions, don't load AV from a disk. you should always be installing from kasp's website, NOT a disk. The disk will not be up to date.

I can't speak to kasp's realtime AV, but they make some really nice tools.

It shouldn't detect cgminer unless it's baked into or bundled into a payload elseways: to do so would just be lazy, which they usually aren't.

I'm guessing you need to update your definitions and it will clear fine. It's probably outdated on the defs, as you installed it from the disk, and it's hueristics are having a shit fit.

Why are you installing it from the disk, anyhow? If the machine isn't connected to the internet, or can't connect to the internet, you don't need antivirus on it. No network means it's not vulnerable online, only in meatspace. But.... no network would also mean no mining.

Download the AV from the manufacturer. Don't install from a disk. DUH.

(I work in malware research on wild samples. I run MSE because it's free, but I have a bias in that i know what i'm touching and what it's doing and why, and I can clear anything that gets into my system.... which it doesn't.)
sr. member
Activity: 252
Merit: 250
I have Kaspersky anti-virus and I have all versions of cgminer, and I get no complaints from Kaspersky for any of them. 
hero member
Activity: 798
Merit: 1000
‘Try to be nice’
just google before making stupid posts like this  Roll Eyes
I love it, when I google something and the first 3 results link to a forum where there's alway this one guy which tells me to google it. Maybe it's always the same guy. It might be a conspiracy.

+1

just gold pure gold !
hero member
Activity: 798
Merit: 1000
‘Try to be nice’
I got it from Github.

: \

normally i wouldn't mention it but Kaspersky im my opinion the best anti malware out - is usally on the spot knowing what is and isn't malware?

fresh Win 7 install {not rig setup just PC} - only thing that has been loaded is Kaspersky - from disc, then put USB from other PC in.



It autodeletes it because people commonly use cgminer for botnets. Add it to exceptions.

yeah , maybe i will, or maybe i'll contact Kaspersky and submit the file and ask for an explanation,  rather than just "marking for exclusion" something that is marked as a Virus.

50% of hacking is social engineering.  
sr. member
Activity: 336
Merit: 250
just google before making stupid posts like this  Roll Eyes
I love it, when I google something and the first 3 results link to a forum where there's alway this one guy which tells me to google it. Maybe it's always the same guy. It might be a conspiracy.
hero member
Activity: 686
Merit: 500
I got it from Github.

: \

normally i wouldn't mention it but Kaspersky im my opinion the best anti malware out - is usally on the spot knowing what is and isn't malware?

fresh Win 7 install {not rig setup just PC} - only thing that has been loaded is Kaspersky - from disc, then put USB from other PC in.



It autodeletes it because people commonly use cgminer for botnets. Add it to exceptions.
hero member
Activity: 798
Merit: 1000
‘Try to be nice’
That is what scares me about all those so-called virus scanners and malware protection programs. Not saying the version of cgminer you had wasn't a virus, maybe it was, but it does seem too many of these simply hit on the names and do not do a real in-depth review of the files. Sure they may look at file sizes and a few other criteria, but I think they too often give a false sense of protection when they sound the all-clear. I guess I would rather them have a few false positives rather than the other way, but it still seems like they could be doing a better job.

yeh the reason i posted is becasue from my experience , Kaspersky actually does do a good job in that respect, for example most of the time Kas will recogize all non malware - this time straight up deleted it.

ok computer parts, thanks for the feedback...

i Googled "computerparts beating off to pictuers of his mum"

didn't get anything about CGminer but.

thanks anyhow.

sr. member
Activity: 378
Merit: 250
just google before making stupid posts like this  Roll Eyes
sr. member
Activity: 490
Merit: 254
That is what scares me about all those so-called virus scanners and malware protection programs. Not saying the version of cgminer you had wasn't a virus, maybe it was, but it does seem too many of these simply hit on the names and do not do a real in-depth review of the files. Sure they may look at file sizes and a few other criteria, but I think they too often give a false sense of protection when they sound the all-clear. I guess I would rather them have a few false positives rather than the other way, but it still seems like they could be doing a better job.
hero member
Activity: 798
Merit: 1000
‘Try to be nice’
I got it from Github.

: \

normally i wouldn't mention it but Kaspersky im my opinion the best anti malware out - is usally on the spot knowing what is and isn't malware?

fresh Win 7 install {not rig setup just PC} - only thing that has been loaded is Kaspersky - from disc, then put USB from other PC in.

- ALL DATABASES WERE UPDATED - AS WAS ALL WIN UPDATES.

EDIT**

I BELEIVE I FOUND THE PROBLEM -


after trying to figure it out - i went and downloaded it again from the clean OS install and checked it and it came up fine -

so then i put that clean version CGminer unpacked onto the USB - and put the usb back to the other computer , then screwed around for a while , then back to the clean OS

sure enough , a virus that must be present on the other machine is infecting CGminer.

lucky I haven't been mining yet , looks like i'll be reinstalling that .



Jump to: