Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Win32/Cloxer.D!cl trojan found in 0.9.0 installer. #2057

Closed
xianglo opened this issue Dec 5, 2018 · 8 comments
Closed

Win32/Cloxer.D!cl trojan found in 0.9.0 installer. #2057

xianglo opened this issue Dec 5, 2018 · 8 comments

Comments

@xianglo
Copy link

xianglo commented Dec 5, 2018

Please close this issue if this is a typical randomizer that Windows defender may find disagreeable. My download was hash checked.

@devinbileck
Copy link
Member

Hmm. I am not encountering that. Are your definitions up to date?
I also ran it through VirusTotal and it came up clean: https://www.virustotal.com/#/file/6f3753d269f4906da664a1948cb9593b72a0bf5a033e20bd4ce9265f6e892f2b/detection

@ripcurlx
Copy link
Contributor

ripcurlx commented Dec 5, 2018

AVG Anti Virus also didn't complain when I checked all files included in the release.

@ManfredKarrer
Copy link
Member

Would be nice to have that check at https://www.virustotal.com be integrated in the build process (beside doing the manual check with avg).

@devinbileck
Copy link
Member

They provide a free public API that can be used: https://www.virustotal.com/en/documentation/public-api/
Should be as simple as:

curl -v -F 'file=@/path/to/file' -F \
  apikey=${VT_API_KEY} https://www.virustotal.com/vtapi/v2/file/scan

@ManfredKarrer
Copy link
Member

@ripcurlx Can you try it out in the 0.9.1 release?

@xianglo
Copy link
Author

xianglo commented Dec 6, 2018

I had defender delete it and havent had ny problems using 0.9.0. Im only booted into Windows temporarily. Ill keep an eye.
screenshot 2

@ManfredKarrer
Copy link
Member

The probably detect tor and flag is by default as malware....

@ManfredKarrer
Copy link
Member

Close it as it is a false positive

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Projects
None yet
Development

No branches or pull requests

4 participants