remyroy / CDDA-Game-Launcher

A Cataclysm: Dark Days Ahead launcher with additional features
MIT License
423 stars 104 forks source link

Sophos AV Detects version 1.3.11.1 exe as malware #197

Open cadyb opened 6 years ago

cadyb commented 6 years ago

Sophos Anti-Virus detects the version 1.3.11.1 exe as malware. I uploaded it to virus total to see if any other Anti-Malware software flagged it as such but it was just sophos and the reason was "heuristic" (See https://www.virustotal.com/#/file/10d96ae2dd2269d0a4e5f0393328733747e1fe750b5646007f0928fd0df27e2e/detection) you might want to try and get in touch with Sophos to see why it is flagged as a false positive.

remyroy commented 6 years ago

Poor antivirus products are known to detect the launcher as a threat and block its execution. A simple workaround is to add the launcher binary in your antivirus whitelist or select the action to trust this binary when detected.

Getting in touch with these poor antivirus providers is somewhat pointless but if you want to do it on your own, please let me know the result.

cadyb commented 6 years ago

I wouldn't classify Sophos as a "Poor" antivirus product. Also since it was a heuristic detection giving them a sample so they can confirm its a false positive and improve their data set makes their heuristic detection work better. I don't see why getting in touch with them wouldn't be beneficial for both parties since reducing false positives is one of the goals of their software.

This is the Page in their Documentation for dealing with false positives containing information on how to submit false positives: https://community.sophos.com/kb/en-us/35504