Ears14U: Anyone else have this occur?
SuperAntiSpyware is finding these results
Detected Threats [4]
Worm.TTF/Variant
C:\GOG Games\INDEPENDENCE WAR DELUXE\DEFIANCE\IWDE_START.EXE
C:\GOG Games\INDEPENDENCE WAR DELUXE...\LAUNCH INDEPENDENCE WAR DEFIANCE.LNK
C:\GOG Games\INDEPENDENCE WAR DELUXE\IWAR_START.EXE
C:\GOG Games\INDEPENDENCE WAR DELUXE...\LAUNCH INDEPENDENCE WAR.LNK
And it keeps crashing on me. Running Win 7 64bit.
I submitted a support ticket to SAS.com to see if these are a false positive or not. I'll update accordingly.
Before I re-started the analysis it was only 6/53, so more scanners are picking up something. However, only Zillya claims to have detected a "family" (Skillis, which is a rootkit/keylogger/screengrabber/remote access/... nastiness), everyone else seems to go off mostly on heuristics (the file is packed (compressed) with UPX, which is a packer commonly used for exe files, but infected files also use packers like UPX quite often to be able to better hide their nasty bits from AV-scanner's piercing stare --- not that that helps much nowadays, since scanners very quickly learned to decompress such files to see the nasty bits again. But it still can raise some flags, I think that is what is happening here.