question-mark
Stuck on an issue?

Lightrun Answers was designed to reduce the constant googling that comes with debugging 3rd party libraries. It collects links to all the places you might be looking at while hunting down a tough bug.

And, if you’re still stuck at the end, we’re happy to hop on a call to see how we can help out.

Dark reader flagged as PUA:Win32/CoinMiner

See original GitHub issue

Windows defender flagged the chrome extension as malware PUA:Win32/CoinMiner when downloading from chrome store

image

Just wanted you to be aware of this

Issue Analytics

  • State:closed
  • Created 3 years ago
  • Comments:21 (13 by maintainers)

github_iconTop GitHub Comments

1reaction
alexanderbycommented, Dec 8, 2020

A message from MS:

We have removed the detection. Please follow the steps below to clear cached detection and obtain the latest malware definitions.

  1. Open command prompt as administrator and change directory to c:\Program Files\Windows Defender
  2. Run “MpCmdRun.exe -removedefinitions -dynamicsignatures”
  3. Run “MpCmdRun.exe -SignatureUpdate”

Alternatively, the latest definition is available for download here: https://www.microsoft.com/en-us/wdsi/definitions

Thank you for contacting Microsoft.

1reaction
alexanderbycommented, Dec 8, 2020

I’ve reported the problem to Microsoft, they have a special form for it. My Windows Defender is silent even though is up to date. I will try to dig into it.

Read more comments on GitHub >

github_iconTop Results From Across the Web

Windows defender detected PUA:Win32/CoinMiner
Windows defender detected PUA:Win32/CoinMiner. Status active. I can't find the file for affected items under installer/razer.
Read more >
PC being used a Coin miner, Trojan Found but can't remove.
Hi Everyone,. I'm fairly new to the site, and was wondering if any of you could give me a hand with an issue...
Read more >
When coin miners evolve, Part 1: Exposing LemonDuck and ...
Part 1 covers the evolution of the threat, how it spreads, and how it impacts organizations. [Part 2](<https://www.microsoft.com/security/ ...
Read more >
IPv4: 104.17.70.206 - AlienVault - Open Threat Exchange
United States of America flag United States of America. ASN. AS13335 cloudflare ... ALF:HeraklezEval:PUA:Win32/InstallCore , ... Trojan:Win64/CoinMiner.WE.
Read more >
Analysis Report 1.unMineable Miner 1.0.1-beta-packed.exe
1.unMineable Miner 1.0.1-beta-packed.exe, 59%, ReversingLabs, Win32.PUA. ... Professional Plus 2016, Chrome 85, IE 11, Adobe Reader DC 19, Java 8 Update 211.
Read more >

github_iconTop Related Medium Post

No results found

github_iconTop Related StackOverflow Question

No results found

github_iconTroubleshoot Live Code

Lightrun enables developers to add logs, metrics and snapshots to live code - no restarts or redeploys required.
Start Free

github_iconTop Related Reddit Thread

No results found

github_iconTop Related Hackernoon Post

No results found

github_iconTop Related Tweet

No results found

github_iconTop Related Dev.to Post

No results found

github_iconTop Related Hashnode Post

No results found