- Joined
- Jan 31, 2022
- Messages
- 8
- Reaction score
- 1
Hello again - I'm hoping this is just a false positive but I'd really like someone to cast their eye over it and see if there is a problem.
https://www.virustotal.com/gui/file...3682cbceafc2d53529e089ba87aabc87fe7/detection
This is from the 3CX Desktop App Windows version 18.12.425.0 signed. As you can see EVERY AV engine considers it safe. However one YARA ruleset is triggering on "Matches rule INDICATOR_SUSPICIOUS_EXE_References_CryptoWallets by ditekSHen from ruleset indicator_suspicious at https://github.com/ditekshen/detection". I'm guessing there is just some line of code that is a false match, but I don't really know enough to find out one way or the other. Can someone double check for me please?
https://www.virustotal.com/gui/file...3682cbceafc2d53529e089ba87aabc87fe7/detection
This is from the 3CX Desktop App Windows version 18.12.425.0 signed. As you can see EVERY AV engine considers it safe. However one YARA ruleset is triggering on "Matches rule INDICATOR_SUSPICIOUS_EXE_References_CryptoWallets by ditekSHen from ruleset indicator_suspicious at https://github.com/ditekshen/detection". I'm guessing there is just some line of code that is a false match, but I don't really know enough to find out one way or the other. Can someone double check for me please?
