ValdikSS / GoodbyeDPI

GoodbyeDPI — Deep Packet Inspection circumvention utility (for Windows)

Home Page:https://ntc.party/c/community-software/goodbyedpi

Geek Repo:Geek Repo

Github PK Tool:Github PK Tool

Windows defender detects Trojan:Script/Oneeva.A!ml

nabeeleinstein opened this issue · comments

Operating system / операционная система

Windows 11 22000.527

Running as service / Запуск программы как сервис

I run it as a regular program / Запускаю программу обычным образом

Describe the issue / Опишите проблему

Windows defender detects Trojan:Script/Oneeva.A!ml and blocks the download.

Additional information / Дополнительная информация

No response

Having same issue while installing GoodbyeDPI v0.2.1 from Chocolatey.

Та же проблема при установке GoodbyeDPI v0.2.1 из Chocolatey.

commented

Please allow download file anyway and try to find which file in archive causes this.

@r4sas Windows Defender detects whole .zip as a threat. When extracted, nothing is detected.

@r4sas Windows Defender detects whole .zip as a threat. When extracted, nothing is detected.

Then it's a false positive. Despite GoodbyeDPI being an application for Windows, I personally don't use Windows and/or Defender (the software is compiled on Linux with mingw, and I test everything in Windows 7 VM without Defender), I will appreciate if you and others report the file as safe to Microsoft.

Virustotal doesn't show anything for the latest goodbyedpi-0.2.1.zip release from Defender, as well as for individual .exe files: https://www.virustotal.com/gui/file/acb0568cfc184cdd52c235c9ccc51a38fd78eb57564dcf7dce5188b9ad93f391

Использую Avast free, проблем нет.
Проверил и zip и файлы после распаковки.

У меня не воспроизводится данная проблема.
Версия Защитника Windows:
image
Результаты проверки .zip архива:
image
Результаты проверки .bat и .exe:
image
Результаты проверки всей папки:
image