this post was submitted on 07 Sep 2024
15 points (94.1% liked)

Firefox

17952 readers
111 users here now

A place to discuss the news and latest developments on the open-source browser Firefox

founded 4 years ago
MODERATORS
 

Hello all.

I recently downloaded firefox from the official site as per usual (windows version) and I ran a virustotal check and got a trojan positive.

The md5sum is: 4409905bd4544c6f45e4d5737f130d75

The sha256sum is:

d390bfce3fed1be8c153aebfb9f28043981071b5338745e9207547178f32bf64

Please verify if this file is legitamate.

top 9 comments
sorted by: hot top controversial new old
[–] Moonrise2473@feddit.it 24 points 2 months ago

It's signed by Mozilla (extremely unlikely that's a virus unless they got hacked) and it's detected as trojan only by "max secure", a questionable snake oil product that is like a broken clock, correct only twice a day

Conclusion: it's safe

[–] 1984@lemmy.today 6 points 2 months ago* (last edited 2 months ago) (2 children)

I've been using computers for 30 years and never once has an antivirus program been helpful or accurate. But yeah, I don't download and click on random stuff from the web.

[–] wallmenis@lemmy.one 5 points 2 months ago (1 children)
[–] 1984@lemmy.today 9 points 2 months ago

I think it's a false positive.

[–] possiblylinux127@lemmy.zip 2 points 2 months ago

Crowdstrike managed to create a lot of free time for some workers

[–] lnxtx@feddit.nl 3 points 2 months ago (1 children)
[–] wallmenis@lemmy.one 4 points 2 months ago (1 children)

I have read on the firefox forum that this particular anti-malware engine flags these like that. I just want to know to be sure. Is there somewhere where I can check if it was officially generated by firefox (other than the signature which seems legit)

[–] wallmenis@lemmy.one 6 points 2 months ago

Follow up:

Ok so aparently 7z compression is the culprit. If I extract the file. There is a setup-stub.exe file that shows clear in there.

[–] hydrogen@lemmy.ml 0 points 2 months ago

Maybe try installing trough a package manager like Winget or Chocolatey