チケット #40451

Virus Reported by Avast and Others in compiled code

登録: 2020-05-30 11:49 最終更新: 2020-05-31 04:51

報告者:
担当者:
(未割り当て)
チケットの種類:
状況:
完了
コンポーネント:
(未割り当て)
マイルストーン:
(未割り当て)
優先度:
1 - 最低
重要度:
5 - 中
解決法:
拒否
ファイル:
なし
投票
点数: -1
0.0% (0/1)
100.0% (1/1)

詳細

When I downloaded MinGW to my new HP laptop running Windows 10, I complied a 2-line Hello World program in C with gcc. Avast reported a Win32:TrojanX-gen virus. Going to virustotal.com, 31 of 72 antivirus products reported a virus or similar. Clearly, the problem could not be in my 2-line program, so it must be in a library.

This problem must be fixed ASAP!

Thank you.

チケットの履歴 (3 件中 3 件表示)

2020-05-30 11:49 更新者: henrymwalker
  • 新しいチケット "Virus Reported by Avast and Others in compiled code" が作成されました
2020-05-30 19:40 更新者: keith
  • 優先度7 から 1 - 最低 に更新されました
  • 解決法なし から 拒否 に更新されました
  • 状況オープン から 完了 に更新されました
コメント

This problem must be fixed ASAP!

Nope. You must prove, with near 100% certainty, that it is not a false positive. Right now, you are yelling "trojan", but offer me only 43% confidence in your assessment — and you aren't even prepared to assert that every one of the potential false positives relates to identically the same trojan; couple that with my 0% confidence in any antivirus product — especially any which is commercially motivated to exploit the naïve — and I must do no more treat this report with the contempt which any such knee-jerk reaction deserves. It's entirely your choice how you wish to proceed, but we we are under no obligation to do anything here.

2020-05-31 04:51 更新者: henry_walker
コメント

You claim this is likely a false positive, and of course that may be true---but it also may not be.

In the past, my experience has been that reports of a virus being present are true---but mostly I work on a Linux and Mac platforms---I'm new to Windows 10. The first virus code I encountered was in email which I received on a Linux platform--perhaps 10-15 years ago. Rather than opening an attachment in the usual way, I saved the attachment and looked at it with emacs---not executing the file. After hand tracing the code, the nature of the virus was clear. In the current Windows 10 environment, hand tracing binary code does not seem practical.

With this background, how would you propose determining if this is a false positive? Guidance would be appreciated, as I certainly will not run code that has a moderate chance of being unsafe.

I look forward to constructive suggestions.

(編集済, 2020-05-31 07:57 更新者: henry_walker)

添付ファイルリスト

添付ファイルはありません

編集

このチケットにコメントを追加するには、ログインが必要です » ログインする