Code Monkey home page Code Monkey logo

Comments (15)

Treazul avatar Treazul commented on September 27, 2024 1

from ksyxis.

Treazul avatar Treazul commented on September 27, 2024 1

from ksyxis.

VidTu avatar VidTu commented on September 27, 2024

skull

from ksyxis.

Treazul avatar Treazul commented on September 27, 2024

k

from ksyxis.

VidTu avatar VidTu commented on September 27, 2024

@Treazul either your specific JAR is infected, your PC is infected with something else or you're getting man-in-the-middle-attacked: https://www.virustotal.com/gui/file/8e97bb392718099d54377738a3501284eef98fbd54f6b46b4350fc9267ef4d47

from ksyxis.

Treazul avatar Treazul commented on September 27, 2024

from ksyxis.

VidTu avatar VidTu commented on September 27, 2024

for fs sake, what they don't like

from ksyxis.

VidTu avatar VidTu commented on September 27, 2024

maybe they don't like the way it uses a lot of method injections like here for multiversion support

from ksyxis.

VidTu avatar VidTu commented on September 27, 2024

what's funny, the latest gh actions snapshot is not being detected (even after reanalyzing) by any vendor

from ksyxis.

Dorrivix avatar Dorrivix commented on September 27, 2024

*got this on mod version 1.2.2, the file extension isn't .jar, it's .bNIhAX

the full file my av shows is Ksyxis-1,2,2,jar.bNIhAX

download method: modpack via prism launcher, downloading from modrinth.

trying to download the mod again seems to end with a random string as the file extension, not just ".bNlhAX"

my AV is called "Vipre".

from ksyxis.

VidTu avatar VidTu commented on September 27, 2024

@Dorrivix it seems like your antimalware renames it

from ksyxis.

Dorrivix avatar Dorrivix commented on September 27, 2024

it doesn't trigger with downloading version 1.2.1

from ksyxis.

VidTu avatar VidTu commented on September 27, 2024

well it also doesn't with 1.2.3-SNAPSHOT, you can reverse engineer 1.2.2 JAR and find nothing there. it was probably incorporated in some bigger malware (such as infected Minecraft modpack) and now antimalware flags it. i will not update JAR until I'll add 1.20.5 compat in a few days.

from ksyxis.

VidTu avatar VidTu commented on September 27, 2024

hopefully fixed in 1.3.0.

from ksyxis.

VidTu avatar VidTu commented on September 27, 2024

BitDefender no longer flags 1.2.2 as infected, other vendors should follow shortly

from ksyxis.

Related Issues (20)

Recommend Projects

  • React photo React

    A declarative, efficient, and flexible JavaScript library for building user interfaces.

  • Vue.js photo Vue.js

    🖖 Vue.js is a progressive, incrementally-adoptable JavaScript framework for building UI on the web.

  • Typescript photo Typescript

    TypeScript is a superset of JavaScript that compiles to clean JavaScript output.

  • TensorFlow photo TensorFlow

    An Open Source Machine Learning Framework for Everyone

  • Django photo Django

    The Web framework for perfectionists with deadlines.

  • D3 photo D3

    Bring data to life with SVG, Canvas and HTML. 📊📈🎉

Recommend Topics

  • javascript

    JavaScript (JS) is a lightweight interpreted programming language with first-class functions.

  • web

    Some thing interesting about web. New door for the world.

  • server

    A server is a program made to process requests and deliver data to clients.

  • Machine learning

    Machine learning is a way of modeling and interpreting data that allows a piece of software to respond intelligently.

  • Game

    Some thing interesting about game, make everyone happy.

Recommend Org

  • Facebook photo Facebook

    We are working to build community through open source technology. NB: members must have two-factor auth.

  • Microsoft photo Microsoft

    Open source projects and samples from Microsoft.

  • Google photo Google

    Google ❤️ Open Source for everyone.

  • D3 photo D3

    Data-Driven Documents codes.