Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Windows Defender treat Tunic as Trojan:Win32/Fuery.B!cl #13

Open
hohoaisan opened this issue Mar 2, 2020 · 5 comments
Open

Windows Defender treat Tunic as Trojan:Win32/Fuery.B!cl #13

hohoaisan opened this issue Mar 2, 2020 · 5 comments

Comments

@hohoaisan
Copy link

image

@mikeslattery
Copy link
Owner

mikeslattery commented Mar 2, 2020

This is a false positive. There's only so much I can do about this. Tunic installs a bootloader which can look suspicious to AV.

See also #7.

I have covered this in the FAQ and security.md but I suppose I need to specifically warn about this in the Getting Started section.

I'll do the following:

  • In "Getting Started", I'll describe what can be done if AV falsely detects as malware.
  • In security.md, I'll go into more detail on how to audit tunic.exe to show it is not malware, to ease concerns of Tunic users.
  • I'll investigage what Furey.B!cl is and see what pattern it's finding in Tunic. This may be hard to do.
  • Close this ticket.

I'm currently in the middle of a rewrite (#10) which may magically solve the issue.

I likely will not be able to stop this from ever happening. I can only help users to deal with it.

@mikeslattery
Copy link
Owner

I didn't meant to close.

@mikeslattery mikeslattery reopened this Mar 2, 2020
@hohoaisan
Copy link
Author

By adding certificates and valid publisher information to each release helps to correct this issue I wonder? Windows SmartScreen warns me about this as well.

@mikeslattery
Copy link
Owner

Yeah, you're right. I'll look into Certum's certs, discounted for open source projects.

@mikeslattery
Copy link
Owner

The OSS discounted Certum cert is $154 for the first year and $40/year after that. Also, it's missing some features so I'm not 100% sure it would solve this problem. Still by far the cheapest cert.

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

No branches or pull requests

2 participants