Opened 10 years ago

Closed 10 years ago

#3316 closed task (fixed)

OMC 1.9.2 for Windows is caught as a virus by AVG

Reported by: Francesco Casella Owned by: Adrian Pop
Priority: critical Milestone:
Component: Installation program Version: trunk
Keywords: Cc: peter.fritzson@…


When installing the official 1.9.2 release on Windows systems using the AVG anti-virus software, omc.exe is seen as suspect (!) and quarantined or removed.

It is not clear what the actual reason is. I guess we should open an investigation with AVG technologies. I don't really think we have malicious code within omc.exe, do we?

Attachments (2)

CAM00331.jpg (2.1 MB ) - added by Francesco Casella 10 years ago.
CAM00332.jpg (1.3 MB ) - added by Francesco Casella 10 years ago.

Change History (12)

by Francesco Casella, 10 years ago

Attachment: CAM00331.jpg added

by Francesco Casella, 10 years ago

Attachment: CAM00332.jpg added

comment:1 by Adrian Pop, 10 years ago

No, there is no virus in omc.exe.
I'll install 1.9.2 on my desktop which has also free AVG and do a report about it.
Hopefully they will remove it from their list.

comment:2 by Adrian Pop, 10 years ago

We could use their "Report false detection" page:
to send them a sample. I'll need to check a bit which dlls I need to include.

comment:3 by Francesco Casella, 10 years ago

As far as I understand (see attached screenshots), the suspected file is just omc.exe. The module which identifies it as a threat is "Identity protection".

The weird thing is that it is identified as such during installation, not during usage. Maybe omc.exe is launched during installation to download some drivers or something like this?

comment:4 by Adrian Pop, 10 years ago

omc.exe is a very small executable which loads the huge libOpenModelicaCompiler.dll :)
We don't run omc.exe during the installation.

comment:5 by Adrian Pop, 10 years ago

I cannot reproduce this issue on my desktop using OpenModelica1.9.2-r25117 and AVG 2014 build 4800.
I'll try installing AVG 2015 and try again.

comment:6 by Adrian Pop, 10 years ago

I cannot reproduce this with AVG 2015 build 5941 at installation time.
However, if I run OMShell (as OMEdit doesn't use omc.exe anymore) and close OMShell AVG kicks in and reports the same as for you. I'll see if I can report this as a false positive to AVG.

comment:7 by Adrian Pop, 10 years ago

I now reported the issue to AVG and hopefully they will fix it with a new update.

comment:8 by Martin Sjölund, 10 years ago


Moved to new milestone 1.9.4

comment:9 by Martin Sjölund, 10 years ago

Milestone: 1.9.4
Type: defecttask

Any news?

comment:10 by Francesco Casella, 10 years ago

Resolution: fixed
Status: newclosed

Didn't happen anymore with 1.9.3, so I'm closing the ticket. I guess Adrian's input worked out.

Thanks for the reminder.

Note: See TracTickets for help on using tickets.