CIS AV has started to think after I did OS reinstall that EA’s Need For Speed 2’s exe-file (submitted to Comodo ~2 weeks ago) is suspicious/malware (and put that file on guarantine until I added it to trusted files (apparently its not there anymore)) and I have been playing that game since CIS 3.14.xxx and CIS AV hasn’t reported any suspicious on it until ~2 weeks ago and CIS AV has done weekly scans since I 1st time installed WinXP Pro 64bit.
Can you please upload the file to VirusTotal and post a link to the results?
SHA256: 0cafc21994fe5fbe30bcea730a0772241e25e479b0abe375cb8edf1565a8e653
File name: NFSHP2.exe
Detection ratio: 1 / 44
Analysis date: 2012-11-09 13:05:49 UTC ( 0 minutes ago )
3
0
More details
Analysis
Comments
Votes
Additional information
Antivirus Result Update
Agnitum - 20121107
AhnLab-V3 - 20121108
AntiVir - 20121109
Antiy-AVL - 20121108
Avast - 20121109
AVG - 20121109
BitDefender - 20121109
ByteHero - 20121107
CAT-QuickHeal - 20121109
ClamAV - 20121108
Commtouch - 20121109
Comodo Heur.Suspicious 20121109
DrWeb - 20121109
Emsisoft - 20121109
eSafe - 20121107
ESET-NOD32 - 20121109
F-Prot - 20121109
F-Secure - 20121109
Fortinet - 20121109
GData - 20121109
Ikarus - 20121109
Jiangmin - 20121109
K7AntiVirus - 20121109
Kaspersky - 20121109
Kingsoft - 20121105
McAfee - 20121109
McAfee-GW-Edition - 20121109
Microsoft - 20121109
MicroWorld-eScan - 20121109
Norman - 20121108
nProtect - 20121109
Panda - 20121109
PCTools - 20121109
Rising - 20121109
Sophos - 20121109
SUPERAntiSpyware - 20121109
Symantec - 20121109
TheHacker - 20121107
TotalDefense - 20121108
TrendMicro - 20121109
TrendMicro-HouseCall - 20121109
VBA32 - 20121109
VIPRE - 20121109
ViRobot - 20121109
whatta surprise that Comodo is only who thinks its suspicious and only after I did OS reinstall.
wonders why that file wasn’t suspicious when I reinstalled CIS after prev. version update came
They need SHA-1 value …
Please give the VT link or just the SHA-1 value at least.
Hello cuser,
Can you please check and let me know if everything is alright now? Thank you!
Best regards,
FlorinG
removed from trusted files and scanned, no findings but when tried to start game same old msg and file quarantined.
Is it the same file which is quarantined?
If not then please post a link to the new files which is detected.
there’s only 1 exe-file in that folder which CIS AV quarantines (and tries to quarantine that same exe from CD (luck with that since its original CD)) others (uninstalls and 1 other).
atm no quarantine attempts after removing file from trusted files and launching game and virustotal gives clean report so looks like that it was finally found as fp.