Possible false positive in aveyond.exe

Hi.

Aveyond is a nice little game that I have had for ages. I bought it from Jenkat and have a genuine license.

Earlier today there was some kind of Avast update installed on my pc, not sure if it was the virus definition or the program itself since I was not in the room at the time. (I heard the “man” telling me there had been an update.)

Until today, no virus/trojan was detected. Since the update, I am no longer able to play this game as Avast home edition 4.8.1229 (virus defs: 081003-0) keeps telling me that the file aveyond.exe contains signs of win32: trojan-gen {other}.

I find this highly unlikely since I bought this game a long time ago and even had it running on an older pc before buying this one. The game has run without any problems until today. I have run a few tools to see if they could find a virus/malware, but the results were negative.

I have run the file through virustotal - had to turn off the standard shield to be able to upload the file. The results are here:
http://www.virustotal.com/analisis/904a585b797095db8c7cf89a943386c4

I have zipped the file and will be sending it shortly - probably after turning off the standard shield again as it will not let me access the file without doing so.

I would appreciate any help you can give.

Thanks and regards,
Janiedoe

Could be a false positive… although avast is not alone on detecting it…
Are you sure the file is not corrupted and a malware has changed it?

You can send it for analysis to virus (at) avast (dot) com
Thanks for helping improving detection.

Hi, Tech.

I am quite sure the file is OK. If I disable the standard shield, the game starts up as usual as it has done on this pc and the old one it replaced in February.

I have run several tools such as Superantispy, Spybot and AdAware as well as some virus detection tools and none find anything wrong.

I have seen that others have had false positives detected by several engines on VirusTotal - even more than my file generated. I have sent it for analysis already.

I am quite paranoid about my home pc’s since pc’s are what I work with on a daily basis. To my knowledge, I have not had any viruses/trojans/worms on any of my pc’s, but there is always a first time for everything… :-X

Best regards,
Janiedoe

Don’t do that… use the Exclusion lists meanwhile…

For the Standard Shield provider (on-access scanning):
Left click the ‘a’ blue icon, click on the provider icon at left and then Customize.
Go to Advanced tab and click on Add button…

For the other providers (on-demand scanning such as the screen-saver or the Simple User Interface):
Right click the ‘a’ blue icon, click Program Settings.
Go to Exclusions tab and click on Add button…

You can use wildcards like * and ?.
But be careful, you should ‘exclude’ that many files that let your system in danger.

Hi, again.

I found some threads on the forum and figured out how to setup the exceptions etc. In my wildest dreams I wouldn’t turn off the standard shield while connected to the net :o

I ended up renaming the file before I zipped it.

All I can do now is wait.

Hope not that much…
Thanks for improving detection.

The antivirus program was just updated. I ran it on the exe-file saved in a separate directory. It is no longer flagged as being infected by win32: trojan-gen {other}. Seems it is safe to play the game again ;D

Thanks for posting back and thanks to Alwil for the false positive correction.