mirror of
https://github.com/netbootxyz/netboot.xyz.git
synced 2026-04-25 15:15:56 +03:00
[GH-ISSUE #781] netboot.xyz-efi.iso triggers windows defender [Trojan:Script/Conteban.A!ml] malware detection. #214
Labels
No labels
Hacktoberfest
Hacktoberfest
bootloader
bsd
bug
confirmed
documentation
duplicate
enhancement
enhancement
enhancement
eol
experimental-merged
freebsd
help wanted
invalid
investigate
ipxe
linux
live-os
memdisk
menu
no-issue-activity
no-issue-activity
pull-request
released
todo
upstream
windows
windows
work-in-progress
No milestone
No project
No assignees
1 participant
Notifications
Due date
No due date set.
Dependencies
No dependencies set.
Reference
starred/netboot.xyz#214
Loading…
Add table
Add a link
Reference in a new issue
No description provided.
Delete branch "%!s()"
Deleting a branch is permanent. Although the deleted branch may continue to exist for a short time before it actually gets removed, it CANNOT be undone in most cases. Continue?
Originally created by @gtxaspec on GitHub (Nov 30, 2020).
Original GitHub issue: https://github.com/netbootxyz/netboot.xyz/issues/781
https://boot.netboot.xyz/ipxe/netboot.xyz-efi.iso
downloading this iso on windows 10, with windows defender enabled, triggers deletion due to Defender flagging it containing a trojan: Trojan:Script/Conteban.A!ml [Threat Blocked]
@antonym commented on GitHub (Nov 30, 2020):
Was unable to reproduce on Windows 10, Defender's latest build did not identify any issues with the ISO.
@dadatuputi commented on GitHub (Jun 13, 2021):
I just experienced this same issue, latest Windows 10 and latest ISO from git README.
@gtxaspec commented on GitHub (Jun 13, 2021):
@antonym Just tried this again, like @dadatuputi did, and yes, it failed again, the same virus "detected"
Windows Defender Info:
Version: 1.341.677.0 Engine Version: 1.1.18200.4 Platform Version: 4.18.2105.5 Released: 6/13/2021 8:39:16 PM@antonym commented on GitHub (Jun 14, 2021):
I ran across this too this time when trying to download it as well. The last modified date was April 25th when it was uploaded from the CI for the 2.0.37 build, these images actually aren't used anymore since I switched to a combined hybrid legacy and efi ISO which is also using a different build method to generate the ISO. Downloading the hybrid ISO didn't trigger anything with defender (https://boot.netboot.xyz/ipxe/netboot.xyz.iso).
I'll clean out those old images since they aren't used or built anymore, more than likely it's just a false positive.