-
-
Notifications
You must be signed in to change notification settings - Fork 224
New issue
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
Taiga update detected as a trojan? #159
Comments
Same here. |
Same here, using Nod32 Antivirus 8 |
8/55 detection on VirusTotal: https://www.virustotal.com/en/file/6ebd9254be96429b70d998830eabbb19cfe3d87834604a5ee968ad7b0e649cbb/analysis/1439256631/ |
It was 2/56 when I first submitted it, went ahead to 8/55 at night, and now it's 7/56... I don't understand why they're classifying TaigaSetup.exe as a trojan, but not Taiga.exe itself. Besides, I haven't changed anything in the setup in the last 5 months. I've reported the file as a false positive to Avast, Avira, Baidu, ESET, Kaspersky and McAfee. So far, only Kaspersky replied:
Still waiting to hear back from the others (it can take up to 48 hours, they say). I'm tired of doing this on every new release, though (see: #19). For those who're rightfully skeptical about the warnings, you can try running TaigaSetup.exe in Sandboxie and see for yourself: It just copies the files to the install location, and creates shortcuts on desktop and the Start menu. You can also examine the NSIS script of the setup here. All right, ESET replied too:
|
First thank you very much for this programm, it is a blast and i dont want to manage my anime without it anymore. Glad to here it was a false alarm. And thanks for the quick reply :) |
Having the same problem, thanks for the false positive reports. Keep up the good work 👍 |
Btw after the new signature update on Eset nod 32 you cant even download it anymore, it just blocks the download site. Had to disable the web protection to get it. But then i could install it without problems from eset. |
@kie8 @TheAlaine Okay, that was quick:
BitDefender responded too, but haven't given a definitive answer:
|
I added Taiga's folder to exceptions, it's faster. Dunno why nod detects it as this: http://www.virusradar.com/en/Win32_Spy.Zbot.AAO/description |
Thanks @erengy, keep us posted 👍 |
@erengy I use windows defender, and so far I haven't had any problems. Well windows defender is shit, but atleast I can use taiga in peace. |
Symantec products were detecting Taiga as "WS.Reputation.1", so I submitted an erroneous detection form and received the following response within an hour:
Avira, which had classified TaigaSetup.exe as "TR/Spy.ZBot.968021", responded after ~25 hours:
|
ESET has already whitelisted the domain and no longer detecting the setup as a virus. Great work 👍 |
Windows Defender is detecting it for me now, on Windows 10! Darnit :') |
Is your virus and spyware definitions up to date? Just tried scanning the files with Windows Defender (definition version 1.203.2099.0) and it didn't find any issues, neither on Win 8.1 nor on Win 10. |
I'm on Windows 7 using Windows Defender. My definitions are up to date, and Taiga hasn't been flagged as a virus on any of the instances I've updated it. |
My definitions are 1.203.2137.0, even after a manual update, and its still being flagged as malware. |
Here's our current situation: Avast, Avira, Baidu, ESET, Kaspersky and Symantec no longer detect the latest version of Taiga as malicious. McAfee, Qihoo and Rising still do. McAfee has changed the classification from "Artemis!A6E427EEE0BF" to "RDN/PWSZbot-FHN", but still insists that the setup is malware. I've already mailed them twice, don't know another try would help. Qihoo is not exactly a reputable company according to what I've read, but I sent them a report anyway. I think they accepted the false positive:
Rising, another Chinese firm, doesn't even have a proper English website. They do have a submission page, though. I've just reported the file, we'll see if it works out. |
The text was updated successfully, but these errors were encountered: