the-via / releases

GNU General Public License v3.0
2.07k stars 223 forks source link

Microsoft Security system deems 1.3.1 win.exe harmful to your computer #100

Open Ttly-Yrreb opened 3 years ago

Ttly-Yrreb commented 3 years ago

it says it in the title.

penz6 commented 3 years ago

It is detected with 100% confidence as the Predator Trojan. I would be cautious until the developers address this.

nomnaut commented 3 years ago

Yeah, I'm not touching this until this gets addressed.

Highly suspect that I'm being forced to use "VIA" now when qmk worked perfectly well until now.

olivia commented 3 years ago

I uploaded both the app.asar and via-1.3.1-win.exe file to virustotal.com and did not get any detections.

https://www.virustotal.com/gui/file/4258ba2302fa848baade9f9090de46e367b50a713e21b2707d7721d774a47b53/community

https://www.virustotal.com/gui/file/c963e8c99dee8452e2fc431877f71c675960a0817b6dae089bb716a363b52af2/detection

I did however see the comment linking the automated report: https://www.joesandbox.com/analysis/352258/0/pdf, which seems to be detecting something that the other antivirus scanners are missing, it is likely that this is a false-positive.

penz6 commented 3 years ago

The joes sandbox analysis is based off of a machine learning algorithms, so it may be a false positive, VIA's power to flash new firmware may be the reason that this is caused.

domoaligato commented 3 years ago

Yeah, I'm not touching this until this gets addressed.

Highly suspect that I'm being forced to use "VIA" now when qmk worked perfectly well until now.

You can keep using QMK. There is nothing stopping you. This is a gui frontend for QMK.