leokhoa / laragon

Laragon is a portable, isolated, fast & powerful universal development environment for PHP, Node.js, Python, Java, Go, Ruby. It is fast, lightweight, easy-to-use and easy-to-extend.
https://laragon.org
4.35k stars 366 forks source link

Virus Total Detects 3 Trojans in Portable Version #486

Open taskmann opened 1 year ago

taskmann commented 1 year ago

Is this a false positive?

https://www.virustotal.com/gui/file/042d95237bd729a254ef95a62920b4db28a4d3161c0dcfef46029e15286b38f3

Trojan.PSW.Mimikatz.bjm Trojan.Generic@AI.80 (RDML:NHK6LALpQ Trojan.Malware.300983.susgen

leokhoa commented 1 year ago

@taskmann: It should be a false alarm.

mkrohn commented 1 year ago

It may trigger that since it contains a path to the hosts file in the PE executable strings. You should encode or split these system paths, as well as system registry paths.

taskmann commented 1 year ago

The file was downloaded from here:

https://laragon.org/download/

deyan-ardi commented 1 year ago

Maybe its false alarm, but if you have doubts, you can use docker and download the server configuration manually