Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Few Antivirus @ Virus Total Label Single Binaries as malicious #8

Open
rothoma2 opened this issue May 4, 2023 · 4 comments
Open

Few Antivirus @ Virus Total Label Single Binaries as malicious #8

rothoma2 opened this issue May 4, 2023 · 4 comments

Comments

@rothoma2
Copy link

rothoma2 commented May 4, 2023

Hello,
I really like the capabilities of this project and the single binary distributable files. I tried to use it on a project but Windows Security Blocked it. I run this across Virus Total, and although the majority of Scanners didn't flag this file, a few ones did.

Would it be possible to look into signing this binaries?
https://www.virustotal.com/gui/file/faf5de1fa509cbebccc4d1270be0bed5fe2031eae98dabf92d5f4e81483e0aa7/behavior
virus_total
virus_total2

@prabhu
Copy link
Member

prabhu commented May 4, 2023

@rothoma2 Thank you for the kind words. I am in the process of getting a signing certificate via signmycode.com. It appears like a very convulted process so trying to work through all the verification steps etc. Meanwhile is there an option to submit the executable to Windows Security for assessment?

@prabhu
Copy link
Member

prabhu commented May 4, 2023

@rothoma2 It appears like the problem is when depscan tries to extract cdxgen and other binaries into the temp directory. I am not sure if signing would help here since building a reputation for my key would take a while. Let me check if there is a better way to do the extraction.

@rothoma2
Copy link
Author

I'm not sure if there are better ways to do this, and not looks suspicious to an antivirus. Also just a few seem to catch it, unfortunately although the Key takes some time to get reputation its the only way I know to "whitelist" this behavior on a mass scale

@prabhu
Copy link
Member

prabhu commented May 24, 2023

@rothoma2 I understand. My attempt to get a cert via signmycode.com is going nowhere. Let me look into some alternatives next week.

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

No branches or pull requests

2 participants