GridMove icon indicating copy to clipboard operation
GridMove copied to clipboard

Malware detected

Open migliori opened this issue 2 years ago • 5 comments

Hi,

I was about to reinstall GridMove on a new PC, but my anti-virus reports a high risk alert on the .exe [VKCLOUD] Win32.malware

migliori avatar Apr 11 '23 16:04 migliori

Which Antivirus do you have? Have you tried to upload this file to virustotal.com?

tkoelpin avatar Apr 13 '23 10:04 tkoelpin

Here's a screenshot

image

Virustotal reports a trapmine from https://www.dcmembers.com/jgpaiva/wp-content/uploads/sites/9/CS/GridMove/GridMoveSetup.exe

migliori avatar Apr 21 '23 04:04 migliori

https://www.virustotal.com/gui/url/64c4a5a90ff277d52af57ae1ff67a30048149897270738e25d4fe16ebce1c6e8

It's just 1 of 90 scanners which have detected a malicious code. Sounds fine to me.

tkoelpin avatar Apr 22 '23 03:04 tkoelpin

It's up to you, but the alert is very dissuasive, it reports a "very high risk", I've been using your GridMove for many years but I prefer not to install it. Anyway thanks for this great and useful tool. If someday you solve the alert I'm interested to be aware and will install the tool.

migliori avatar Apr 22 '23 04:04 migliori

Malwarebytes blocks the domain, too. image

https://www.virustotal.com/gui/file/ef377079bcd6215f07aaba72c74c17a33cf2e5eb3eeed538fc2d0084670295d2/detection

https://www.virustotal.com/gui/url/fcb185f6ba1129de7109ab280d1f021acb0f4aac873abf89082246aac570b7ce?nocache=1

endolith avatar May 01 '24 01:05 endolith