Skip to content

Potential threat in Windows Release Archive? #1539

@JoernMueller

Description

@JoernMueller

lnav version
v0.13.1

Describe the bug
Just wanting to raise awareness that Windows Defender recognizes the archives content of lnav-0.13.1-windows-x86_64.zip as Script/Wacapew.A!ml
As I wouldn´t expect this project is trying to spread malware, you might want to check if there is some sort scripting or techniques included that could make it look potentially suspicious to the AV heuristics.

To Reproduce

  • Download the archive on a Win11 x64 system where MS Defender is running.
  • Try to open/unpack the archive.
  • Observe Defender intercepting this operation

I did not check any other releases than 0.13.1.

Metadata

Metadata

Assignees

No one assigned

    Labels

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions