this post was submitted on 11 Jan 2025
22 points (95.8% liked)

Piracy: ꜱᴀɪʟ ᴛʜᴇ ʜɪɢʜ ꜱᴇᴀꜱ

55319 readers
394 users here now

⚓ Dedicated to the discussion of digital piracy, including ethical problems and legal advancements.

Rules • Full Version

1. Posts must be related to the discussion of digital piracy

2. Don't request invites, trade, sell, or self-promote

3. Don't request or link to specific pirated titles, including DMs

4. Don't submit low-quality posts, be entitled, or harass others



Loot, Pillage, & Plunder

📜 c/Piracy Wiki (Community Edition):


💰 Please help cover server costs.

Ko-Fi Liberapay
Ko-fi Liberapay

founded 2 years ago
MODERATORS
 

Today I was trying to download Affinity Photo 2 from the websites listed on the megathread, as normally I do exactly that and everything goes just fine.

But when scanning the downloaded files. Windows Defender detected it as hacktool.win32.keygen and malwarebytes as Generic.Malware.AI.DDS.

In the case of Windows, I am guessing that it is not detecting a virus but the actual crack right? That's what that means as far as I'm aware. But what surprised me was malwarebytes, it has sometimes warned about cracks but it's not something it does often, and I don't recognize the detection code, but it seems to be using AI to detect malware now?

Is this something that is known to happen? Malwarebytes AI seems to be detecting cracks as malware... Or is this actually a virus?

I put it in quarantine just in case, but I am guessing this has to be false positives, as it happened with 2 different downloads from 2 different websites.

VirusTotal results also flagged it as "malware", but seems to be also detecting the crack. https://www.virustotal.com/gui/file/127540f7b3558a94f6e8a4ce9c695231e8715e20a17da4584d5df99035a79d49/detection

you are viewing a single comment's thread
view the rest of the comments
[–] Kissaki@lemmy.dbzer0.com 3 points 4 hours ago

https://www.malwarebytes.com/blog/detections/generic-malware-ai-dds

Items detected as Generic.Malware.AI.DDS can be various types of malware and will be examined and classified at a later stage.

It does not detect is as definite malware, but their trained AI engine seems to conclude or hallucinate a high likelihood. Which may or may not be true.

Or is this actually a virus?

We, you, and they can't tell from this alone. For a definite answer, a deeper analysis will have to be made.