Remove-MS-Edge icon indicating copy to clipboard operation
Remove-MS-Edge copied to clipboard

False Positive - VirusTotal

Open ShadowWhisperer opened this issue 1 year ago • 19 comments

I am well aware of VirusTotal claiming this is malicious.

Submitted for manual review to Microsoft 300611241-3533be85-0039-47ff-af07-aa96fefc3e2f

Any posts mentioning this will be deleted. I am very aware.

You have 3 options

  1. Trust it (I don't care if you do or not)
  2. Build it from source
  3. Keep Edge installed

ShadowWhisperer avatar Feb 10 '24 19:02 ShadowWhisperer

@ShadowWhisperer Maybe sign EXE files for sure with Cert or via GPG. Reference: https://stackoverflow.com/a/49696454 I using ESET from years. No EXE false positives. 20240210-1707593882 Malwarebytes sees malware in probably everything not valid signed or repacked. https://www.reddit.com/r/dotnet/comments/qszqbf/malwarebytes_false_positive/ and more https://www.google.com/search?q=malwarebytes+false+positive+reddit

FadeMind avatar Feb 10 '24 19:02 FadeMind

Is it possible to find out what sequence of commands the application is built with? I would be very grateful.

SletRon avatar Jun 17 '24 23:06 SletRon

pyinstaller --noconsole --onefile -n Remove-Edge.exe edge.py --add-data "setup.exe;."

ShadowWhisperer avatar Jun 18 '24 00:06 ShadowWhisperer

@ShadowWhisperer Maybe sign EXE files for sure with Cert or via GPG. Reference: https://stackoverflow.com/a/49696454 I using ESET from years. No EXE false positives. 20240210-1707593882 Malwarebytes sees malware in probably everything not valid signed or repacked. https://www.reddit.com/r/dotnet/comments/qszqbf/malwarebytes_false_positive/ and more https://www.google.com/search?q=malwarebytes+false+positive+reddit

Just self-signing should be enough to make less detection rates.

usefulstuffs avatar Sep 03 '24 11:09 usefulstuffs

Added certificate. We'll see how it goes. I haven't had anything "real" flag it from me, Since ~Dec of '23.

ShadowWhisperer avatar Sep 03 '24 14:09 ShadowWhisperer

@ShadowWhisperer I don't care if it has a virus payload or just a normal edge remover, I have a ton of pirated softwares anyway, maybe my data is already stolen idc, fck my data. Thanks for this mate, finally gotten rid of my crap edge.

hndrx67 avatar Oct 01 '24 14:10 hndrx67

@ShadowWhisperer I don't care if it has a virus payload or just a normal edge remover, I have a ton of pirated softwares anyway, maybe my data is already stolen idc, fck my data. Thanks for this mate, finally gotten rid of my crap edge.

Your data oftentimes contains (sensitive) data of others, too, so that's no way to treat it.

ltguillaume avatar Oct 01 '24 14:10 ltguillaume