doterax / guetzli-cuda-opencl

Perceptual JPEG encoder, optimized with CUDA&OpenCL, full JPEG format support.
Apache License 2.0
34 stars 4 forks source link

Some antiviruses found guetzli malicious #12

Open doterax opened 9 months ago

doterax commented 9 months ago

Example 1:

https://www.virustotal.com/gui/file/4c31d4f8c620d9e9309856ed37a35488feba8ea3a23b0a2c72dbb07b7e511f06/detection

Example 2:

https://www.virustotal.com/gui/file/8f3c742eaca8e6718cd573c89e40ece544df655de9eb2aec94820c1ec7d76b87/detection

I think this is because exe included compilled CUDA binary and OpenCL sources. Also they triggered on delay loaded DLLs...

I have no idea now how to fix it. But I will think about ;)

doterax commented 9 months ago

https://github.com/pyinstaller/pyinstaller/issues/2501#issuecomment-286230354

https://github.com/brentvollebregt/auto-py-to-exe/issues/122

https://github.com/Fr33dan/GPSaveConverter/issues/66

https://github.com/vercel/pkg/issues/1992

doterax commented 9 months ago

https://stackoverflow.com/questions/252226/signing-a-windows-exe-file

doterax commented 9 months ago

image this is expensive

doterax commented 9 months ago

Cheapest certs https://cheapsslsecurity.com/sslproducts/codesigningcertificate.html

doterax commented 9 months ago

https://cheapsslsecurity.com/blog/code-signing-101-how-to-sign-an-exe-or-application/

doterax commented 9 months ago

https://certum.store/data-safety/code-signing-certificates.html

image cheaper...

doterax commented 9 months ago

https://www.microsoft.com/en-us/wdsi/filesubmission