Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Windows Prebuilds flagged as malwares by scanners #41

Open
bigorn0 opened this issue Jan 9, 2025 · 0 comments
Open

Windows Prebuilds flagged as malwares by scanners #41

bigorn0 opened this issue Jan 9, 2025 · 0 comments

Comments

@bigorn0
Copy link

bigorn0 commented Jan 9, 2025

Hello,

First, thank you for providing the building blocks to manage authenticated Git operations in the context of Electron applications.

I don't know if you are aware or if you observed a similar situation, but since the latest 0.9.10 release, the windows prebuild executables started to be flagged as malwares. This is especially true for the ssh-wrapper.exe.
For example: https://www.virustotal.com/gui/file/c16a3d7b7b20eae176d06d8f69e1a3765bfed90696a9b19654bc698f3bbe8f5f or https://www.virustotal.com/gui/file/0d50ef5d942a49cec27aad978a27de4c4c8d6895e66799075dcc76107eafee97
While using this library, we started to also get sporadic reports from Windows Defender and eventually being blocked either right after download or on install.

One key observation, wouldn't it make sense to just remove ssh-wrapper.exe from the windows prebuilds tarball as this seems to be the most problematic and especially because it is actually unused and a noop?

Note: we have been using your 0.9.8 for a very long time without any issue but there is a clear shift with the 0.9.10 binaries.

Even if false positives, such alerts can probably be an issue even for the Github Desktop App on the long run.

I'm a bit unsure on how to help or what to do next to workaround/improve the situation.

Thanks!

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

No branches or pull requests

1 participant