Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Version 1.6.2 gets flagged as Trojan #63

Open
Thunderhawk2001 opened this issue Dec 19, 2023 · 5 comments
Open

Version 1.6.2 gets flagged as Trojan #63

Thunderhawk2001 opened this issue Dec 19, 2023 · 5 comments

Comments

@Thunderhawk2001
Copy link

https://www.virustotal.com/gui/file/0c1b82c60d06f0dc41afbda61bf2282f6d2fe0e3e3d99a17c18d0d8998abeb09

Newest version get's flagged as a trojan by 50% of VT scan engines. I think that's a false positive?

@melo936
Copy link
Member

melo936 commented Dec 20, 2023

Yes, it is a false positive. Revision Tool is built by GitHub Actions, thus as far as I'm aware it isn't possible to modify the process. Moreover, the tool isn't digitally signed which is expected to happen.

@notguoxin
Copy link
Contributor

I can confirm, it was flagged by Windows Defender.
image

@Pinghigh
Copy link

Pinghigh commented Dec 31, 2023

It flagged as Trojan as well in Kaspersky Free
image

Updated: Not only 1.6.2 but also 1.6.1 were flagged as Trojan.

@lzsjrp
Copy link
Contributor

lzsjrp commented Jan 9, 2024

image

Most detections are due to script to disable Windows Defender

melo936 added a commit that referenced this issue Apr 16, 2024
@Pinghigh
Copy link

Pinghigh commented May 3, 2024

image

Most detections are due to script to disable Windows Defender

Kaspersky's detection as well

melo936 added a commit that referenced this issue May 19, 2024
- simplified the deactivation and activation processes (no more services configuration)
- fixed defender not changing state when security intelligence updates were installed
- migrated to a custom package for removing Defender (meetrevision/packages)
- cli support for enabling/disabling defender
- improved UI/UX for deactivating virus and threat protections
- improved status checking
- backwards compatibility for older ReviOS playbooks (enablewd and disablewd batch files merely call the cli)
- should fix #52 and possibly #63
xrgzs pushed a commit to xrgzs/xrsys-hub that referenced this issue Jun 8, 2024
xrgzs pushed a commit to xrgzs/xrsys-hub that referenced this issue Jun 8, 2024
- simplified the deactivation and activation processes (no more services configuration)
- fixed defender not changing state when security intelligence updates were installed
- migrated to a custom package for removing Defender (meetrevision/packages)
- cli support for enabling/disabling defender
- improved UI/UX for deactivating virus and threat protections
- improved status checking
- backwards compatibility for older ReviOS playbooks (enablewd and disablewd batch files merely call the cli)
- should fix meetrevision#52 and possibly meetrevision#63
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

No branches or pull requests

6 participants
@Thunderhawk2001 @melo936 @lzsjrp @Pinghigh @notguoxin and others