cdgriffith / FastFlix

FastFlix is a free GUI for H.264, HEVC and AV1 hardware and software encoding!
https://fastflix.org/
MIT License
1.15k stars 58 forks source link

Another Windows Defender false positive? #341

Closed ahayes closed 1 year ago

ahayes commented 2 years ago

Similar to Issue #232 , I got an alert about Win32/Uwamson.A!ml related to FastFlix this evening: image

cdgriffith commented 2 years ago

Thanks for the heads up. I already paid their certificate extortion to try and avoid it the extra popups, but seems that anything packaged with PyInstaller becomes "poisoned" as soon as another malicious program is also packed with it.

Anyone that can report it as a false positive when these come up would be appreciated. Can of course check with VirusTotal as well to get a better broad scan of anything suspicious. For example current release:

Installer: https://www.virustotal.com/gui/file/8117c606ce6ab5eef6bea22cc7a510a5295b5c9edc86ad26e27327fb4d679251

Standalone: https://www.virustotal.com/gui/file/edefde2717c0b69d3d41cffa48482caecec081b662db95c99bdaba9e99206fe3

They each have just 2/3 out of 67 detections, but totally different ones, which shows a bit that it's how its packed into the exe with a multipurpose tool that other people use for nefarious reason that is causing the confusion.

ahayes commented 2 years ago

Thank you. That must be so frustrating. I told it to ignore and allow but I will keep an eye out for a way to flag as a false positive if I see it again. Unless you have a link people can use to report?

cdgriffith commented 1 year ago

This has hopefully not been flagged in recent times due to now buying the windows cert and increased usage showing it's a legit program. If it comes up again please let me know!