[GH-ISSUE #11] Windows 11 Security Issues #1

Closed
opened 2026-03-04 19:20:07 +03:00 by kerem · 3 comments
Owner

Originally created by @Supastyles on GitHub (Jan 23, 2025).
Original GitHub issue: https://github.com/007revad/Syno_DSM_Extractor_GUI/issues/11

Hi

It is not unusual for me to get security warning etc when installing git software or the like, however this was different. First Chrome would stop it immediatly and I could not allow it. Second I then used the DL manager to get the file downloaded. When I tried to extract it that was blocked immediatly and was not able to proceed, Third I tried to drag and drop it and again stopped. I normally just go into Defender and allow the file but everytime I went to extract it, it immediatly stopped it then as I went to allow it it would show as unavailable

vanished:

https://i.imgur.com/P5Tluc6.png

I would get a recovery failed and it would give a warning that the threat may not be remediated.

I tried a few more times and eventually was able to get defender to restore the file but honestly this was very peculiar so I am hesitant to actually proceed with the install without posting this. I did go through your page and can see you are not a brand new account with no history but accounts get hacked etc even if this would be a very peculiar hack for such a neiche app.

finally showing and restored

https://i.imgur.com/tEBse8M.png

Thanks

Originally created by @Supastyles on GitHub (Jan 23, 2025). Original GitHub issue: https://github.com/007revad/Syno_DSM_Extractor_GUI/issues/11 Hi It is not unusual for me to get security warning etc when installing git software or the like, however this was different. First Chrome would stop it immediatly and I could not allow it. Second I then used the DL manager to get the file downloaded. When I tried to extract it that was blocked immediatly and was not able to proceed, Third I tried to drag and drop it and again stopped. I normally just go into Defender and allow the file but everytime I went to extract it, it immediatly stopped it then as I went to allow it it would show as unavailable vanished: https://i.imgur.com/P5Tluc6.png I would get a recovery failed and it would give a warning that the threat may not be remediated. I tried a few more times and eventually was able to get defender to restore the file but honestly this was very peculiar so I am hesitant to actually proceed with the install without posting this. I did go through your page and can see you are not a brand new account with no history but accounts get hacked etc even if this would be a very peculiar hack for such a neiche app. finally showing and restored https://i.imgur.com/tEBse8M.png Thanks
kerem closed this issue 2026-03-04 19:20:07 +03:00
Author
Owner

@007revad commented on GitHub (Jan 23, 2025):

I use Emsisoft instead of Defender. When I first ran SDE-GUI.exe Emsisoft wanted to delete it, but Emsisoft gives you the option of clicking "Wait, I think it's safe". Every time I update SDE-GUI.exe I get a warning from Emsisoft that the file has changed, and again I have to click on "Wait, I think it's safe".

I just tested the installer.zip and no_installer.zip with VirusTotal (that uses 66 different virus scanner engines) and have updated the release notes. https://github.com/007revad/Syno_DSM_Extractor_GUI/releases/tag/v1.1.1.22

I also found that I can change the compression setting in the Inno Setup to prevent Defender falsely thinking it contains a trojan. Edit That didn't work.

I'll upload a new version of the installer.zip shortly.

<!-- gh-comment-id:2608638343 --> @007revad commented on GitHub (Jan 23, 2025): I use Emsisoft instead of Defender. When I first ran SDE-GUI.exe Emsisoft wanted to delete it, but Emsisoft gives you the option of clicking "Wait, I think it's safe". Every time I update SDE-GUI.exe I get a warning from Emsisoft that the file has changed, and again I have to click on "Wait, I think it's safe". I just tested the installer.zip and no_installer.zip with VirusTotal (that uses 66 different virus scanner engines) and have updated the release notes. https://github.com/007revad/Syno_DSM_Extractor_GUI/releases/tag/v1.1.1.22 I also found that I can change the compression setting in the Inno Setup to prevent Defender falsely thinking it contains a trojan. Edit That didn't work. I'll upload a new version of the installer.zip shortly.
Author
Owner

@Supastyles commented on GitHub (Jan 23, 2025):

Ok awsome, Thanks for checking all that. I wouldn't normally say stuff but it was almost like a sirens were going off response rather than a typical notification warning.

<!-- gh-comment-id:2608714422 --> @Supastyles commented on GitHub (Jan 23, 2025): Ok awsome, Thanks for checking all that. I wouldn't normally say stuff but it was almost like a sirens were going off response rather than a typical notification warning.
Author
Owner

@007revad commented on GitHub (Jan 24, 2025):

I've submitted the setup.exe file to Microsoft so they can update Defender's definition file to avoid falsely detecting it as a trojan.

<!-- gh-comment-id:2611473084 --> @007revad commented on GitHub (Jan 24, 2025): I've submitted the setup.exe file to Microsoft so they can update Defender's definition file to avoid falsely detecting it as a trojan.
Sign in to join this conversation.
No labels
pull-request
No milestone
No project
No assignees
1 participant
Notifications
Due date
The due date is invalid or out of range. Please use the format "yyyy-mm-dd".

No due date set.

Dependencies

No dependencies set.

Reference
starred/Syno_DSM_Extractor_GUI#1
No description provided.