Hi.
Today I have tried to run the launcher of a game called Test Drive Unlimited 2. I have played this game since mid-February and had no problems until now.
The game’s website is http://www.testdriveunlimited2.com/
Avast! has just detected “Win32:Malware-gen” in UpLauncher.exe - the game’s launcher. Now I think this is a false alarm but just in case if it is infected, I have put it into the Virus Chest. I have also used http://virusscan.jotti.org/ to scan the file where only Avast! and G Data have both found “Win32:Malware-gen” in the file.
I have posted here for a reliable confirmation on whether this is a false positive or an actual infection. Thanks and I apologize if there is any shortage of information that I have provided.

Could you open the virus chest, right click the file and select send to virus labs. Label it as a false positive and then manually update to send it

Whilst it looks like a false positive - I would check the offending/suspect file at: VirusTotal - Multi engine on-line virus scanner (more than Jotti) and report the findings here, post the URL in the Address bar of the VT results page.

If only GData and avast detect it - GData uses avast as one of its two scanners so counts as 1 detection and almost certainly an FP.
Send the sample to avast as a False Positive:
Open the chest and right click on the file and select ‘Submit to virus lab…’ complete the form and submit, the file will be uploaded during the next update.

@@@@

  • In the meantime (if you accept the risk), add the full path to the file to the exclusions lists (see Note below):
    File System Shield, Expert Settings, Exclusions, Add and
    avast Settings, Exclusions

Restore it to its original location, periodically check it (scan it in the chest), there should still be a copy in the chest even though you restored it to the original location. When it is no longer detected then you can also remove it from the File System Shield and avast Settings, exclusions lists.

Note: When using the Browse button it only goes down to folder level accept that. Now open the entry in the exclusions and change the * to \file_name.exe where file_name.exe is the file you want to exclude.

http://www.virustotal.com/file-scan/report.html?id=8788e7f270e9157560b019eb24d35c6f5ca69474827492100d68171d844cc624-1314454118

6.8%, 3/44. Again only Avast! (both 4.8 and 5.0) and GData have detected the malware in the file.

Had the same problem today with Steam version, sent a report. Definitely a false positive. The game was not updated in the past weeks.

Yes this certainly looks like a false positive, which when submitted avast should deal with quite quickly.

So send the sample to avast as a False Positive:
Open the chest and right click on the file and select ‘Submit to virus lab…’ complete the form and submit, the file will be uploaded during the next update.

In the meantime (if you accept the risk, which should be limited), you can follow the instructions above about exclusion and restoration.

I guess I have the same problem then.

http://www.virustotal.com/file-scan/report.html?id=ab3b465f2c8a3d834bd42db2eee0570d117c33981512459194b4d48e92b015cf-1314464980

Somehow the file with this MD5 hash has been deleted: -http://rghost.net/10104551
Is given clean here: http://r.virscan.org/548e7af31da18a8dbbb91f2818f850cd
See: http://www.threatexpert.com/report.aspx?md5=59c2a615254fb50cdabb617e0e1a26c5

pol

That is a very old virscan.org set of results, Time: 2011/04/20 07:42:26 (BST), so pretty invalid. The same is true of the threatexpert link also from April 2011.

The VT link works for me and other than avast and gdata, there is a detection from ‘ByteHero’ which I have never heard of before.

More here: http://www.wilderssecurity.com/showthread.php?t=305807