3 ms·
There's a process to report false positives and other problems: https://www.microsoft.com/en-us/wdsi/filesubmission https://www.microsoft.com/en-us/wdsi/filesu
by binarycrusader 8y ago
There's a process to report false positives and other problems:
https://www.microsoft.com/en-us/wdsi/filesubmission https://www.microsoft.com/en-us/wdsi/filesubmission
...to ensure things like this get investigated.
For what it's worth, I just downloaded the latest D compiler distribution for Windows and scanned it with Windows Defender -- it didn't report any problems.
- marktangotango 8y agoWith respect to this story, I have not seen any references to ken Thompson c compiler backdoor. Just because a compiler is compiled from source doesn’t mean it’s secure. http://wiki.c2.com/?TheKenThompsonHack http://wiki.c2.com/?TheKenThompsonHack
- vatueil 8y agoIncidentally there was also a blog post from Microsoft about preventing false positives just a couple months ago: https://cloudblogs.microsoft.com/microsoftsecure/2018/08/16/partnering-with-the-industry-to-minimize-false-positives/ https://cloudblogs.microsoft.com/microsoftsecure/2018/08/16/... Short summary: https://mspoweruser.com/microsoft-shares-ways-for-software-vendors-to-minimize-false-positives/amp/ https://mspoweruser.com/microsoft-shares-ways-for-software-v...
- userbinator 8y agoMicrosoft also noted that the best way to avoid false positives is to publish apps on the Microsoft Store as it scans for viruses or malware before publishing the app for the users. The overwhelming desire to lock people into their walled garden is so blatant. The first method to prevent a false positive is to ensure the software is digitally signed. To someone looking to make money from malware, the cost of code signing is probably insignificant. To someone innocent and just wanting to share some software for free, it's not. It shows that MS is clearly not interested in actually improving the detection accuracy of their AV much, but more interested in converting developers into a revenue stream.
- dawg 8y agoDmd releases have been signed and submitted to Microsoft since 2.082.0 to fix the issue with Windows Defender. https://dlang.org/changelog/2.082.0.html#signed_windows_binaries https://dlang.org/changelog/2.082.0.html#signed_windows_bina...
- ShorsHammer 8y agoBrave browser has been flagged by Windows Defender for over a year, instead of blocking it Antimalware Service Executable goes into overdrive and chews up all cpu usage. Many have reported the false positive, the browser is open source. Nothing has changed. So good luck with that.
- binarycrusader 8y agoI just downloaded the latest Brave browser and scanned it with Windows Defender -- no issues reported. Perhaps there have been issues in the past, but there don't appear to be any known ones at the moment. Now, the separate tor browser component that's included, that's a different story. But the Brave browser itself is just fine.
- BeardPower 8y agoYes, we are using this reporting tool frequently. Every single file we ever submitted to Microsoft was confirmed by them as a false positive. The definitions were updated, and it was fine. The AV behavior changed again, once they "tuned" their heuristics and the game repeated itself. The only difference was the type/name of the infection, which was still a confirmed false positive.