-
Notifications
You must be signed in to change notification settings - Fork 239
Expand file tree
/
Copy pathvt_whitelist.json
More file actions
96 lines (96 loc) · 3.58 KB
/
Copy pathvt_whitelist.json
File metadata and controls
96 lines (96 loc) · 3.58 KB
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
38
39
40
41
42
43
44
45
46
47
48
49
50
51
52
53
54
55
56
57
58
59
60
61
62
63
64
65
66
67
68
69
70
71
72
73
74
75
76
77
78
79
80
81
82
83
84
85
86
87
88
89
90
91
92
93
94
95
96
[
{
"manifest_file": "Yu-Gi-Oh! card search-53fcad7f00e244829b0059eaa8ea5ab7.json",
"sha256": "fc4c100ac14fb239b95be6f0ef2de43a955bbe7b4a1a139605d6632a1224c31a",
"engine_threats": {
"MaxSecure": "Trojan.Malware.300983.susgen"
},
"reason": "Low detection (1)"
},
{
"manifest_file": "Hacker News-140f3da0-7d14-4b20-b897-b4cb155fec2d.json",
"sha256": "b67a61c2eb54b152735dd41ccfedd6bfdf003dbbb3229815c81f3bd755508e80",
"engine_threats": {
"Bkav": "W32.Malware.7912D208"
},
"reason": "Low detection (1)"
},
{
"manifest_file": "Lively Wallpaper Controller-5C310C539BFF4F47BA15D01AF0173032.json",
"sha256": "f46af3b0a6946be5108c0739b7bb474732509280b00ff6bb27c1ef706f6b6afd",
"engine_threats": {
"AhnLab-V3": "Trojan/Win.Malware-gen.C5018546",
"TrellixENS": "Artemis!6CD59C0F01A2",
"Fortinet": "W32/PossibleThreat"
},
"reason": "Low detection (2)"
},
{
"manifest_file": "Minecraft Multi Launcher-91B97FA34859445782AEF1893DE4E350.json",
"sha256": "4ae3f247779a2ae03508fd0b1223c78abae7c16350bfeac2f6266bf3f021e6c0",
"engine_threats": {
"Antiy-AVL": "Trojan/Win32.Agent",
"TrellixENS": "Artemis!BB4E7FEEB103",
"MaxSecure": "Trojan.Malware.277671326.susgen",
"Fortinet": "W32/PossibleThreat"
},
"reason": "May be due to plugin launching multiple MC launcher executables"
},
{
"manifest_file": "QrFlow-725660A1CB3D4FFE978A8B477EB376B4.json",
"sha256": "a98e43e34de760046d1176362d30af13318dc8fe2e3a9b1430f39328f095a922",
"engine_threats": {
"Sophos": "NirCmd (PUA)",
"Jiangmin": "Trojan.Agentb.ofd"
},
"reason": "Low detection (2). NirCmd falsely flagged as risk too"
},
{
"manifest_file": "Timer-15361037-bbb1-440a-b98c-aff5825f28a2.json",
"sha256": "e5d6d4f79b8da5f3fd7903aadbbbc1ac83f6d39a3eb107e5a2c2107e26e6bc0d",
"engine_threats": {
"MaxSecure": "Trojan.Malware.300983.susgen"
},
"reason": "Low detection (1)"
},
{
"manifest_file": "VolumeFlow-7d2d209d-5ab9-42dd-ae9b-2487b57ff569.json",
"sha256": "75394430caaffb7566a00bf1abe0e4f4d8dd612a158a8bef058e53ebf945d3d7",
"engine_threats": {
"Sophos": "NirCmd (PUA)"
},
"reason": "Low detection (1). NirCmd falsely flagged as risk too"
},
{
"manifest_file": "WinsFlow-72E67DFE0F6F482395AF3CD0A3BC6F04.json",
"sha256": "4f4afb05d4a5daf5af5cd346349c60a787e0e745a30405e53d136f74fb02edaa",
"engine_threats": {
"Sophos": "NirCmd (PUA)"
},
"reason": "Low detection (1). NirCmd falsely flagged as risk too"
},
{
"manifest_file": "Lumina-f5a9b1c0-3e21-4f8a-9c7d-e6b3b5a1f2e9.json",
"sha256": "4fbb3d61976f5e53c7421d4df2f0199cb32666dd6a4a1af4bda00cb5a85ccd24",
"engine_threats": {
"DeepInstinct": "MALICIOUS"
},
"reason": "Likely the low-level Win32 desktop overlay behavior, resembling shellcode or unpacker behavior to heuristics"
},
{
"manifest_file": "Uninstaller+-dd2fd217-e332-4fbd-9012-4940e08d41a7.json",
"sha256": "a029c8c64e0e60bcd8316e0167e4eb4d2e5d346dbad4e84a8926942a678dff69",
"engine_threats": {
"MaxSecure": "Trojan.Malware.300983.susgen"
},
"reason": "Likely from making system changes which can look Trojan-like to heuristic AV engines"
},
{
"manifest_file": "Win Hotkey-7D530704C68E4838896BBA5C4C1DE7DF.json",
"sha256": "c38802b878661f39aa64b4002d8a81d30c784cb832d9f918ee2d388602ba584a",
"engine_threats": {
"TrellixENS": "Artemis!1E654A6EC9EE"
},
"reason": "Likely flagged for dynamic AutoHotkey execution and keyboard-hook/input-simulation behavior"
}
]