PrimeGrid
Please visit donation page to help the project cover running costs for this month

Toggle Menu

Join PrimeGrid

Returning Participants

Community

Leader Boards

Results

Other

drummers-lowrise

Advanced search

Message boards : Problems and Help : Ransomware in GFN22 file?

Author Message
Profile Shawn85206
Send message
Joined: 9 Jul 07
Posts: 2
ID: 9712
Credit: 44,543,472
RAC: 109,255
321 LLR Silver: Earned 100,000 credits (276,684)Cullen LLR Silver: Earned 100,000 credits (407,749)ESP LLR Silver: Earned 100,000 credits (194,485)Generalized Cullen/Woodall LLR Gold: Earned 500,000 credits (926,497)PPS LLR Silver: Earned 100,000 credits (116,350)PSP LLR Gold: Earned 500,000 credits (656,722)SoB LLR Gold: Earned 500,000 credits (928,547)SR5 LLR Silver: Earned 100,000 credits (175,151)SGS LLR Bronze: Earned 10,000 credits (31,452)TRP LLR Silver: Earned 100,000 credits (121,043)Woodall LLR Gold: Earned 500,000 credits (740,298)Generalized Cullen/Woodall Sieve (suspended) Silver: Earned 100,000 credits (442,304)PPS Sieve Gold: Earned 500,000 credits (549,473)Sierpinski (ESP/PSP/SoB) Sieve (suspended) Bronze: Earned 10,000 credits (19,180)AP 26/27 Ruby: Earned 2,000,000 credits (2,454,101)GFN Sapphire: Earned 20,000,000 credits (36,487,776)
Message 135490 - Posted: 10 Dec 2019 | 15:54:19 UTC

This morning as I switched work unit preferences in preparation for the upcoming Aussie challenge. My system downloaded a GFN22 work unit that came with an EXE extension, then blocked and flagged it as potential ransomware. Is anyone else seeing this? Is it a false positive? I have never bothered with the GFN22 files as my laptop is a few years old, so these take forever to complete and may not be worth the effort with only ten days.

JimBProject donor
Honorary cruncher
Send message
Joined: 4 Aug 11
Posts: 912
ID: 107307
Credit: 974,074,244
RAC: 85,572
Discovered 1 mega prime321 LLR Ruby: Earned 2,000,000 credits (2,671,514)Cullen LLR Turquoise: Earned 5,000,000 credits (5,031,868)ESP LLR Turquoise: Earned 5,000,000 credits (5,064,082)Generalized Cullen/Woodall LLR Turquoise: Earned 5,000,000 credits (5,038,750)PPS LLR Turquoise: Earned 5,000,000 credits (5,000,220)PSP LLR Turquoise: Earned 5,000,000 credits (7,639,762)SoB LLR Sapphire: Earned 20,000,000 credits (42,604,648)SR5 LLR Jade: Earned 10,000,000 credits (11,829,173)SGS LLR Ruby: Earned 2,000,000 credits (2,070,105)TRP LLR Ruby: Earned 2,000,000 credits (2,291,092)Woodall LLR Turquoise: Earned 5,000,000 credits (5,046,412)321 Sieve Jade: Earned 10,000,000 credits (10,032,608)Cullen/Woodall Sieve (suspended) Ruby: Earned 2,000,000 credits (4,002,919)Generalized Cullen/Woodall Sieve (suspended) Sapphire: Earned 20,000,000 credits (20,005,451)PPS Sieve Emerald: Earned 50,000,000 credits (52,042,965)Sierpinski (ESP/PSP/SoB) Sieve (suspended) Ruby: Earned 2,000,000 credits (2,341,676)TRP Sieve (suspended) Ruby: Earned 2,000,000 credits (2,070,804)AP 26/27 Jade: Earned 10,000,000 credits (10,742,251)GFN Emerald: Earned 50,000,000 credits (50,000,251)PSA Double Gold: Earned 500,000,000 credits (728,547,693)
Message 135494 - Posted: 10 Dec 2019 | 17:45:59 UTC
Last modified: 10 Dec 2019 | 17:46:14 UTC

It's a false positive. Nothing has changed about the genefer application (and it's the same exact executable for GFN15 through GFN22). Moreover, the application is signed and BOINC would have rejected it and not run it if the executable had changed in any way. This has happened to other users before. We recommend that you exclude the BOINC data directory from virus scanning. That directory in Windows is generally C:\ProgramData\BOINC

Post to thread

Message boards : Problems and Help : Ransomware in GFN22 file?

[Return to PrimeGrid main page]
DNS Powered by DNSEXIT.COM
Copyright © 2005 - 2020 Rytis Slatkevičius (contact) and PrimeGrid community. Server load 4.08, 3.70, 3.29
Generated 5 Apr 2020 | 8:59:46 UTC