Pages:
Author

Topic: New electrum version detected as Trojan by Bitdefender - page 2. (Read 291 times)

legendary
Activity: 1946
Merit: 1137
as long as you trust Electrum developers and also verify that the file you downloaded was indeed released by them (in other words if you verify the signature of that file) you have nothing to worry about and you must add Electrum to your anti-virus's exclusion from scanning list. you can also report the false positive to the company to improve their detection engine.

if you don't trust Electrum developers then you have to download the source code and compile it yourself after reviewing the code to make sure there is nothing shady going on.
this is how the decentralized open source community should work.
hero member
Activity: 2968
Merit: 913
From where did you downloaded that version of Electrum?It seems that this update is really infected by a Trojan.What if Electrum is really compromised?
By the way,this forum (Bitcoin Discussion) isn't the right place to post such topic.
legendary
Activity: 3430
Merit: 1957
Leading Crypto Sports Betting & Casino Platform
The problem comes in with the way that some anti-virus software detect viruses or malware. Apart from detecting specific code, it also use heuristics to check for specific behaviour that looks like virus or malware activity and it warns the user, if it detects something that looks suspicious.

There are some viruses out there that has not been reported or detected by their team, so these "wild" viruses are flagged by their software, if it acts like a virus or malware. The latest changes might have acted like a virus in some way, but it is not a virus.   Wink

Why would the Electrum developers deliberately add a virus to their code?
legendary
Activity: 2758
Merit: 6830
As always...

Electrum is known from having false-positives. If you downloaded from the right website, then that’s nothing.

Verify your Electrum signature by following this guide: https://bitcoinelectrum.com/how-to-verify-your-electrum-download/

If it returns valid, you are good to go.

And:
Quote
"Anti-virus" software uses shitty heuristics to detect malware. PyInstaller is a convenient tool to package python apps. We use PyInstaller. Malware authors use PyInstaller. Everything that uses PyInstaller is detected as malware.
From: https://github.com/spesmilo/electrum/issues/4986#issuecomment-451385953
legendary
Activity: 2954
Merit: 2145
In fact it's very common for antiviruses to detect new version of crypto clients as melware because those antiviruses simply look at executable files, and if they don't match them in their database, they mark them as malware, so it happens when a new version gets released and very few people have installed it. So there's a high probability that it's just a false positive, if you have downloaded from the official site and verified the signature of the developer, you should be fine, although to e sure try waiting a few days and see if other people report anything suspicious.
copper member
Activity: 2030
Merit: 1788
฿itcoin for all, All for ฿itcoin.
So long as the signed signature of your upgrade is verified then there's nothing to worry about.
It's nothing new with Electrum. There have been false positives in the past by different antivirus engines.
Keep your eyes peeled though  Grin
legendary
Activity: 2702
Merit: 2645
Farewell LEO: o_e_l_e_o
If you have verified the download before installing and if it was verified successfully then just hit the restore button. You do not have to trust Bitdefender in that case.
These anti virus are not end of the world, sometimes they are itself the virus and stupid 🙂
sr. member
Activity: 647
Merit: 274
New electrum version detected as Trojan by Bitdefender
(Self explanatory)

I was on 3.3.4 and was trying to upgrade to 3.3.6 which showed up on my wallet


Pages:
Jump to: