NebuTech / NBMiner

GPU Miner for ETH, RVN, BEAM, CFX, ZIL, AE, ERGO
https://nbminer.com
3.17k stars 517 forks source link

recently detected as Trojan:Win32/Mamson.A!ac #787

Open mmalka opened 2 years ago

UselessGuru commented 2 years ago

False positive. Most miners are detected as trojan. Add exclusion in virus scanner.

mmalka commented 2 years ago

They can be sent for analysis to antivirus company as part as their false positive program.

There a signature of a ransomware is detected, why?

Does it has to do with the way they coded the dev fees? Or they use the same cryptographic library as most ransomwares? (still can be made a whitelist by antivirus company this way and it's quite a fast process, couple of hours at worst)

Or just obfuscation ? (same thing, can be whitelisted by antivirus company)

Tom5051 commented 2 years ago

Some viruses can run a hidden crypto program on the infected computer to earn money covertly. Windows has falsely detected every mining program I've used. As long as you know what you are running, downloaded from here and ran a checksum on it. You are safe to run a miner.

ghost commented 2 years ago

Some antiviruses detect mining softwares as Trojan:Win32/Mamson.A!ac. This can be misleading and antivirus vendors should correct this. In recent version of windows defender does not have this problem. so I think nbminer is safe If you are worried you can send it for analysis to security research companies.

FireAlarm commented 2 years ago

As everyone else said it's a false positive most miners are reported as a Trojan or something

twistedbeholder commented 2 years ago

Does anybody know how to add exceptions for the files created when adding the driver? I have to run this scanner but it detects the file added to the Windows file store and it seems like a temp file that may change in name.