Page 1 of 1

Live image is infected?

Posted: Tue Apr 17, 2018 5:10 pm
by bobn9lvu
Is the live image infected? As upon download Kaperski reports it has a virus.

Re: Live image is infected?

Posted: Tue Apr 17, 2018 5:16 pm
by mrmajik45
No, it doesn't have a virus on it. Kapersky is always over its head.

Re: Live image is infected?

Posted: Tue Apr 17, 2018 5:24 pm
by dizt3mp3r
Use virus total to help determine whether a specific file is being reported as a false positive. It is a useful online tool that compares the file with 30 or more of the main a/v packages. When you are convinced that a file is safe then report it back to the specific a/v vendor as a false positive.

Re: Live image is infected?

Posted: Tue Apr 17, 2018 5:40 pm
by Fraizeraust
The infection which Kaspersky (and most likely any antivirus software) has detected is a false positive.

The plausible cause (wild guess) for antiviruses detecting ReactOS as a rogue malware is because of Dr.Watson implementation by Jansen which collects some debugging information when an application crashes and bundles them in a dump crash file.

So, don't panic. ReactOS' contents and everything are safe, sometimes antiviruses can screw up things.

Re: Live image is infected?

Posted: Tue Apr 17, 2018 7:38 pm
by EmuandCo
Anti Virus apps are bullshit. All of em. New Viruses are not detected and detecting old ones is useless. Only thing they cause is money for em and us administrators for fixing crap they cause on Windows networks.

Re: Live image is infected?

Posted: Mon Jun 18, 2018 1:34 am
by Wol
I too found that when I downloaded the live installation Chrome blocked it when it finished downloading: "reactOS-0.4.8-live.zip is dangerous so Chrome has blocked it."

I think I downloaded from reactos.NET - not .ORG: is that site a legitimate reactOS webpage?

Re: Live image is infected?

Posted: Mon Jun 18, 2018 8:53 am
by oldman
Wol wrote:I too found that when I downloaded the live installation Chrome blocked it when it finished downloading: "reactOS-0.4.8-live.zip is dangerous so Chrome has blocked it."
I think I downloaded from reactos.NET - not .ORG: is that site a legitimate reactOS webpage?
Use https://www.reactos.org/getbuilds/ to get your ISO images and you should not have any problems (they are safe).

Re: Live image is infected?

Posted: Mon Jun 18, 2018 12:14 pm
by Wol
oldman wrote:
Wol wrote:I too found that when I downloaded the live installation Chrome blocked it when it finished downloading: "reactOS-0.4.8-live.zip is dangerous so Chrome has blocked it."
I think I downloaded from reactos.NET - not .ORG: is that site a legitimate reactOS webpage?
Use https://www.reactos.org/getbuilds/ to get your ISO images and you should not have any problems (they are safe).
Yes, but IS the .net site genuine? In other words, is it a real ReactOS site or a false one?

Re: Live image is infected?

Posted: Mon Jun 18, 2018 1:41 pm
by binarymaster
Wol wrote:Yes, but IS the .net site genuine? In other words, is it a real ReactOS site or a false one?
IP Addresses are same for each domain:

Code: Select all

> reactos.org
Server:  google-public-dns-b.google.com
Address:  8.8.4.4

Non-authoritative answer:
Name:    reactos.org
Addresses:  2a01:4f8:141:446b::1:10
          178.63.204.104

> reactos.com
Server:  google-public-dns-b.google.com
Address:  8.8.4.4

Non-authoritative answer:
Name:    reactos.com
Addresses:  2a01:4f8:141:446b::1:10
          178.63.204.104

> reactos.net
Server:  google-public-dns-b.google.com
Address:  8.8.4.4

Non-authoritative answer:
Name:    reactos.net
Addresses:  2a01:4f8:141:446b::1:10
          178.63.204.104

Re: Live image is infected?

Posted: Tue Jun 19, 2018 3:35 am
by Wol
Thank you. From that I assume the .net site is yours as well as the .org. Forgive me for being pedantic, but I am rather paranoid about internet security, not up to geeky standards and did wonder if it was a spoof site that mimicked ReactOS in order to allow malware downloads.