Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

AVG Antivirus is throwing up a threat detection for CefSharp.BrowserSubprocess.exe #779

Closed
rfgamaral opened this issue Jan 31, 2015 · 6 comments

Comments

@rfgamaral
Copy link

User @faudau created this issue on my SlackUI repo (https://github.com/rfgamaral/SlackUI/issues/7).

I'm wondering if there's anything that CefSharp can do to avoid this issue or if the solution is to get AVG Antivirus software to know that this is a false positive and they should not trigger a threat for this file.

Not sure if you guys were aware of this already but I though you should know.

@jornh
Copy link
Contributor

jornh commented Jan 31, 2015

On what CefSharp version? x64 or x86? Is it still an issue if you upgrade to latest 39 version?

Upstream response to a similar issue with a CEF file (cef.pak) at http://www.magpcss.org/ceforum/viewtopic.php?f=6&t=12362&p=23616&hilit=antivirus#p23617. It has some generic advice on what to do ...

@rfgamaral
Copy link
Author

I can't really answer those questions cause I don't use an AV...

@jankurianski
Copy link
Member

I uploaded my source-built versions of CefSharp.BrowserSubprocess.exe to virustotal.com (x64 results, x86 results). No detection by AVG.

My suspicion is this is not related to the binary contents of the file, but due to some heuristic based on the characteristics of the file, how it is installed, signed or unsigned, etc.

@rfgamaral I think next step is to ask your users that report this problem to drill into their AV software and get the exact reason for the file being detected.

@rfgamaral
Copy link
Author

@jankurianski Thanks for looking into this. For now only one user is reporting this issue and he never replied back. I'm closing this issue and leaving the one my repo opened for while. If he doesn't get back to us I'll close it too due to inactivity.

I'll leave a comment here if needed and if he indeed replies back.

@dasnation
Copy link

@rfgamaral Hey - I am running into this issue as well. I am using Symantec Endpoint Protection. Any idea what I can do?

@robertstefan
Copy link

@rfgamaral Avast AV also detects it as a threat; infected with IDP.Generic

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

No branches or pull requests

5 participants