kaiheilos / Utilities

201 stars 23 forks source link

Could you explain this please? #24

Open C0d364r opened 8 months ago

C0d364r commented 8 months ago

I scanned your executable file on VirusTotal, here is what I got: https://www.virustotal.com/gui/file/e04183411d0c414beb5ba90f01d388c9b681c983e0c8658ae5b5747dce9cea0a/relations

WeirdScienceX commented 6 months ago

What are you confused with? I've just analysed it, and it has a score of 0/73 detections.

The relations don't show anything concerning, vendors often flag IP's as suspicious, but a lot aren't static, so even if they were in the 'risk' category previously, it doesn't mean they are now.

I use a lot of 3rd party modding tools, and Bitdefender never shuts up about 'suspicious' connections, even though I know they are false positives.

C0d364r commented 6 months ago

No confusion.

It was said that this tool works offline and doesn't contact any IP address, yet when the program is executed it connects to several IP addresses as shown in the linked page.

C0d364r commented 6 months ago

One of the contacted IP addresses: https://www.abuseipdb.com/check/13.107.4.50

WeirdScienceX commented 5 months ago

Well, I'm not sure what to tell you.

Using pestudio, fiddler and other tools shows no indications of network traffic.

I set Netlimiter to deny all outgoing connections, the same, no outgoing request was made.

I checked Pihole which all DNS requests are routed through, once again it contained nothing