ASL icon indicating copy to clipboard operation
ASL copied to clipboard

Malware?

Open dejo1001 opened this issue 1 year ago • 10 comments

The application is detected by Windows Defender and some other antivirus as trojan: https://www.virustotal.com/gui/file/c95296a141734aae7de94f4de18c2f655850b6db791e486bb7e3386dfcf9e2ef

What gives?

dejo1001 avatar Jan 29 '25 09:01 dejo1001

**_compression LZMA problem ,

  1. please unpack with upx.exe
  2. pack again with "upx.exe exeinfope.exe" result only one malware_**

ExeinfoASL avatar Jan 29 '25 11:01 ExeinfoASL

Doesn't work and i don't see why it is a LZMA problem.

m0lDaViA avatar Mar 08 '25 14:03 m0lDaViA

Please redownload Exeinfo , no problem fixed.

If Exeinfo is packed with upx lzma compression , avir detectors can deteck malware , why , please avir developer !

ExeinfoASL avatar Mar 08 '25 20:03 ExeinfoASL

Bullshit. even if you extract exeinfo it still get's detected. That means it is NOT a compression problem.

m0lDaViA avatar Mar 21 '25 20:03 m0lDaViA

https://www.virustotal.com/gui/file/26a368c566f7b63e434c51376add8625ee553538c6c9f1e5325a190e27872771/detection

no malware detect

ExeinfoASL avatar Mar 22 '25 13:03 ExeinfoASL

Version 0.0.9.0: https://www.virustotal.com/gui/file/5391ddd39947f1d92333acc3f635aa6e454dfa6e6b5c79231205691f8f7d9fc1

HUMORCE avatar Jun 09 '25 12:06 HUMORCE

download link :

https://github.com/ExeinfoASL/ASL/releases/download/v0.0.9.0/Exeinfo_0090.zip

no malware found

ExeinfoASL avatar Jun 09 '25 18:06 ExeinfoASL

Detected:

exeinfope.exe: https://www.virustotal.com/gui/file/9c0c1c5fee0acc626050deb080378891d2156a43d47d3f7fce396d184cd7d964 exeinfope_Win_XP.exe: https://www.virustotal.com/gui/file/1617a516ebb36c223a01eaff1075cb73dc5dee1e90f290f6068907bb44f6b9d8 Ext_Detector.dll: https://www.virustotal.com/gui/file/c3bfe1864bbee042d241624310d4e50b526aefed2ccdea2f641fffa444af1bb6

Anyway, I can only rollback to 0.0.8.8 on devices that cannot disable AV.

HUMORCE avatar Jun 09 '25 21:06 HUMORCE

repacked exeinfope.exe , detect 3 malware on AVir , please redownload zip

https://www.virustotal.com/gui/file/addb3c38c8cfef9d4154e5149b83bb3916886fd29b310e50950b0e061b952dea/detection

ExeinfoASL avatar Jun 09 '25 22:06 ExeinfoASL

At least, it would not be directly removed by MS defender and AVAST now. Thank you!


Can you add more donation/sponsorship options, like cryptocurrency? (I cannot use PayPal at the moment)

HUMORCE avatar Jun 10 '25 03:06 HUMORCE