Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

[Bug]: TOTK_Optimizer_2.1.2_Windows.zip reportedly contains a virus #185

Open
mattzink opened this issue Dec 9, 2024 · 4 comments
Open
Labels
bug Something isn't working

Comments

@mattzink
Copy link

mattzink commented Dec 9, 2024

Describe the bug

I was unable to download the `TOTK_Optimizer_2.1.2_Windows.zip` file because Windows Defender blocked it because it detected a virus. I figured it was a false positive, so I uploaded it to VirusTotal where 22 different virus engines detected a virus:
https://www.virustotal.com/gui/file/9343b421b0c61d8d2de7a86b05e9e876aa73896eaa123f861611756e22580782

Reproduction steps

1.
2.
3.
...

Additional context

1.
2.
3.
...

What's your operating system?

Windows 11

@mattzink mattzink added the bug Something isn't working label Dec 9, 2024
@MaxLastBreath
Copy link
Owner

Lol wtf? It makes no sense

@MaxLastBreath
Copy link
Owner

I think I'm going to remove the one_dir installation, I have no idea why it's flagging the zip but no issues with the executable lol

@Kolchefen
Copy link

Kolchefen commented Dec 17, 2024

Looks like all 22 (now 23 after I reanalyzed) positives refer to a catch-all heuristic detector that shoots out false positives all the time.

It's because hackers will use --onedir to hide their code from scanners, so they scan for this instead.

Looked at the code, pretty neat stuff, but I don't think its dangerous at all.

@MaxLastBreath
Copy link
Owner

Looks like all 22 (now 23 after I reanalyzed) positives refer to a catch-all heuristic detector that shoots out false positives all the time.

It's because hackers will use --onedir to hide their code from scanners, so they scan for this instead.

Looked at the code, pretty neat stuff, but I don't think its dangerous at all.

Didn't know this, going to get rid of --onedir in the future, i thought it was less prone to false positives lol.

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
bug Something isn't working
Projects
None yet
Development

No branches or pull requests

3 participants