Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

[Bug]: build dependency adafruit-nrfuitil.exe flagged by AV software #4737

Open
powersjcb opened this issue Sep 16, 2024 · 3 comments
Open
Labels
bug Something isn't working

Comments

@powersjcb
Copy link

Category

Other

Hardware

Not Applicable

Firmware Version

main

Description

adafruit-nrfuitil.exe flagged by AV software

Blocks firmware dev work on any machine with locked down AV.

https://www.virustotal.com/gui/file/9637a4d099f4a99cbbdfb14142345776582dfbd11d4f357748055b75006ac8c6/details

Related issue adafruit/Adafruit_nRF52_Arduino#424 The fix seems to be using a different version of the library. TBD if that actually fixes the root cause or if the virus scan definitions just don't have the checksums for the latest master builds. :-\

image

Relevant log output

No response

@powersjcb powersjcb added the bug Something isn't working label Sep 16, 2024
@powersjcb
Copy link
Author

powersjcb commented Sep 16, 2024

It generally sounds like this is an issue bc virus profiles commonly bundle python code into an .exe (as this dependency has)

Almost certainly a false positive, but it would still be nice to figure out a way to resolve this upstream and then propagate that change here.

@garthvh
Copy link
Member

garthvh commented Sep 16, 2024

What antivirus triggered the false positive? They all have a way to submit software, I have done windows defender for the old desktop flasher.

@powersjcb
Copy link
Author

powersjcb commented Sep 16, 2024

Multiple vendors are flagging it as malware per VirusTotal

Given that so many systems are flagging it, I wonder if it would be easier to configure the installer bundle to not bundle the .exe. The binary used by linux/mac systems aren't having any problems.

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
bug Something isn't working
Projects
None yet
Development

No branches or pull requests

2 participants