Bitcoin Forum

Bitcoin => Electrum => Topic started by: Gwapo on January 09, 2018, 12:52:10 AM



Title: Heuristic Virus in Electrum 3.0.5 exe?
Post by: Gwapo on January 09, 2018, 12:52:10 AM
Norton popped this threat up upon installing the new electrum version.

https://i.imgur.com/h0c25xM.png

Let me know if this is any false positive since heuristic isn't really a virus in my opinion. It tells the antivirus is trying to detect "HEURistically" that a file MIGHT be dangerous, which might not be in actual case.


Title: Re: Heuristic Virus in Electrum 3.0.5 exe?
Post by: TryNinja on January 09, 2018, 04:05:25 AM
It's probably just a false positive. I just run a virus total scan and there are some.

Just make sure to:

1. Download only from electrum.org (http://electrum.org);
2. Verify the integrity of the file[1].

[1] https://steemit.com/bitcoin/@jklepatch/how-to-verify-the-integrity-of-electrum-wallet-executable-on-windows


Title: Re: Heuristic Virus in Electrum 3.0.5 exe?
Post by: Gwapo on January 10, 2018, 03:45:58 PM
Yes, I reported it to Norton as a false positive (https://submit.symantec.com/false_positive) and this was their response:

Code:
In relation to submission xxxxx.

Upon further analysis and investigation we have verified your submission and, as such, the detection(s) for the following file(s) will be removed from our products:

    File name: electrum-3.0.5.exe
    MD5: 8e2e9f384665aeddbb8085246df3f28e
    SHA256: 7255debdcf9cdb6dfd1811df6d350b94849a3927d545ae7d9bbb7f9415d25aea
    Note: [b][color=green]Whitelisting is available by downloading a RAPID RELEASE indicated in the Further Information section below or via the next Live Update[/color][/b]
Further Information:
Required RAPID RELEASE sequence >= 190034

The latest Rapid Release definition available here: ftp://ftp.symantec.com/AVDEFS/norton_antivirus/rapidrelease
To check the current sequence number of the Rapid Release definition: https://www.symantec.com/security_response/definitions/rapidrelease
More information on Rapid Release definitions can be found: https://support.symantec.com/en_US/article.TECH103326.html

Upon live updating my Norton app, I was able to install Electrum properly.