Romanitho/Winget-Install-GUI

Windows defender flags it as infected by Trojan:Win32/Wacatac.B!ml

Closed this issue · 8 comments

Trying to download v1.9.2 Windows Defender flags it as infected by Trojan:Win32/Wacatac.B!ml

Use ps1

I will stop creating exe

From my experiences, Microsoft Defender tends to false-positive a lot of programs as Wacatac specifically, so goodness know how to make Microsoft Defender's devs get their stuff together.

It wasn't super-easy to find the file whitelisting menu in Microsoft Defender, but I eventually found it at "Virus and Threat Protection" → "Settings for virus and threat protection" section → "Manage settings" → "Add or remove exceptions" → "+ Add exception", and then choose WiGui.exe.

It wasn't super-easy to find the file whitelisting menu in Microsoft Defender, but I eventually found it at "Virus and Threat Protection" → "Settings for virus and threat protection" section → "Manage settings" → "Add or remove exceptions" → "+ Add exception", and then choose WiGui.exe.

You can only whitelist a file already on your machine and Defender immediately Quarantines it so instead I disabled Real-time protection so that I could download WiGui.exe and then I was able to use WiGui to install Winget-AutoUpdate whcih is what I was originally trying to do.

IMHO
That shortcut should be generated locally.
That will solve the problem with distribution.

It wasn't exactly to find out where to report false positives to Microsoft either, but I eventually dug my way to https://www.microsoft.com/en-us/wdsi/filesubmission/?persona=HomeUser

Somewhat large screenshot of the report I sent them:

image

(I somehow embarrassingly managed to write 366 instead of 396, but still.)

This issue is stale because it has been open for 30 days with no activity.

This issue was closed because it has been inactive for 14 days since being marked as stale.