Page 1 of 1

Re: 1.10.7 and Virustotal

Posted: Wed Sep 06, 2017 3:43 pm
by Woodstock
It seems they're figuring it out - I just ran the same test on VirusTotal, and both Dr. Web and Rising are currently green.

I manually scanned the download with AVG after you mentioned it (it was auto-scanned on download). I gave up on McAfee and Trend years ago, so I can't scan with them.

1.10.7 and Virustotal

Posted: Wed Sep 06, 2017 6:48 pm
by FrostBitten
I regularly scan every program I install from the net. Ever since the release of 1.10.7, I have checked virustotal.com's analysis of the 1.10.7 package and it keeps giving me back positives. Right now, it's up to four engines that see this as a backdoor trojan. After a few days I would think the number would go down due to false positives, not up from two to four.

Currently the following anti-virus engines see this as bad:
DrWeb: BackDoor.PsClient.origin
McAfee: Artemis!3981B03A5640
Rising: Trojan.PSW.Win32.OnlineGame.bny (cloud:wSususiVHpE)
TrendMicro-HouseCall: Suspicious_GEN.F47V0905

What's going on with this package?

Re: 1.10.7 and Virustotal

Posted: Fri Sep 08, 2017 10:32 am
by mike admin
Do you use some private VirusTotal? This one says all clean: https://www.virustotal.com/#/url/93f793 ... /detection

Re: 1.10.7 and Virustotal

Posted: Fri Sep 08, 2017 2:02 pm
by Starhawk
I'm not an expert at this by any means, but here's what Virustotal is showing me after directly uploading the package downloaded from MakeMKV.com:

Image

Re: 1.10.7 and Virustotal

Posted: Fri Sep 08, 2017 3:04 pm
by Woodstock
I'm getting the same result that Mike is, when submitting the URL itself to let virustotal.com do the download.

"0/62" for SHA-256 hash of d8daae74553b4e6abd9209f1287c01b03dd1933894e74eae16e4e3cbb4ff19f9, which looks like it matches what you have in your screenshot.

Re: 1.10.7 and Virustotal

Posted: Fri Sep 08, 2017 4:43 pm
by TheTerrorBeyond
VirusTotal found viruses in 1.10.6 as well, but there were no problems with the application. Windows Defender doesn't find any issues with either.