Comments (4)
Now that's a surprise, I really have no concrete explanation for you at this time, but it's definitely a false positive and caused by using some unsafe Win32 API data structures. This problem also seems to affect versions 1.4.x, not 1.3.x.
I can assure you that all the application does with your system is read the WMI tables, saves and reads hardware data to/from your hard disk, temporarily saves the screenshot to your appdata folder and then deletes it afterwards and that's it. The source code is free for you to explore and compile on your own using MSVC.
I'll see what I can do about this problem, but if you're really paranoid about security or have difficulty navigating the source code and identifying security flaws I suggest you use 1.3.x versions.
from system_info.
First, sorry for the clickbaity title, I have to do it so that people would be aware about this issue, and I believe that it wouldn't hurt the image of the project at all given the labels added and the fact that I doubt anyone seeing that title wouldn't click and find out more.
Second, I'll try and build the solution in my machine and see if I could produce the same issue on the output binaries, and will also conduct additional analysis to give more insight about this issue.
from system_info.
Ok, so I build 1.4.2 locally and get at most 4 detection hits.
if I rescan the executable from your link I get different hit counts every time, from 16 to 25.
This is all very strange. I guess I'm gonna have to dig through the source code and fire fight parts of the code that could set off the AV.
from system_info.
So after a few hours of checking source code and messing around with virus total I can say that all of this is caused by the fact that the executable isn't digitally signed, because I started getting hits from virus total on version 1.3.x. I'll see about self-signing the executable, but the certificate is most likely not cheap, so for the time being it's going to be a false positive on virus total and other online AV checking tools.
Have you ever encountered the executable being flagged as false positive with your local AV software or is it just virus total?
from system_info.
Related Issues (20)
- Image upload HOT 1
- Open exported data
- Computer type not being output in exported data
- CPU name contains tabulation
- Reports wrong RAM amout HOT 9
- Feature request: display memory slots HOT 2
- Code base refactoring HOT 1
- Add CPU-Util and GPU-Util? HOT 5
- Settings window
- HDD temperature
- Can you add some way for other apps to grab info from the app? HOT 1
- Unable to properly fetch monitor info HOT 1
- Make application DPI aware
- Can't build this Project HOT 7
- Force build as x86
- Incorrect Hz reporting on 144Hz monitor
- Nothing is showing up under Windows 7 HOT 5
- security vendors and no sandboxes flagged this file as malicious HOT 1
- Stop using MS toolchain [Spike]
Recommend Projects
-
React
A declarative, efficient, and flexible JavaScript library for building user interfaces.
-
Vue.js
🖖 Vue.js is a progressive, incrementally-adoptable JavaScript framework for building UI on the web.
-
Typescript
TypeScript is a superset of JavaScript that compiles to clean JavaScript output.
-
TensorFlow
An Open Source Machine Learning Framework for Everyone
-
Django
The Web framework for perfectionists with deadlines.
-
Laravel
A PHP framework for web artisans
-
D3
Bring data to life with SVG, Canvas and HTML. 📊📈🎉
-
Recommend Topics
-
javascript
JavaScript (JS) is a lightweight interpreted programming language with first-class functions.
-
web
Some thing interesting about web. New door for the world.
-
server
A server is a program made to process requests and deliver data to clients.
-
Machine learning
Machine learning is a way of modeling and interpreting data that allows a piece of software to respond intelligently.
-
Visualization
Some thing interesting about visualization, use data art
-
Game
Some thing interesting about game, make everyone happy.
Recommend Org
-
Facebook
We are working to build community through open source technology. NB: members must have two-factor auth.
-
Microsoft
Open source projects and samples from Microsoft.
-
Google
Google ❤️ Open Source for everyone.
-
Alibaba
Alibaba Open Source for everyone
-
D3
Data-Driven Documents codes.
-
Tencent
China tencent open source team.
from system_info.