LabVIEW Public Beta Program in 2025

取消
显示结果 
搜索替代 
您的意思是: 

JKI Dragon classified as malware

I am trying to install JKI Dragon 2024.3.0. Build 662 but my antivirus blocks it for suspected malware.

 

I cannot disable antivirus - it is company run.

 

Is this normal?
Anyone has similar problems?

What to do?

- - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - -
21st November 1905: E=mc² → and Physics would never be the same again...
0 项奖励
1 条消息(共 16 条)
1,506 次查看

You can contact IT and have them report this to the AV company to investigate and fix with the next update. What is the name of the security software?

0 项奖励
2 条消息(共 16 条)
1,487 次查看

Thanks Rolf.

 

Malware detection is integrated in Admin By Request and the list of AV's is quite long (click here for the list).

 

Although https://vipm.io is trustworthy (click here), my IT asks if it may have been hacked and a malware version of 'JKI Dragon' installer planted there - which is a rightful concern.

 

I also wrote to Jim on VIPM's forum, but got no reply so far. Maybe if you send Jim a quick note, I am sure your "chime" is way more effective than mine 😉

- - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - -
21st November 1905: E=mc² → and Physics would never be the same again...
0 项奖励
3 条消息(共 16 条)
1,474 次查看

@GICA-VS_M wrote:

Thanks Rolf.


Who is Rolf?

 


@GICA-VS_M wrote:

... the list of AV's is quite long (click here for the list).


 

Wow, what a can of worms that seems to suffer from "too many cooks"!

Maybe you can upload it to Virustotal  to see which part fails it.

0 项奖励
4 条消息(共 16 条)
1,467 次查看

Sorry Chris.

 

I mistook your logo for Rolf Kalbermatter's.

 

- - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - -
21st November 1905: E=mc² → and Physics would never be the same again...
0 项奖励
5 条消息(共 16 条)
1,463 次查看

Virustotal results:

 

GICAVS_M_0-1747669471446.png

 

So, is there something 'fishy' or is it just a false positive? (which is perfectly possible)

- - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - -
21st November 1905: E=mc² → and Physics would never be the same again...
0 项奖励
6 条消息(共 16 条)
1,458 次查看

So 3 flagged it and 68 considered it safe.... 😄

 

(No way for me to judge what the problem is, of course 😄 )

0 项奖励
7 条消息(共 16 条)
1,438 次查看

I would agree, of course.

 

Now, heads on to convince my IT!

- - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - -
21st November 1905: E=mc² → and Physics would never be the same again...
0 项奖励
8 条消息(共 16 条)
1,428 次查看

Hi All,

Thanks for making us aware of this. In the upcoming weeks we will be releasing an update that has a few changes to the installer and certificates, (as well as general enhanced LV25 support). So stay tuned, and we should have this resolved before too long.

9 条消息(共 16 条)
1,353 次查看

@GICA-VS_M wrote:

Virustotal results:

 

GICAVS_M_0-1747669471446.png

 

So, is there something 'fishy' or is it just a false positive? (which is perfectly possible)


Short answer: you can probably download the NIPKG version of the Dragon installer and have better success with your antivirus/IT department.

 

PS: I don’t see a direct link to the nipkg file on https://dragon.vipm.io, but JKI can work to make that link more “readily accessible” from the website.

 

Longer answer:
I can think of a handful of reasons why an antivirus service would not want to give the dragon online installer its blessing: in extracts a zip archive into a temp folder, executes a binary, and then proceeds to download other stuff to install on your computer. This “pattern” of behavior, coupled with unfamiliarity with the binaries, is most likely the heuristics that “modern” (AI-based antivirus detection “algorithms”) use to flag a file as possible malware. There are a variety of ways a software vendor can try to prove/assert that their binaries are safe (signing with a certificate, registering with antivirus companies, using visual studio’s compiler instead of gcc, etc.), yet none of them are perfect.

10 条消息(共 16 条)
1,346 次查看