BleachHack icon indicating copy to clipboard operation
BleachHack copied to clipboard

Bleach hack Detected by Windows Defender (just downloaded newest release from website)

Open linuzzx opened this issue 2 years ago • 8 comments

https://www.microsoft.com/en-us/wdsi/threats/malware-encyclopedia-description?name=Trojan%3aAndroidOS%2fMultiverze&threatid=2147785333

linuzzx avatar Mar 22 '22 16:03 linuzzx

https://www.virustotal.com/gui/file/ad4cacf098f462f1cc4426641c37d6fcfcc123b79917f73dfb20cdb84372d2fd/detection

linuzzx avatar Mar 22 '22 16:03 linuzzx

Out of curiosity, what happens if you run the older version through virustotal? eg v1.2.5

Sort of related, but I remember this thread from Alexander of Wurst:

https://twitter.com/Wurst_Imperium/status/1229370457838755840

Renaming the method names fixed it for him

https://github.com/Wurst-Imperium/Wurst7/commit/3a5076b43960b74185265723f835e0c29db1243e

sudofox avatar Mar 22 '22 18:03 sudofox

disintegrate

BleachDev avatar Mar 22 '22 18:03 BleachDev

I replaced the release jars to maybe fix it but its probably the Discord IPC library thats causing it because it uses some weird pipe files to access discord

1.2.4 and earlier doesn't trigger it because they use a different rpc library

BleachDev avatar Mar 22 '22 18:03 BleachDev

Id also like to add that it spams the absolute living hell out of the latest.log Got it up to a damn gigabyte

YurniUwU avatar Mar 28 '22 03:03 YurniUwU

still flagged for me

linuzzx avatar Mar 29 '22 15:03 linuzzx

Until including BleachHack-1.2.5 it works fine

linuzzx avatar Mar 29 '22 15:03 linuzzx

meteor's ipc isn't flagged you could try using it instead

lele92007 avatar Jun 16 '22 09:06 lele92007

Don't think this happens anymore

BleachDev avatar Nov 11 '22 10:11 BleachDev