TeamShinkansen / Hakchi2-CE

Tool that allows you to add more games to your NES/SNES Classic Mini

Home Page:https://discord.gg/UUvqsAR

Geek Repo:Geek Repo

Github PK Tool:Github PK Tool

Malware warning from Windows defender when attempting to upgrade to 3.9.3.0

odog8 opened this issue · comments

commented

Describe the bug

Windows defender detects malware in latest build of hakchi
To Reproduce

upgrade to 3.9.3
Expected behavior

no malware warning
Screenshots

Additional context

Safe screen or actual malware detection?

commented

actual malware detection

commented

Probably a false positive but idk

Weird, I just uploaded the installer and portable version to virus total and defender detected nothing

some other scanners detected Linux “malware”, but it probably confused hakchi with it

Yup. Can't update from hakchi or download unless I turn off all the virus scanners.

I get this warning on Win 11
image

Unfortunately, these kind of things just happen...

It's a case of antivirus thinking there's a virus based on who knows what factors... might by download count, might be that it isn't codesigned, and maybe it's just because it's coming from github

I've seen one antivirus detect it because some of the linux binary files used for the mod itself are UPX packed to save space

I received the same warning on Windows 10 (fully updated), from either downloading the portable release off GitHub or using the built-in auto-updater.

image

Maybe just to be on the safe side you guys should make sure you haven't been compromised, either via dependencies or on your build machines?

Which file inside of the archive does it detect?

Unwanted program IS NOT MALWARE (VIRUS, TROJAN, RAMSOMWARE, etc.) is the way in which Microsoft tell you "you are downloading a program what I THINK you shouldn't use" in other words: The developer has not pay me lots of money for me do not scare the users and give you bad reputation.

So, you have two options: use a real antivirus, or use a net explorer to scan the file.
do not trust the people here and do not use the software.

@impeeza Here's the thing, I can download the same file and none of my systems detect it...
image
It's probably caused by the updater triggering some behavior the antivirus doesn't like.