sebdelsol / sfvip-all

Sfvip All wraps Sfvip Player with a local proxy that inserts an All category so you can easily search your entire catalog. It updates Mpv and Sfvip Player so you can enjoy their latest features. It supports an external EPG. It creates a cache for Mac account all categories to access those faster.
MIT License
61 stars 5 forks source link

new vers 1.4.12.25 is a VIRUS...?? #10

Closed p060477 closed 10 months ago

p060477 commented 10 months ago

here it is the virustotal report...: https://www.virustotal.com/gui/file/6cfba998d314e3d5226692d3b479c33135cbae35df10c6257a6329d755c92795

23 security vendors and no sandboxes flagged this file as malicious

sebdelsol commented 10 months ago

Duplicate #8

p060477 commented 10 months ago

23 security vendors and no sandboxes flagged this file as malicious why the olders vers. has really not this very bad score...??...:(

sebdelsol commented 10 months ago

Please check the issues before posting

p060477 commented 10 months ago

Please check VIRUSTOTAL before releasing new vers. of yr tool....: 23 security vendors and no sandboxes flagged this file as malicious why the olders vers. has really not this very bad score...??...:(

sebdelsol commented 10 months ago

Please read the issues before posting. I use Pyinstaller for this version instead of Nuitka: it sometimes gives more false positives based on the exact same code base (check #8).

Your link shows a scan on a file with the wrong md5: this is not the 1.4.12.25 installer.[^1] The actual md5 of the 1.4.12.25 installer is cb9a3c0a3e6f31ad3d22acd5bae3a4f8: you can check here[^2]. So it seems you either checked the wrong installer or your installer has been tampered with[^3].

[^1]: You've scanned a file with a 00b640a6381988eb7aa0d1bc8313a031 md5. [^2]: The auto update checks the downloaded installer md5 against the one published to be sure the installer hasn't been tampered with. [^3]: That's exactly what a virus already present on your system would have done.

p060477 commented 10 months ago

i have -portabilized- yr installer cause i really do want to use as much portable sw as i can,hope you understand, so maybe this is the reason of the different md5...and i really do suggest you to offer also a portable way of yr tool.... and i re-suggest you to compile yr tools ,as in the past, in order not to have that so really bad virsutotal score... anyway the worst thing is that ALSO my a/v malwarebytes really do not ALLOW me to use yr tool in the new 1.4.12.25....so this is why i'm trying to make you thinking deeply and carefully about this.... up to now i'm friendly use yr 1.4.12.20...and in my -portable- way.... it is really all up to you if you want yr potentially users be confident in using yr tool best regards

sebdelsol commented 10 months ago

If you need a portable version built with Nuitka then I suggest to build you own version. This is quite straightforward if you follow this guide. If you build it with Nuitka[^1] the portable folder is ~YOUR_WORKSPACE\build\temp\x64\nuitka\sfvip_all.dist~ YOUR_WORKSPACE\build\temp\x64\sfvip_all.dist. [^1]: It might gives you less AV false positives but all Python exe builders suffer from the same issue as already explained in #8.

EDIT: wrong folder.

sebdelsol commented 10 months ago

I've deleted your two last comments because you keep being quite irrelevant and unpleasant. I have already explained why what's you're suggesting doesn't resolve the residual AV false positives issue.

If you'd rather have a Nuitka build version because you think it will be better for you, you have everything in this repo to build one. Feel free to raise an issue if you need help or have questions.

p060477 commented 10 months ago

thxs and apologize me but i really only want to use yr tool without stopping my malwarebytes or put yr tool in its white list i repeat that i'm still using yr not so old vers 1.4.12.20 without any issue... so i simply pray you to release a new vers according to it but to be clear: i really do not want to be unpleasant or upsettin or ugly or so on i reperat my is only a simply suggestion anyway the only thing i'd like to say to you is, whatever you will do or not : THANKS FOR YR EFFORTS AND PRECIOUS TIME YOU GIFTED TO US

sebdelsol commented 10 months ago

v1.4.12.26 is build with the brand new Nuitka 2.0 which has very few false positives at the moment.

EDIT: You're right pyinstaller 6.3.0 builds suffer from AV false positives as of now. That was not the case 1 week ago.

p060477 commented 10 months ago

hi, first let me thank you again for all you are done for us i confirm that the latest 1.4.12.26 as really no issue with my malwarebytes a/v i am able so to use it confidently so now i'm just using yr very latest 1.4.12.26 i re-underline and re-write: THANKS FOR YR EFFORTS AND PRECIOUS TIME YOU GIFTED TO US cheers

sebdelsol commented 10 months ago

So you know: I've actually built a solution with zero false positives. It just means you have to resolve all Python dependencies on your own. It's doable but a nightmare to maintain: that's why I use either Nuitka or Pyinstaller... The main drawback is that AVs tend to flag those as malware since both are heavily used by malware creators...

p060477 commented 10 months ago

thxs so much indeed again now i am really able to use it confidently i'm just using yr very latest 1.4.12.26 and all seems very fine i re-underline and re-write: THANKS FOR YR EFFORTS AND PRECIOUS TIME YOU GIFTED TO US cheers

sebdelsol commented 10 months ago
Nuitka ≥ 2.0 Pyinstaller ≥ 6.3
Distribution size Bigger Smaller
Run time memory Bigger Smaller
Run time speed Faster Slower
Build tool chain Harder Easier
AV false positives Lower Higher
p060477 commented 10 months ago

in my personal case the only things is to be able to use it without stopping malwarebytes or adding the .exe to its whitelist but in any case: i re-underline and re-write: THANKS FOR YR EFFORTS AND PRECIOUS TIME YOU GIFTED TO US cheers