It seems that you're using an outdated browser. Some things may not work as they should (or don't work at all).
We suggest you upgrade newer and better browser like: Chrome, Firefox, Internet Explorer or Opera

×
Got my download link for the GOG Galaxy 2.0 closed beta today and happily downloaded it, but my virus scanner immediately quarantined the file.

I ran it through virustotal.com and it came back with 3 virus scanners flagging it:
SecureAge APEX: Malicious
SentinelOne (Static ML): DFI - Suspicious PE
Cylance - Unsafe

I'm willing to give GOG the benefit of the doubt and believe that it's something in the code that is triggering false positives and not actually containing malware, but it's still making me uncomfortable to run this on my machine.

Anybody else having issues with this? Didn't see a recent post about it from anyone, so wanted to see if there was an official "yes this is fine" statement from GOG?
I'm getting similar virus warnings from my virus checker. It would be nice to have some feedback on this from GOG.
avatar
Bananatoxin: Got my download link for the GOG Galaxy 2.0 closed beta today and happily downloaded it, but my virus scanner immediately quarantined the file.

I ran it through virustotal.com and it came back with 3 virus scanners flagging it:
SecureAge APEX: Malicious
SentinelOne (Static ML): DFI - Suspicious PE
Cylance - Unsafe

I'm willing to give GOG the benefit of the doubt and believe that it's something in the code that is triggering false positives and not actually containing malware, but it's still making me uncomfortable to run this on my machine.

Anybody else having issues with this? Didn't see a recent post about it from anyone, so wanted to see if there was an official "yes this is fine" statement from GOG?
Thing about VirusTotal. It puts the file through tuns of malware databases, a lot of them are not very mature or they are very strict on what triggers them (Meaning, they trigger really easily.). A good rule of thumb when using VirusTotal is.... Are any of the big and popular trusted names showing anything? Cause I have never heard of the 3 names you listed, and I am pretty strict when it comes to my computers security. Hell, I have put files through VirusTotal that I knew for a fact were safe, yet a handful of names on there that I have never heard of came up saying it was malware.

All I can really say though is that none of the alarms went off on my PC when I installed it, so I am gonna say it's safe, and that the 3 you listed are false positives.
Post edited September 18, 2019 by Xelphos
Can't say whether the setup file is compromised or not, but at least the version thats installed vie the update mechanisms does not trigger Windows Defender nor Symantec Endpoint protection.
My system is detecting it is infected with Gen:Suspicious.Cloud.2.8mMfaGJpuzfO
Bitdefender Endpoint Security detects **Gen:Suspicious.Cloud.2.8mMfaGJpuzfO** in installation file GOG_Galaxy_2.0.exe.

p.s.: cant attach file ( screenshot less 2MB) to post.

another detects virustotal.com/gui/file/bdac07c000f8a7e8c8e01f619eea76bb26e0c680bddca39b25450e65f3ae0db7/detection

Bitdefender will be there soon I think ;(
Post edited September 18, 2019 by Barmaley_o0o
Same thing has been found on my download. Bitdefender Internet Security detects:

The file C:\Users\Downloads\GOG_Galaxy_2.0.exe is infected with Gen:Suspicious.Cloud.2.8mMfaGJpuzfO and was moved to quarantine.

Anyone tried running it anyways? I just got the invitation email and was super excited to try the beta... but I also like my computer health.
Attachments:
avatar
Bananatoxin: Got my download link for the GOG Galaxy 2.0 closed beta today and happily downloaded it, but my virus scanner immediately quarantined the file.

I ran it through virustotal.com and it came back with 3 virus scanners flagging it:
SecureAge APEX: Malicious
SentinelOne (Static ML): DFI - Suspicious PE
Cylance - Unsafe

I'm willing to give GOG the benefit of the doubt and believe that it's something in the code that is triggering false positives and not actually containing malware, but it's still making me uncomfortable to run this on my machine.

Anybody else having issues with this? Didn't see a recent post about it from anyone, so wanted to see if there was an official "yes this is fine" statement from GOG?
avatar
Xelphos: Thing about VirusTotal. It puts the file through tuns of malware databases, a lot of them are not very mature or they are very strict on what triggers them (Meaning, they trigger really easily.). A good rule of thumb when using VirusTotal is.... Are any of the big and popular trusted names showing anything? Cause I have never heard of the 3 names you listed, and I am pretty strict when it comes to my computers security. Hell, I have put files through VirusTotal that I knew for a fact were safe, yet a handful of names on there that I have never heard of came up saying it was malware.

All I can really say though is that none of the alarms went off on my PC when I installed it, so I am gonna say it's safe, and that the 3 you listed are false positives.
I also got a warning from bitdefender. Not going it to install it until this is fixed.
Downloaded the web installer from goggalaxy.com/en/download (5min ago) and scanned it with Symantec Endpoint Protection > did not find anything.
Post edited September 23, 2019 by DerBesserwisser
GOG team should contact with bitdefender team and resolve this issue
Well I have been this problem, similar virus warnings from my virus checker, only update my antivirus and no more problem
Same issue for me, Bitdefender quarantines GOG_Galaxy_2.0.exe and tells me its infected with Gen:Suspicious.Cloud.2.8mMfaGJpuzfO.

Edit 27.09 Today's Bitdefender update did the trick for me, G2.0 up and running, very happy with the 2.0 version!
Post edited September 28, 2019 by FredrikL
I'm also getting the same virus alert in virustotal. "DFI - Suspicious PE"

I'm not confirm should I use it or not.