farbrausch / fr_public

Farbrausch demo tools 2001-2011
3.36k stars 344 forks source link

Virus found #91

Open lucmp opened 8 years ago

lucmp commented 8 years ago

Scanned with three anti virus applications. Two of them have identified threats on three files: fr_public-master/werkkzeug3/data/debris/release/fr-041_debris.exe fr_public-master/werkkzeug3/data/debris/release/fr-041_debris.zip fr_public-master/v2/bin/lib/example/tinyplayer.exe

The third anti virus confirms tinyplayer.exe

Torxed commented 8 years ago

I'm not surprised at all considering a lot of self-extracting binaries share similar fingerprints as viruses because they often use the same logic to extract themselves. It's not all to uncommon for viruses to share similar functionality as small demos in many areas.

This is why I think "anti"-viruses are crap, they don't actually look at what the code does, it just matches for similar functionality - not the end game of the binary.