Sifu
Sifu-Win64-Shipping.exe - IDP.Generic virus
My antivirus detected in this last update Sifu-Win64-Shipping.exe as an IDP.Generic (trojan virus) What should I do?
< >
Showing 1-9 of 9 comments
Runkel Dec 12, 2024 @ 11:36am 
Get a Anti Virus Program that's not utter garbage.
So you believe is a false positive, right?
Yuraiden Dec 15, 2024 @ 10:31am 
Yeah.
Kanharn Dec 15, 2024 @ 1:06pm 
Originally posted by Runkel:
Get a Anti Virus Program that's not utter garbage.

You do not need any Anti virus software apart from windows defender. This is a common misconception from people who do not know much about viruses etc..
Kanharn Dec 15, 2024 @ 1:08pm 
Originally posted by stingxhellokitty:
So you believe is a false positive, right?

You will be fine.
BRAN Dec 15, 2024 @ 1:27pm 
Norton blocks the sifu-win64-shipping.exe immediately. High Risk! I will quarantine the .exe and start a deep virus scan.
Last edited by BRAN; Dec 15, 2024 @ 1:32pm
LogBogg Dec 29, 2024 @ 6:48pm 
Originally posted by BRAN:
Norton blocks the sifu-win64-shipping.exe immediately. High Risk! I will quarantine the .exe and start a deep virus scan.
Norton completely ruined the game. It quarantined that file and now it won't let me remove it from the quarantine, i have tried to reinstall multiple times with antivirus deactivated and now im getting an error when i try to finish installing
BRAN Dec 30, 2024 @ 6:31am 
A PC restart might help.

Strange, my Norton lets me check the quarantined files with an option to delete them. Worked for me. And then the normal procedure:
Let Sifu check for missing files, game.exe marked as an exception. Run game.

I use Norton + Windows Defender --> 99,9% false positive, as Defender did not intervene.
Hawke Dec 31, 2024 @ 10:53pm 
I've checked the Sifu-Win64-Shipping.exe file (got from EGS) via VirusTotal (link to the report: https://www.virustotal.com/gui/file/c61e150fd272eb9ae4dc9f3b5d3da13831743e4ccdb85db97e72b4ca7a62405c/behavior) and it tried to execute the following commands:
%SAMPLEPATH%
%windir%\System32\svchost.exe -k WerSvcGroup
wmiadap.exe /F /T /R
%windir%\system32\wbem\wmiprvse.exe

After a few minutes of looking it up:
The service group "WerSvcGroup" is running in the svchost.exe process and the WerSvc service sends error reports to Microsoft.

Wmiadap is a application that runs on Windows that can update performance information in the WMI repository.
Switches:
/f - parses all the performance libraries on the system and refreshes the classes derived from Win32_PerfRawData and Win32_PerfFormattedData.
/r - parses all the Windows Driver Model drivers on the system to create performance objects.

WmiPrvse.exe is a process in the Windows OS that can host one or more WMI providers.

WMI Providers - preinstalled providers that can request information from, and send instructions to, WMI managed objects.

Windows Management Instrumentation (WMI) is the infrastructure for management data and operations on Windows-based operating systems.
The thing I do not understand is why the game can possibly need to do all of this?
If the issue is present in the Steam version as well, it is most disappointing.
Last edited by Hawke; Dec 31, 2024 @ 10:54pm
< >
Showing 1-9 of 9 comments
Per page: 1530 50