Ys VI: The Ark of Napishtim

Ys VI: The Ark of Napishtim

[solved]: virus/trojan detected by my kaspersky while downloading this game on steam
kaspersky info::
------------------------------------
04.01.2016 22.45.51;
Object (file) detected:
(steamfolder)\steamapps\downloading\312540\config.exe;
Steam Client Bootstrapper:
(steamfolder)\steamapps\downloading\312540\config.exe;
detected time: 01/04/2016 22:45:51;
HEUR:Trojan.Win32.Generic
----------------


this surprised me. this config.exe is the game tool to configurate none-DX9 version of the game.

its a generic type so i think its a false positive, but here is the information, i don't know how to report this to kaspersky to make sure its a false positive.

I have the most recent Kaspersky internet security 2016, database updated until today.
Last edited by BlackRaider2012; Jan 11, 2016 @ 8:43am
< >
Showing 1-10 of 10 comments
BlackRaider2012 Jan 4, 2016 @ 3:35pm 
this file was deleted by my virus protection but seems the game works just fine without it anyway.
Last edited by BlackRaider2012; Jan 4, 2016 @ 5:37pm
Saralene  [developer] Jan 4, 2016 @ 7:18pm 
False positives with Steam DRMed Steam games are pretty common, sadly.
BlackRaider2012 Jan 5, 2016 @ 3:15am 
well, this was the first time that happen to me, with files related to steam.

anyway I already sent this to kaspersky so that they can solve this.
Last edited by BlackRaider2012; Jan 5, 2016 @ 3:26am
jameelacosta Jan 5, 2016 @ 11:55pm 
I had the same problem. I downloaded some antivirus programs and scripts and they removed backdoor files from my computer. I don't think it was a false positive. I reported it to Steam and it took them about 3 weeks to solve the issue.
Saralene  [developer] Jan 6, 2016 @ 9:42am 
???
Citizen Kane Jan 6, 2016 @ 9:06pm 
Same thing happened to me. Got Ys VI on the first few days of the Christmas sale but nothing popped up with Kapersky till now. While it's probably false, I went ahead and let Kapersky do its thing and quarantine / delete it.

Someone should probably submit it to Kapersky to see what's going on.
xrogaan Jan 7, 2016 @ 10:56am 
It is a false positive, usually classified under "generic". Meaning that the software appear to have some trojan features, but isn't in fact one. Your antivirus is just warning you that the software may be malicious, without giving you any certainties. When such generic warnings appears, what you ought to do is to investigate. As it is now, the config.exe isn't harmful nor a PUP, it's doing its job which is configure (i.e. read and write in a file) your game. Here, you can find the configuration files under %USERPROFILE%\Saved Games\FALCOM\ys6_win.

Long story short, the way the software behave may look suspicious to your antivirus, but it is not malicious.
BlackRaider2012 Jan 8, 2016 @ 1:53am 
I know, I wasn't too worryed since the beggining :)

well, the game is working fine without this file present in game folder, so I let my antivirus do its work as usual.

kaspersky already received the file to investigate it, now I am waiting for their answer, and hopefully they will do some type of correction about this in their database (I think lol).
Last edited by BlackRaider2012; Jan 8, 2016 @ 2:09am
BlackRaider2012 Jan 11, 2016 @ 8:45am 
good news, kaspersky answer was what I expected. its a false positive, next update this will be solved to them.
Last edited by BlackRaider2012; Jan 11, 2016 @ 8:45am
Rockdem0n Jan 11, 2016 @ 7:17pm 
Thank you for updating this my version of Kaspersky kept deleting the file as I was trying to send it to them.
< >
Showing 1-10 of 10 comments
Per page: 1530 50