Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Virus Total Report! #441

Open
Ares-Hantrio opened this issue Mar 15, 2024 · 11 comments
Open

Virus Total Report! #441

Ares-Hantrio opened this issue Mar 15, 2024 · 11 comments

Comments

@Ares-Hantrio
Copy link

Ares-Hantrio commented Mar 15, 2024

www virustotal com_gui_file_46e5afb96a092307725eb4503480ed4c894168884474df01b5a679bdae7e3e5e_relations

Can you tell why Virus Total showing this? I just uploaded your shell.exe file here and Vrus total shows it has some relations with bad IPs..

@Ares-Hantrio Ares-Hantrio changed the title Virus total Virus Total Report! Mar 15, 2024
@Ares-Hantrio
Copy link
Author

Is shell is really Safe?

@moudey
Copy link
Owner

moudey commented Mar 16, 2024

Please explain more about the bad IP relations.
The results are false positives on VirusTotal, and we are working to correct this.

@Ares-Hantrio
Copy link
Author

Please explain more about the bad IP relations.
The results are false positives on VirusTotal, and we are working to correct this.

How could the virus total show 7 false positive results? And wait let me explain to you what I mean by bad IP relations..

@Dev123456689
Copy link

Dev123456689 commented May 4, 2024

www virustotal com_gui_file_46e5afb96a092307725eb4503480ed4c894168884474df01b5a679bdae7e3e5e_relations

@Ares-03 According to the image you have posted and as per my testing it only got 2 positives out of 73. It is not uncommon to have 2 false positives out of 73. Additionally one of the detection was made by AI which is highly susceptible to false positives.

@Ares-Hantrio
Copy link
Author

What about this..?

hgfjhnfg

@Dev123456689
Copy link

hgfjhnfg

This looks suspicious 😨. Developer it's your turn to answer.

@moudey
Copy link
Owner

moudey commented May 16, 2024

Shell uses a system API that some antivirus programs consider malware because it is not signed with an EV code signing certificate It is expensive and I cannot afford it.

The source code is now open. You can review and compile it, and then scan it by Virustotal.

@Ares-Hantrio
Copy link
Author

Shell uses a system API that some antivirus programs consider malware because it is not signed with an EV code signing certificate It is expensive and I cannot afford it.

The source code is now open. You can review and compile it, and then scan it by Virustotal.

I can understand your point. And I will also check your source code one day. And I can say that I also believe that this is not an unsafe software, but the point is if you can do something in this situation then please do, i.e. if you can fix this antivirus detection thing then please do. my job was to tell and it is your wish. And thanks for the reply..

@moudey
Copy link
Owner

moudey commented May 16, 2024

I can understand your point. And I will also check your source code one day. And I can say that I also believe that this is not an unsafe software, but the point is if you can do something in this situation then please do, i.e. if you can fix this antivirus detection thing then please do. my job was to tell and it is your wish. And thanks for the reply..

About a year ago, I tried to exclude some APIs, but later their use became necessary, so some false positive results appeared despite sending review requests to antivirus companies. Of course, informing you about this is very important and appreciated. I will work to resolve this issue as much as possible

@whindsaks
Copy link

VirusTotal runs these tests with Windows Update and all other Windows bloat features turned on so I would not necessarily cry wolf about anything contacting certain IP addresses.

@pa-0
Copy link

pa-0 commented Jul 3, 2024

Many whitelisted, known-to-be safe applications are typically flagged by a handful of vendors. The heuristics these AV's use to detect 'bad' applications are far from an exact science (but also sometimes correct!)

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

No branches or pull requests

5 participants