xNVSE / NVSE

New Vegas Script Extender (NVSE)
https://git.io/JfSAo
713 stars 56 forks source link

nvse_steam_loader.dll file is detected as TROJAN VIRUS. #122

Closed noskill24 closed 2 years ago

noskill24 commented 2 years ago

v6.2.7 - nvse_steam_loader.dll

Please check the link below:

https://www.virustotal.com/gui/file/b45d3db874a26eeafb4d00cd32514ad522414a3ac2bc15e92d8bfd2a6cbf3929

AVeryUncreativeUsername commented 2 years ago

I'm fairly positive this detection is false.

ghost commented 2 years ago

McAfee is a virus.

Masamune3210 commented 2 years ago

It's a false detection, and for possibly the dumbest reason ever. The hint is "Dropper" being in the detection

noskill24 commented 2 years ago

Previous versions have no problem.

Masamune3210 commented 2 years ago

Yeah and machine learning is dumb and will take things even built on your own machine and sometimes call it malicious. I don't know what you need to hear, go look at other open source projects. This happens constantly

Masamune3210 commented 2 years ago

McAfee is a virus is not an uncommon view even among people who like AV solutions, you realize this right? McAfee and Norton are both constantly joked about being as bad as just having nothing at all if not actively worse

Goatexe164 commented 2 years ago

Had a similar thing happen to me with version 6.2.7, details are below.

Detected: Program:Win32/Uwamson.A!ml Status: Failed

Date: 2022/08/10 08:30 Details: This program has potentially unwanted behavior.

Affected items:

file: C:\Users\Downloads\nvse_6_2_7.7z

webfile: C:\Users\Downloads\nvse_6_2_7.7z|https: / / objects.githubusercontent.com/github-production-release-asset-2e65be/267751826/842f7480-e622-4eab-b090-b0f02a54d0bf?X-Amz-Algorithm=AWS4-HMAC-SHA256&X-Amz-Credential=AKIAIWNJYAX4CSVEH53A%2F20220427%2Fus-east-1%2Fs3%2Faws4_request&X-Amz-Date=20220427T190705Z&X-Amz-Expires=300&X-Amz-Signature=b8ad809f8470badf610eaa3013ed6ac35635bcc7f1c2dabeae1e8a53ba33da9a&X-Amz-SignedHeaders=host&actor_id=0&key_id=0&repo_id=267751826&response-content-disposition=attachment%3B%20filename%3Dnvse_6_2_7.7z&response-content-type=application%2Foctet-stream|pid:6360,ProcessStart:132955600313015670

Pretty sure whoever did it was a crypto miner, because whenever I would boot up my PC the CPU, GPU, VRAM and RAM would utilize 100% of their capacity and I was unable to do most things.

WallSoGB commented 2 years ago

Crap, they are onto us. Close the repo boys.

c6-dev commented 2 years ago

Are you accusing an open source project of including crypto miners when literally anyone can check the source code and compile it yourself? Did you read previous comments?

Masamune3210 commented 2 years ago

!ml at the end of the detection string means that the detection was done through machine learning. It causes a lot of false positives. As stated multiple times now, if you got nvse from this GitHub , in no way is it malicious.