Open mmalka opened 2 years ago
They can be sent for analysis to antivirus company as part as their false positive program.
There a signature of a ransomware is detected, why?
Does it has to do with the way they coded the dev fees? Or they use the same cryptographic library as most ransomwares? (still can be made a whitelist by antivirus company this way and it's quite a fast process, couple of hours at worst)
Or just obfuscation ? (same thing, can be whitelisted by antivirus company)
Some viruses can run a hidden crypto program on the infected computer to earn money covertly. Windows has falsely detected every mining program I've used. As long as you know what you are running, downloaded from here and ran a checksum on it. You are safe to run a miner.
Some antiviruses detect mining softwares as Trojan:Win32/Mamson.A!ac. This can be misleading and antivirus vendors should correct this. In recent version of windows defender does not have this problem. so I think nbminer is safe If you are worried you can send it for analysis to security research companies.
As everyone else said it's a false positive most miners are reported as a Trojan or something
Does anybody know how to add exceptions for the files created when adding the driver? I have to run this scanner but it detects the file added to the Windows file store and it seems like a temp file that may change in name.
False positive. Most miners are detected as trojan. Add exclusion in virus scanner.