Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

[Rule Tuning] MacOS_Cryptominer_Generic_333129b #12

Closed
krypt0x opened this issue Aug 2, 2023 · 1 comment
Closed

[Rule Tuning] MacOS_Cryptominer_Generic_333129b #12

krypt0x opened this issue Aug 2, 2023 · 1 comment
Assignees
Labels
Tuning For improving a rules detection

Comments

@krypt0x
Copy link

krypt0x commented Aug 2, 2023

Impacted Rule: MacOS_Cryptominer_Generic

Rule Name with ID: MacOS_Cryptominer_Generic_333129b

Description

This crypto wallet has been wrongly flagged as malicious from some time now. It's definitely a false positive. Could you please have a look at it?
https://github.com/ConcealNetwork/conceal-desktop

Example Sample

https://www.virustotal.com/gui/file/65aa9266c675e9e9ed55d4eb315a7a27804c24329c6ed7c908c504403317b12d/detection

@krypt0x krypt0x added the Tuning For improving a rules detection label Aug 2, 2023
@terrancedejesus
Copy link

Hello @krypt0x - Thank you for taking the time to bring this to our attention. After further review, we have collectively decided to deprecate this rule due to, as you mentioned, the false-positive alerts we have been tracking globally. An update for this deprecation should be released sometime this week. We will close this issue in the meantime, but if you have any further questions please feel free to let us know.

Thanks again for being a community member and contributor!

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
Tuning For improving a rules detection
Projects
None yet
Development

No branches or pull requests

3 participants