DISTRAINT: Deluxe Edition

DISTRAINT: Deluxe Edition

View Stats:
seiya15 May 22, 2020 @ 11:34am
Distraint game being detected as VIRUS Real Protect-EC!B13D2D68119D
I was playing the game and suddenly my antivirus pop up with a Trojan Alert! Why!!!!!!???????????????!!!!!!!!?????

Adaptive Threat Protection blocked a fileless-based attack because its reputation (Known Malicious) is below the configured Clean threshold.
< >
Showing 1-15 of 21 comments
Wurm65 Jul 19, 2020 @ 8:43am 
What anti-virus? My sophos doesn't have an issue with it. And random virus warningssometimes point to a larger issue that has nothing to do with the file mentioned.
Last edited by Wurm65; Jul 22, 2020 @ 4:20pm
seiya15 Jul 20, 2020 @ 7:31am 
Originally posted by Wurm65:
What anti-virus? My sophos doesn't have a n issue with it. And random virus warning sometimes point to a larger issue that has nothing to do with the file mentioned.

Mcafee Endpoint Security
Wurm65 Jul 22, 2020 @ 4:14pm 
Last edited by Wurm65; Jul 22, 2020 @ 4:16pm
nigh_anxiety Aug 5, 2020 @ 11:32am 
I just started having this problem as well, although my copy of Distraint is through GOG, and it gives a slightly different virus ID (Real Protect-EC!B13D2D68119D)

What's weird is it ran fine for 2+ hours on Monday and another hour this morning. Then I quit and restarted to go back to the last save to see a scene again, and that's when McAfee started flagging it.

Direct scan of the Distraint.exe does not find any issues. It only occurs while running. Marking the distraint.exe file to be Excluded from Real-Time Scanning allowed me to run it and complete the game.
Last edited by nigh_anxiety; Aug 5, 2020 @ 12:08pm
Shotgun Feb 24, 2021 @ 9:40am 
Kaspersky is now also detecting this as Trojan-Banker.Win32.ClipBanker.gen.

Likely a false positive, but still kind of weird.
Von Stroheim Feb 24, 2021 @ 2:53pm 
Kaspersky same detection as above from Shotgun, the event log showed 4 threats tied to Distraint one of which was the program .exe as a Malicious Object "Reason- Machine Learning". For context reasons, I get a single alert maybe once every 3-5 months.
sergio Feb 28, 2021 @ 11:57am 
TROJAN-BANKER
Home Classes Trojan-Banker
Publication Date 04/19/2016
Parent class TrojWare
Description
Trojan-Banker programs are designed to steal user account data relating to online banking systems, e-payment systems and plastic card systems. The data is then transmitted to the malicious user controlling the Trojan. Email, FTP, the web (including data in a request), or other methods may be used to transit the stolen data.
Shotgun Mar 4, 2021 @ 7:36am 
Looks like this is no longer happening as of the recent update. Devs, what was the issue?
One death guy Sep 27, 2021 @ 6:59am 
I just scanned my Pc using Spyhunter 5 and it shows that exe file is a Trojan.Keylogger.AG

WTF??
Vile~Frequency Dec 8, 2021 @ 7:52pm 
Same here, Kaspersky popped out this message out of nowhere, didn't even play the game or use gog at the time:

Event: Malicious object detected
User type: Active user
Application name: CompatTelRunner.exe
Application path: C:\Windows\System32
Component: File Anti-Virus
Result description: Detected
Type: Trojan
Name: HEUR:Trojan.Win32.Chapak.gen
Precision: Heuristic Analysis
Threat level: High
Object type: File
Object name: distraintlegacy.exe
Object path: D:\GOG\GOG Galaxy\Games\DISTRAINT Deluxe Edition\legacy
Reason: Machine learning
Databases release date: Today, 09-Dec-21 00:37:00
One death guy Dec 8, 2021 @ 8:53pm 
Originally posted by Vile~Frequency:
Same here, Kaspersky popped out this message out of nowhere, didn't even play the game or use gog at the time:

Event: Malicious object detected
User type: Active user
Application name: CompatTelRunner.exe
Application path: C:\Windows\System32
Component: File Anti-Virus
Result description: Detected
Type: Trojan
Name: HEUR:Trojan.Win32.Chapak.gen
Precision: Heuristic Analysis
Threat level: High
Object type: File
Object name: distraintlegacy.exe
Object path: D:\GOG\GOG Galaxy\Games\DISTRAINT Deluxe Edition\legacy
Reason: Machine learning
Databases release date: Today, 09-Dec-21 00:37:00

fffffuuuu it looks like someone was trying to spy using that file as entry

WTF dev???
Richy Dec 9, 2021 @ 1:47am 
Originally posted by Vile~Frequency:
Same here, Kaspersky popped out this message out of nowhere, didn't even play the game or use gog at the time:

Event: Malicious object detected
User type: Active user
Application name: CompatTelRunner.exe
Application path: C:\Windows\System32
Component: File Anti-Virus
Result description: Detected
Type: Trojan
Name: HEUR:Trojan.Win32.Chapak.gen
Precision: Heuristic Analysis
Threat level: High
Object type: File
Object name: distraintlegacy.exe
Object path: D:\GOG\GOG Galaxy\Games\DISTRAINT Deluxe Edition\legacy
Reason: Machine learning
Databases release date: Today, 09-Dec-21 00:37:00
Same. Just had this a few mins ago
sergio Dec 9, 2021 @ 5:31am 
my Kaspersky too
Richy Jan 7, 2022 @ 5:15pm 
Well my AV seems to be okay with this now.. probably false alarm
altdiv Feb 12, 2022 @ 5:27am 
Why!!!!!!???????????????!!!!!!!!?????
< >
Showing 1-15 of 21 comments
Per page: 1530 50