1. This site uses cookies. By continuing to use this site, you are agreeing to our use of cookies. Learn More.

Other Super-Pi - Malware?

Discussion in 'Software' started by pimonserry, 3 Sep 2009.

  1. pimonserry

    pimonserry sounds like a party.

    Joined:
    20 Dec 2008
    Posts:
    2,113
    Likes Received:
    75
    Malwarebyte's Anti-Malware, a normally excellent (free) program, last night picked up Super-Pi's .exe file (I think it's called superpimod.exe) as Malware.Packer.Krunchy.

    I went through and let it delete the .exe's anyway, but is that likely to be a false positive, or has something infected that .exe file from somewhere else?

    Can anyone with MBAM + SuperPi update and scan their SuperPi folder, just to check for me?
    Cheers.
     
  2. Krikkit

    Krikkit All glory to the hypnotoad! Super Moderator

    Joined:
    21 Jan 2003
    Posts:
    23,926
    Likes Received:
    655
    Where did you get your copy of superpi from?
     
  3. mm vr

    mm vr The cheesecake is a lie

    Joined:
    18 Nov 2007
    Posts:
    2,968
    Likes Received:
    84
    Sounds like it's packed with something bizarre which tricks your AV.
     
  4. pimonserry

    pimonserry sounds like a party.

    Joined:
    20 Dec 2008
    Posts:
    2,113
    Likes Received:
    75
    Umm, I got it from the ordinary place, xtremesystems.

    It must just be a false positive. Still odd though :eek:
     
  5. Krikkit

    Krikkit All glory to the hypnotoad! Super Moderator

    Joined:
    21 Jan 2003
    Posts:
    23,926
    Likes Received:
    655
    If you got it from XS without interference it must be a false positive, it's not unheard of.
     
  6. thehippoz

    thehippoz What's a Dremel?

    Joined:
    19 Dec 2008
    Posts:
    5,780
    Likes Received:
    174
    bet it's picking up the code that taxes the cpu.. like if you know some guy has crappy cooling- you could design a trojan to max out his cpu and burn up his cpus over time when the rig is idle
     
  7. capnPedro

    capnPedro Hacker. Maker. Engineer.

    Joined:
    11 Apr 2007
    Posts:
    4,381
    Likes Received:
    241
    I highly doubt it. It's more likely because sections of SuperPi must be written in Assembly in order to access low level hardware functions and certain 'coding hacks' can look suspicious.
     
  8. thehippoz

    thehippoz What's a Dremel?

    Joined:
    19 Dec 2008
    Posts:
    5,780
    Likes Received:
    174
    yeah could be anything.. but packer krunchy, haven't looked it up is more than likely the looping part of the code that's being picked up- that av might even flag prime or orthos for the same thing.. super pi last I remember running it doesn't need admin to run a set (been awhile though.. might be wrong)
     

Share This Page