aardappel / procrastitracker

a Windows time tracking application
http://strlen.com/procrastitracker/
483 stars 53 forks source link

Windows Defender found Trojan:Win32/Wacatac.D!ml in the installer on the website #64

Closed tombuben closed 4 years ago

tombuben commented 4 years ago

Downloaded the installer from the official website and Windows Defender detected it basically immediately. This is a pretty severe issue.

I'd recommend hosting the releases on github, since it can be caused by a hacked webhost...

aardappel commented 4 years ago

Closing this in favor of existing issue: https://github.com/aardappel/procrastitracker/issues/63

aardappel commented 4 years ago

Just looked at adding creating PT installers to the CI, but not working yet.

tombuben commented 4 years ago

Setting up SSL on the website where the installer is hosted would make the site itself a bit more trustworthy from the users perspective as well.

aardappel commented 4 years ago

@tombuben good point.. looked into https at some point, but my host explicitly doesn't seem to support letsencrypt etc.. I know, I should switch hosts.

aardappel commented 4 years ago

You can now also download from github CI: http://strlen.com/procrastitracker/ that may reduce virus warnings for some?