Recent

Author Topic: [SOLVED] Lazarus.exe detected as malware/virus  (Read 3493 times)

incendio

  • Sr. Member
  • ****
  • Posts: 358
[SOLVED] Lazarus.exe detected as malware/virus
« on: May 11, 2023, 03:21:19 am »
Hi guys,

I have installed 32bit Lazarus ver 2.2.2 on WIndows 10, it is detected as a malware/virus by norton power eraser, see attachment.

Why? Is this a false alarm?
« Last Edit: May 12, 2023, 04:33:22 am by incendio »

bobby100

  • Sr. Member
  • ****
  • Posts: 300
    • Malzilla
Re: Lazarus.exe detected as malware/virus
« Reply #1 on: May 11, 2023, 06:38:23 am »
Which kind of malware is reported?
If it says something about Heuristics, or Generic, you can suspect your Norton.

Anyway, you can upload it to Virus Total and see for yourself what the other antivirus apps has to say about the lazarus.exe file.

Handoko

  • Hero Member
  • *****
  • Posts: 5507
  • My goal: build my own game engine using Lazarus
Re: Lazarus.exe detected as malware/virus
« Reply #2 on: May 11, 2023, 07:27:58 am »
Yes, use Virus Total. If the scan result shows virus detected using many antiviruses, that file probably contains or infected by virus. But if only detected by 1 or 2 antiviruses, that maybe is false positive.

dseligo

  • Hero Member
  • *****
  • Posts: 1623
Re: Lazarus.exe detected as malware/virus
« Reply #3 on: May 11, 2023, 07:33:27 am »
You can also verify checksum to see if your file is the same as the official release.

Here is the link: https://www.lazarus-ide.org/index.php?page=checksums#2_2_2

ASBzone

  • Hero Member
  • *****
  • Posts: 733
  • Automation leads to relaxation...
    • Free Console Utilities for Windows (and a few for Linux) from BrainWaveCC
Re: Lazarus.exe detected as malware/virus
« Reply #4 on: May 11, 2023, 02:58:06 pm »
Hi guys,

I have installed 32bit Lazarus ver 2.2.2 on WIndows 10, it is detected as a malware/virus by norton power eraser, see attachment.

Why? Is this a false alarm?


Norton strikes again.  It's been a few decades since Norton was a decent antimalware product.


If you are downloading Lazarus from reputable location (this website, Source Forge or approved mirrors), and confirming the hash/checksum of the downloads with the following location, you should be assured that it is legitimate:  https://www.lazarus-ide.org/index.php?page=checksums


I also second the recommendation to check VirusTotal.


Last recommendation:  Version 2.2.6 is the current stable/production release of Lazarus.
-ASB: https://www.BrainWaveCC.com/

Lazarus v4.3.0.0 (bcf314a670) / FreePascal v3.2.3-46-g77716a79dc (aka fixes)
(Windows 64-bit install w/Win32 and Linux on ARM and x64 cross-compilers via FpcUpDeluxe)

My Systems: Windows 10/11 Pro x64 (Current)

incendio

  • Sr. Member
  • ****
  • Posts: 358
Re: Lazarus.exe detected as malware/virus
« Reply #5 on: May 12, 2023, 04:14:18 am »
I have checked MD5, it was matched, but from VirusTotal, 1 vendor also detected as  malicious, see attachment.

ASBzone

  • Hero Member
  • *****
  • Posts: 733
  • Automation leads to relaxation...
    • Free Console Utilities for Windows (and a few for Linux) from BrainWaveCC
Re: Lazarus.exe detected as malware/virus
« Reply #6 on: May 12, 2023, 04:25:47 am »
I have checked MD5, it was matched, but from VirusTotal, 1 vendor also detected as  malicious, see attachment.

Having 1 vendor recognize it is malware, out of 50+, is very much in the land of false positives, especially if it false under the category of heuristics.

Given that it matched the MD5 has, and you don't have 5 or more antimalware vendors registering it as malware, you can comfortably conclude that it is not malware.
-ASB: https://www.BrainWaveCC.com/

Lazarus v4.3.0.0 (bcf314a670) / FreePascal v3.2.3-46-g77716a79dc (aka fixes)
(Windows 64-bit install w/Win32 and Linux on ARM and x64 cross-compilers via FpcUpDeluxe)

My Systems: Windows 10/11 Pro x64 (Current)

incendio

  • Sr. Member
  • ****
  • Posts: 358
Re: Lazarus.exe detected as malware/virus
« Reply #7 on: May 12, 2023, 04:33:01 am »
I have checked MD5, it was matched, but from VirusTotal, 1 vendor also detected as  malicious, see attachment.

Having 1 vendor recognize it is malware, out of 50+, is very much in the land of false positives, especially if it false under the category of heuristics.

Given that it matched the MD5 has, and you don't have 5 or more antimalware vendors registering it as malware, you can comfortably conclude that it is not malware.

OK, thanks for the confirmation and thanks to everyone who have given advised, case closed.

 

TinyPortal © 2005-2018