Page 1 of 1

Installer infected?

Posted: Fri Apr 17, 2020 2:54 pm
by FlyingThunder
I noticed that the neoEE installer does not work anymore, it loads and then doesnt start.
At the same time, windows detects a Win32/Cryptinject ransomware.
I think your site and your installer might be infected, please check that

Re: Installer infected?

Posted: Sat Apr 18, 2020 3:20 pm
by Jodocus
It is not. The SHA1-Hash of the file is d532347bb5c39363f1778dd3a9aa117dab0285b94ff4a11add36a172280fd7c6

Check it. If it matches, you can be sure the file is fine.

Re: Installer infected?

Posted: Sun Apr 19, 2020 7:24 am
by FlyingThunder
hmm, i was just worried because usually a windows defender false positive is no big deal, but on virustotal there it got detected by 18 different engines... just wondering because i cant remember it striking before

but the SHA-1 hash for the file i downloaded form here: https://www.neoee.net/update
is dde23c86b042b3818f64d0b79cacfa8b3c3c89a6 ? im a bit confused now...

Re: Installer infected?

Posted: Mon Apr 20, 2020 2:31 pm
by Thanøs
its a false positive message. Don't worrie.