Bitdefender suddenly started to flag all self extracting compressed file (*.exe) made via WinRAR
The following notification pop up earlier
This never pop up before this and I've already made dozens and dozens of compressed self extracting *.exe file throughout the years.
I only updated the WinRAR compression app a month ago to the latest 7.01 if that makes any difference, but it is to be noted that even the self extracting files made by an older version of WinRAR also got flagged as infected by the latest version of Bitdefender Total Security.
Can someone confirm whether this is a false positive, or do I have something to worry about here?
:
Malicious application detected on your device
an hour ago
Feature:Antivirus
The app T:\****.exe infected with Gen:Suspicious.Cloud.8.JGZ@aSM213pi was moved to quarantine. It is recommended that you run a System Scan to make sure your system is clean.
Answers
-
Hello.
Only the anti-malware researchers at Bitdefender Labs can help you with the issue.
You should report the file(s) as false positive to Bitdefender Labs here:
https://www.bitdefender.com/consumer/support/answer/29358/Regards.
0 -
Can't seem to submit the file. After filling the form and clicking Submit, the spinning half circle icon pop up indicating it's being processed.
But then nothing happened…
The icon disappeared, and I'm left with the filled form.
Subsequent tries to Submit using different browser also have the same problem. I even disabled Bitdefender Total Security thinking that it's preventing the file upload.
0 -
Try submitting the samples via the "Bitdefender Business Forum". The link for it is provided below.
Select 'Bitdefender GravityZone Business Security' as the product. Ultimately, the sample will be shared with the same malware research team.
Between the detection that is shown in your Bitdefender product, it is a cloud-based detection and not the signature-based one created by the malware researchers.
Regards
Life happens, Coffee helps!
Show your Attitude, when you reach that Altitude!
Bitdefender Ultimate Security Plus (user)
0 -
Ok, thanks for the info.
I managed to submit it just now. The form indicated "Your request was successfully sent!"
and I've just received an email confirming it.The form doesn't have any field to explain that the file is generated from WinRAR as a compressed self extracting file though.
Guess I'll just need to wait it out.
The one odd thing is that I actually forgot to disable Bitdefender while trying to submit just now, and it did not pop up a detection notification.0 -
Just a quick update. I've just received an email that informs me that the file is safe and the false positive will be fixed in following update.
Thanks again for the assistance.0