google / closure-compiler-npm

Package for managing and documenting closure-compiler for use via npm
Apache License 2.0
333 stars 66 forks source link

`google-closure-compiler-osx/compiler` in v20240317.0.0 detected as malware by VirusTotal #310

Closed cpcallen closed 3 months ago

cpcallen commented 3 months ago

Per corp policy I uploaded node_modules/google-closure-compiler-osx/compiler to VirusTotal before upvoting in Santa. It triggered the Kingsoft malware detector for something called Script.Ks.Malware.6977.

Screenshot 2024-07-10 at 12 41 39

I re-ran the analysis just to make sure it wasn't a fluke (the original analysis had taken much longer than usual and I wondered if this failure was actually due to a timeout of some kind) but the result the second time was identical.

I suspect this is a false positive but I'm not able to establish exactly what is triggering the detector.

ChadKillingsworth commented 3 months ago

This has occurred before https://github.com/google/closure-compiler-npm/issues/260

It's very frustrating, but we've had little success in getting these addressed.

cpcallen commented 3 months ago

Unfortunate. No problem if you want to just close this report. The issue is not causing a problem, just something I thought you might want to be aware of.

ChadKillingsworth commented 3 months ago

I did go check to see if I could find somewhere to report a false positive to Kingsoft. I didn't find anything.