Bitcoin Forum
May 05, 2024, 11:43:00 AM *
News: Latest Bitcoin Core release: 27.0 [Torrent]
 
   Home   Help Search Login Register More  
Pages: [1]
  Print  
Author Topic: VirusTotal has one false positive for the Bitcoin Client  (Read 2602 times)
Cunningham (OP)
Newbie
*
Offline Offline

Activity: 54
Merit: 0



View Profile
October 19, 2013, 12:59:19 PM
 #1

I just checked the current Bitcoin Client v. 0.8.5 for viruses and got a hit:

VirusTotal Report for bitcoin-0.8.5-win32-setup.exe

https://www.virustotal.com/de/file/6f6b8fd68f56a8e700090267c53aa592b9c9e5c993f44c7be11ba9b87e1f92bb/analysis/1382185873/

AhnLab-V3 Trojan/Win32.BitCoinMiner

So even if this is a false positive, it is probably a good idea to contact the vendor for them to remove it, as this makes a bad impression for anyone checking the official Bitcoin Client.

[Sorry this is my first posting and I had to post something useful in the newbie section.]
1714909380
Hero Member
*
Offline Offline

Posts: 1714909380

View Profile Personal Message (Offline)

Ignore
1714909380
Reply with quote  #2

1714909380
Report to moderator
The Bitcoin network protocol was designed to be extremely flexible. It can be used to create timed transactions, escrow transactions, multi-signature transactions, etc. The current features of the client only hint at what will be possible in the future.
Advertised sites are not endorsed by the Bitcoin Forum. They may be unsafe, untrustworthy, or illegal in your jurisdiction.
1714909380
Hero Member
*
Offline Offline

Posts: 1714909380

View Profile Personal Message (Offline)

Ignore
1714909380
Reply with quote  #2

1714909380
Report to moderator
bludstem
Member
**
Offline Offline

Activity: 70
Merit: 10



View Profile
October 19, 2013, 01:20:27 PM
 #2

Avast also sees the Minerd mining client as a virus. I have to disable my virus scanner when I mine. I also keep my mining client on a flash drive otherwise when I activate Avast It will automatically put Minerd.exe in the vault.
xypos
Sr. Member
****
Offline Offline

Activity: 532
Merit: 250


View Profile
October 19, 2013, 05:31:15 PM
 #3

It is often the case with custome software, and you can't really do much against it
vm1990
Legendary
*
Offline Offline

Activity: 1540
Merit: 1002



View Profile
October 19, 2013, 05:42:00 PM
 #4

its because the code for both bitcoin client and miner have been found on compromised computers such as botnets.. only select lines of code but because its been installed on computers without the users permission those lines of code get selected as a virus most likely a trojan. there not actually viruses or trojans aslong as you get them from trusted download sites.
and because those lines of code have been in viruses to do remote mining for the botnet operators some Antivirus firms label them as viruses


tacoman71
Sr. Member
****
Offline Offline

Activity: 320
Merit: 250



View Profile
October 19, 2013, 08:55:55 PM
 #5

Have you tried white listing them? Norton lists cgminer as a virus so I just whitelisted it.

Feeling generous? Like my post? Leave a tip at BTC: 1NZJ8cceqEiKDZGAJged2vNGCyfFMUEYPt
Jabbatheslutt
Full Member
***
Offline Offline

Activity: 168
Merit: 100


View Profile
October 19, 2013, 09:40:21 PM
 #6

Usually one out of the 42 clients picks up something even when its clean. 5 or more alerts and you should steer clear.
Light
Hero Member
*****
Offline Offline

Activity: 742
Merit: 502


Circa 2010


View Profile
October 19, 2013, 10:36:52 PM
 #7

Yeah, it shouldn't be too big of a deal, nearly always there is 1+ false positive for these things. I'm pretty confident if it's the actual Bitcoin client it'll be clean.
MakeBelieve
Hero Member
*****
Offline Offline

Activity: 602
Merit: 500


View Profile
October 20, 2013, 04:13:39 PM
 #8

Yeah, it shouldn't be too big of a deal, nearly always there is 1+ false positive for these things. I'm pretty confident if it's the actual Bitcoin client it'll be clean.


That's true. Whenever I scan something with this it shows 1 or 2 false positives. I mean very well known software too.

On a mission to make Bitcointalk.org Marketplace a safer place to Buy/Sell/Trade
MysteryMiner
Legendary
*
Offline Offline

Activity: 1470
Merit: 1029


Show middle finger to system and then destroy it!


View Profile
November 03, 2013, 09:41:01 PM
 #9

This is why the signature based antivirus protection is a thing of past.

bc1q59y5jp2rrwgxuekc8kjk6s8k2es73uawprre4j
Cunningham (OP)
Newbie
*
Offline Offline

Activity: 54
Merit: 0



View Profile
November 11, 2013, 02:25:50 AM
 #10

Wouldn't it be a good idea to contact Ahnlab Antivirus to verify and remove the false positive?

Once again, it just makes a very bad and unprofessional impression if the official Bitcoin Client does not look 100% clean when potential users are throwing it at Virustotal.  Roll Eyes

Ahnlab is the market leader in AV-technology in South Korea,
so this is should really be an issue for asian Bitcoin users.  Undecided
Pages: [1]
  Print  
 
Jump to:  

Powered by MySQL Powered by PHP Powered by SMF 1.1.19 | SMF © 2006-2009, Simple Machines Valid XHTML 1.0! Valid CSS!