Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Trojan #546

Open
KostDark opened this issue May 31, 2022 · 3 comments
Open

Trojan #546

KostDark opened this issue May 31, 2022 · 3 comments

Comments

@KostDark
Copy link

Hi,

The Windows defender catched Trojan:Win32/Trickbot!ml and Trojan:Win32/Sabsik.FL.A!ml in the 0.9.5 and 0.9.6 db1000n_windows_amd64.zip

@roman-kruglov
Copy link
Contributor

Confirm, the same in my case. You can tell Win Defender to ignore it and still run the app as a temporary workaround.

@arriven
Copy link
Owner

arriven commented Jun 1, 2022

Wait, but 0.9.4 and prior are not flagged? That's really weird as there aren't many changes between those

@arriven
Copy link
Owner

arriven commented Jun 1, 2022

it could be that someone reported the executable and it got flagged. I've got reports that eset doesn't even allow you to download the archive and flags it as WinGo/DdosAgent.B (which seems to be defined purely for this app). It's weird that it is flagged as some random trojan by windows defender but it could be that they share some similar behavior (maybe we were hitting targets whose IPs were used by these trojans).

I also know that devs of UACyberShield had the same problem but most antiviruses stopped flagging them after couple of days (except ru ones ofc) so let's wait at least some time. In the meanwhile you can use docker or ignore the file in your antivirus

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

No branches or pull requests

3 participants