tdakhran / razer-ctl

A tray icon for controlling Razer Blade 16
MIT License
19 stars 4 forks source link

Norton 360 discovered Trojan.Gen.MBT in razer-tray.exe #6

Closed kpmarcin closed 6 months ago

kpmarcin commented 7 months ago

Below I am pasting report from Norton.

Filename: razer-tray.exe Threat name: Trojan.Gen.MBT Full Path: C:\Users\Marcin\Downloads\razer-tray.exe

On computers as of 23.04.2024 at 11:02:12

Last Used 23.04.2024 at 11:04:13

Startup Item No Launched No Threat type: Virus. Programs that infect other programs, files, or areas of a computer by inserting themselves or attaching themselves to that medium.

razer-tray.exe Threat name: Trojan.Gen.MBT Locate

Very Few Users Fewer than 5 users in the Norton Community have used this file.

Very New This file was released less than 1 week ago.

High This file risk is high.

https://objects.githubusercontent.com/github-production-release-asset-2e65be/763630838/59e08e68-1131-4379-aabf-e2edfe933ecb?X-Amz-Algorithm=AWS4-HMAC-SHA256&X-Amz-Credential=AKIAVCODYLSA53PQK4ZA/20240421/us-east-1/s3/aws4_request&X-Amz-Date=20240421T121246Z&X-Amz-Expires=300&X-Amz-Signature=ae4e7e261be6a88edd9c866f1454d5e77a83f63ff13d41dc919729d9b61ca826&X-Amz-SignedHeaders=host&actor_id=73128255&key_id=0&repo_id=763630838&response-content-disposition=attachment; filename=razer-tray.exe&response-content-type=application/octet-stream Downloaded File from githubusercontent.com Source: External Media

razer-tray.exe

File Actions

File: C:\Users\Marcin\Downloads\razer-tray.exe Removed

File: c:\Users\Marcin\AppData\Local\Temp\razer-tray.logThreat Removed

File Thumbprint - SHA: 13d9221eb6d3feb2f6c272b5cc409956aba60bfc9ce9c1d478a71eaa090d6938 File Thumbprint - MD5: e54987141d83881a780d789364b85c70

tdakhran commented 7 months ago

This is due to rust runtime sometimes (mis) detected as a virus. A similar happened to me with Windows Defender, see FAQ https://github.com/tdakhran/razer-ctl?tab=readme-ov-file#faq . Or issue in Rust https://github.com/rust-lang/rust/issues/88297.

Please update the antivirus database and try using a stable Rust version.