Page 1 of 1

virustotal flagged Setup_MakeMKV_v1.16.4.exe

Posted: Thu Aug 05, 2021 1:10 pm
by DocShaker
Hi guys,

I just wanted to make sure this was a false positive from virustotal.
I got the installer from https://www.makemkv.com/download/, so I'm sure its the unaltered installer but after I uploaded Setup_MakeMKV_v1.16.4.exe to virustotal, it got flagged it by 2 vendors.
I also made sure to check the hash and they matched.

Hash: 51f3655c89ba5f5fbc05cbd97addf85c7949ee07303f37e04800f25b27c19380 Setup_MakeMKV_v1.16.4.exe

Virustotal : https://www.virustotal.com/gui/file/51f ... /detection

Re: virustotal flagged Setup_MakeMKV_v1.16.4.exe

Posted: Thu Aug 05, 2021 3:35 pm
by Woodstock
viewtopic.php?f=1&t=24696&p=106183&hili ... al#p106183

Virustotal consolidates a LOT of malware detectors, so it is prone to getting false positives. There are detectors out there that go nuts for any reference to websites in various parts of the world.

My personal advice is to directly test the downloaded file with your favorite vendor's "upload and test" service. Most have one; it gets a tighter check of the file.

I have a PHP library that generates XLS spreadsheets. The spreadsheets it generates get false positives a LOT... For trojans that weren't around when the library was last updated. The heuristics in use in many virus detectors can be fooled.

Re: virustotal flagged Setup_MakeMKV_v1.16.4.exe

Posted: Thu Aug 05, 2021 6:24 pm
by DocShaker
I appreciate the quick response and figured as much. It was really odd since I have been using makemkv for over a year now and never had issues until this version.

Thank you again.