seerge / g-helper

Lightweight Armoury Crate alternative for Asus laptops and ROG Ally. Control tool for ROG Zephyrus G14, G15, G16, M16, Flow X13, Flow X16, TUF, Strix, Scar and other models
https://seerge.github.io/g-helper/
GNU General Public License v3.0
6.97k stars 254 forks source link

The latest version gives virus warning in virustotal #3056

Closed srb1mal closed 1 week ago

srb1mal commented 1 week ago

Rules

What's wrong?

I scanned the latest version of ghelper (0.187) and in virus total it gave some warnings. So would you mind to elaborate. And while installing windows also gave warning where I installed the previous version it doesn't give any warning.

How to reproduce the bug?

N/A

Logs

N/A

Device and Model

Asus tuf A17 (FA706IH)

Additional information.

No response

Armoury Crate

Uninstalled

Asus Services

No response

Version

0.187

OS

Windows 11 23H2

srb1mal commented 1 week ago

Windows blocked this file download. :( showing it has virus

seerge commented 1 week ago

@srb1mal hello, please make yourself familiar with FAQ

Windows Defender or any other antivirus marks app as malware / virus False positives from Windows Defender (or any other similar system that uses machine learning for detection) is possible as the application is not digitally signed with a certificate. You can always download a version below or compile the app by yourself.

All application sources are open and can be monitored from A to Z. Application is assembled directly on GitHub from this sources using GitHub actions.

As for your remark about Virustotal specifically - it's also all green (for the latest buikd) https://www.virustotal.com/gui/url/64bc4a9446705d29571219681966ddf84107600ce4a6770461bc1396c2387604?nocache=1

srb1mal commented 1 week ago

Hey mate @seerge please check this, I'm not worried about windows defender at all. In viruatotal if we upload the (.exe) then it gives a warning. Please check below.

https://www.virustotal.com/gui/file/869174222fef4b40cf89fb9b3cdd2916499368db42a8dce2348a57b7b7b8a613?nocache=1

seerge commented 1 week ago

@srb1mal as I have mentioned above, false positives can happen from any other similar system that uses machine learning for detection. In your case it's 1 (one) vendor from 75. If you don't trust exe - you can compile it from sources, and you will get same exe.