[GH-ISSUE #1097] Will hosting this program on my computer put me at risk? #799

Closed
opened 2026-02-27 15:51:53 +03:00 by kerem · 20 comments
Owner

Originally created by @tomjonesius on GitHub (Oct 5, 2022).
Original GitHub issue: https://github.com/quasar/Quasar/issues/1097

I downloaded the .zip file, extracted it to a folder, then moved it to my external hard drive. I then disconnected and did a virus scan, and three issues were found by BitDefender in locations nowhere near where I originally saved the files. Have I just inadvertently infected myself? I have removed the 'threats' and will leave my hard drive disconnected for the time being.

Originally created by @tomjonesius on GitHub (Oct 5, 2022). Original GitHub issue: https://github.com/quasar/Quasar/issues/1097 I downloaded the .zip file, extracted it to a folder, then moved it to my external hard drive. I then disconnected and did a virus scan, and three issues were found by BitDefender in locations nowhere near where I originally saved the files. Have I just inadvertently infected myself? I have removed the 'threats' and will leave my hard drive disconnected for the time being.
kerem closed this issue 2026-02-27 15:51:53 +03:00
Author
Owner

@edcdecl commented on GitHub (Oct 5, 2022):

which zip file.

<!-- gh-comment-id:1267832385 --> @edcdecl commented on GitHub (Oct 5, 2022): **___which___** zip file.
Author
Owner

@tomjonesius commented on GitHub (Oct 5, 2022):

The one found here (this repository)

https://github.com/quasar/Quasar/archive/refs/tags/v1.4.0.zip

<!-- gh-comment-id:1267836182 --> @tomjonesius commented on GitHub (Oct 5, 2022): The one found here (this repository) https://github.com/quasar/Quasar/archive/refs/tags/v1.4.0.zip
Author
Owner

@edcdecl commented on GitHub (Oct 5, 2022):

are you sure they were exe's and not just data files?
edit: data files are stored in your user account's appdata/roaming folder

<!-- gh-comment-id:1267837441 --> @edcdecl commented on GitHub (Oct 5, 2022): are you sure they were exe's and not just data files? edit: data files are stored in your user account's appdata/roaming folder
Author
Owner

@BurntDog commented on GitHub (Oct 5, 2022):

Make sure you get this software from here only. FYI just by being connected to the internet alone your at risk. This program itself has proven secure.

<!-- gh-comment-id:1267837702 --> @BurntDog commented on GitHub (Oct 5, 2022): Make sure you get this software from here only. FYI just by being connected to the internet alone your at risk. This program itself has proven secure.
Author
Owner

@tomjonesius commented on GitHub (Oct 5, 2022):

I don't think any of the 3 were .exe files. However I never actually ran the program so how would the files have gotten in my system?

<!-- gh-comment-id:1267838100 --> @tomjonesius commented on GitHub (Oct 5, 2022): I don't think any of the 3 were .exe files. However I never actually ran the program so how would the files have gotten in my system?
Author
Owner
<!-- gh-comment-id:1267838276 --> @BurntDog commented on GitHub (Oct 5, 2022): https://github.com/quasar/Quasar/releases/download/v1.4.0/Quasar.v1.4.0.zip
Author
Owner

@edcdecl commented on GitHub (Oct 5, 2022):

if you didnt run quasar then theyre 100% unrelated.

<!-- gh-comment-id:1267838566 --> @edcdecl commented on GitHub (Oct 5, 2022): if you didnt run quasar then theyre 100% unrelated.
Author
Owner

@tomjonesius commented on GitHub (Oct 5, 2022):

My AV identified them as Quasar and one came up as a password stealer (i think client.bin?)

<!-- gh-comment-id:1267838991 --> @tomjonesius commented on GitHub (Oct 5, 2022): My AV identified them as Quasar and one came up as a password stealer (i think client.bin?)
Author
Owner

@edcdecl commented on GitHub (Oct 5, 2022):

client.bin is a file that quasar uses to generate the client
because client.bin probably the entire client code, it detects client.bin as a wide variety of threats (password stealer is their way of saying password recovery)

<!-- gh-comment-id:1267839330 --> @edcdecl commented on GitHub (Oct 5, 2022): client.bin is a file that quasar uses to **___generate the client___** because client.bin probably the entire client code, it detects client.bin as a wide variety of threats (password stealer is their way of saying password recovery)
Author
Owner

@tomjonesius commented on GitHub (Oct 5, 2022):

How did it end up in my files without me opening the program though? That's the part that's got me concerned

<!-- gh-comment-id:1267840501 --> @tomjonesius commented on GitHub (Oct 5, 2022): How did it end up in my files without me opening the program though? That's the part that's got me concerned
Author
Owner

@edcdecl commented on GitHub (Oct 5, 2022):

client.bin is part of quasar. it's in the zip file.

<!-- gh-comment-id:1267840686 --> @edcdecl commented on GitHub (Oct 5, 2022): client.bin is _part_ of quasar. it's in the zip file.
Author
Owner

@tomjonesius commented on GitHub (Oct 5, 2022):

I know, however, the .zip file was not even on my machine when I did the scan

<!-- gh-comment-id:1267840944 --> @tomjonesius commented on GitHub (Oct 5, 2022): I know, however, the .zip file was not even on my machine when I did the scan
Author
Owner

@edcdecl commented on GitHub (Oct 5, 2022):

your av probably quarantined it. explains why client.bin wasnt where you put quasar.

<!-- gh-comment-id:1267841427 --> @edcdecl commented on GitHub (Oct 5, 2022): your av probably quarantined it. explains why client.bin wasnt where you put quasar.
Author
Owner

@BurntDog commented on GitHub (Oct 5, 2022):

If you don't understand how these programs work it's best for you not to use it until you do.

<!-- gh-comment-id:1267841564 --> @BurntDog commented on GitHub (Oct 5, 2022): If you don't understand how these programs work it's best for you not to use it until you do.
Author
Owner

@tomjonesius commented on GitHub (Oct 5, 2022):

Can you point me in a helpful direction to find out more

<!-- gh-comment-id:1267841965 --> @tomjonesius commented on GitHub (Oct 5, 2022): Can you point me in a helpful direction to find out more
Author
Owner

@BurntDog commented on GitHub (Oct 5, 2022):

There are videos on YouTube that help you better understand this app. That client.bin file alone can't do anything. It's used in both compiling or setting up this app.

<!-- gh-comment-id:1267844558 --> @BurntDog commented on GitHub (Oct 5, 2022): There are videos on YouTube that help you better understand this app. That client.bin file alone can't do anything. It's used in both compiling or setting up this app.
Author
Owner

@tomjonesius commented on GitHub (Oct 5, 2022):

Ok so just to clarify.
BitDefender is tripping and my computer is fine?

<!-- gh-comment-id:1267845538 --> @tomjonesius commented on GitHub (Oct 5, 2022): Ok so just to clarify. BitDefender is tripping and my computer is fine?
Author
Owner

@edcdecl commented on GitHub (Oct 5, 2022):

yes. a program can't do anything unless you invoke it.

<!-- gh-comment-id:1267845723 --> @edcdecl commented on GitHub (Oct 5, 2022): yes. a program can't do anything unless you invoke it.
Author
Owner

@MaxXor commented on GitHub (Oct 5, 2022):

@ErickDaCoder @BurntDog Thanks for covering this issue. I think everything to get in the right direction has been said. You can also check out this guide: https://github.com/quasar/Quasar/wiki/Getting-Started

However, @tomjonesius I don't think this AV scan is meaningful if you didn't do a scan BEFORE and AFTER downloading Quasar. It could be possible that you had a virus on your computer for weeks and just now noticed it.

<!-- gh-comment-id:1268035089 --> @MaxXor commented on GitHub (Oct 5, 2022): @ErickDaCoder @BurntDog Thanks for covering this issue. I think everything to get in the right direction has been said. You can also check out this guide: https://github.com/quasar/Quasar/wiki/Getting-Started However, @tomjonesius I don't think this AV scan is meaningful if you didn't do a scan BEFORE and AFTER downloading Quasar. It could be possible that you had a virus on your computer for weeks and just now noticed it.
Author
Owner

@knackrack615 commented on GitHub (Oct 8, 2022):

Probably what happened here is OP used WinRAR's drag and drop function to extract Quasar, WinRAR will temporarily drop the files on %temp% when extracting that way, that's most likely what was detected.

<!-- gh-comment-id:1272343028 --> @knackrack615 commented on GitHub (Oct 8, 2022): Probably what happened here is OP used WinRAR's drag and drop function to extract Quasar, WinRAR will temporarily drop the files on %temp% when extracting that way, that's most likely what was detected.
Sign in to join this conversation.
No milestone
No project
No assignees
1 participant
Notifications
Due date
The due date is invalid or out of range. Please use the format "yyyy-mm-dd".

No due date set.

Dependencies

No dependencies set.

Reference
starred/Quasar#799
No description provided.