gnif / LookingGlass

An extremely low latency KVMFR (KVM FrameRelay) implementation for guests with VGA PCI Passthrough.
GNU General Public License v2.0
4.64k stars 257 forks source link

'looking-glass-host-B7-rc1' detected as virus by Windows Defender and Virus Total #1118

Closed BentHaase closed 2 weeks ago

BentHaase commented 4 months ago

The latest RC version of the client looking-glass-host-B7-rc1 (.zip) downloaded from the official downloads page (https://looking-glass.io/downloads) is being flagged by Windows defender upon launching looking-glass-host-setup as a virus as well as being detected by three independent sources on Virustotal:

image image

Even though this is likely a false positive, this is highly concerning especially keeping all the recent security events in mind.

The same does not happen for the much older B6 version. There have been issues in the past regarding this topic but they are closed and been inactive for months / years which is why I am opening another similar issue.

How can we properly reassure that 'this is fine'?

EDIT: Host, Windows 11 Pro 23H2 (OS Build 22631.3296)

gnif commented 4 months ago

This is very strange, we are signing the binary to ensure that this doesn't false flag. As for how safe it is, 100%, we do not even build this binary on Windows.

gnif commented 2 weeks ago

As there is nothing we can do to resolve this, I am closing this as invalid. Please contact the AV vendors and complain, if enough people do they might actually fix their buggy detection definitions.