Page 1 of 1

VBA32 antivirus detects BScope TrojanBanker Gozi.

Posted: Mon Mar 30, 2020 8:52 pm
by czleq
Hi, I downloaded the installation file v7.5.1 for windows and scanned it online (can't post links with 0 posts, ehhh). VBA32 found a trojan there called "BScope TrojanBanker Gozi". Is it a false positive or did I download the client from the wrong website? Since I read about link spoofing, websites using PGP for safety and what not I am never sure anymore, lol. What worries me is that I haven't found anyone via google search or via the search option on this forum asking about it. Am I the only one paranoid or do people install stuff without scanning it :shock: :D ?
Thanks.

Re: VBA32 antivirus detects BScope TrojanBanker Gozi.

Posted: Mon Mar 30, 2020 11:52 pm
by JimboPalmer
This tells how to avoid false positives by excluding the Work Directory in you antivirus.
https://foldingathome.org/support/faq/i ... uirements/

"We suggest configuring antivirus software to exclude the FAH client directory and especially the Work directory from the antivirus scanning list. This can be done by going into the exclusion list panel that every antivirus program has. The work subdirectory contains semi-random binary data and can confuse overly aggressive heuristic virus scanning."

Re: VBA32 antivirus detects BScope TrojanBanker Gozi.

Posted: Tue Mar 31, 2020 2:18 am
by Joe_H
If you downloaded from the official F@h site, there should be no issue with viruses. The official download is from foldingathome.org.