Author Topic: Rufus exe is infected - UPDATED  (Read 59 times)

0 Members and 1 Guest are viewing this topic.

Alan J. Raul

  • Administrator
  • Hero Member
  • *****
  • Posts: 67
    • View Profile
Rufus exe is infected - UPDATED
« on: June 23, 2018, 11:38:08 AM »
The SLOLUG group uses Rufus to create Linux bootable USB flash drives. Rufus can also be used to create a Windows install USB. The latest version of Rufus 3.1 activates Windows 10 Defender that the exe contains a Trojan:Win32/Plutruption!ARXep

I have tried downloading directly from the official Rufus website in addition to the portableapps web site both with identical results.

In the mean time I have retrieved an older version of Rufus which still works.

It would be appreciated if anyone can verify my findings.

Thanks

http://rufus.akeo.ie/

https://portableapps.com/apps/utilities/rufus-portable

From the Rufus website:

IMPORTANT: Once again, as was the case with the 3.0 release, Windows Defender (with definition update 1.269.1834.0) is erroneously reporting that Rufus 3.1 may contain Trojan:Win32/Plutruption!ARXep. We have reported this to Microsoft yet again and we expect them to clear this false positive very soon. In the meantime, you are invited to re-download Rufus 3.1, as we have put a temporary new version online that shouldn't trigger the antivirus.
« Last Edit: June 23, 2018, 04:16:31 PM by Alan J. Raul »

rsutter

  • Administrator
  • Hero Member
  • *****
  • Posts: 93
  • I cut the board twice and it's still too short.
    • View Profile
Re: Rufus exe is infected - UPDATED
« Reply #1 on: June 23, 2018, 09:57:09 PM »
Hello All,
I downloaded Rufus 3.1 and scanned it with Windows Defender 1.269.1834.0.  No virus wasreported.
Ralph Sutter

Alan J. Raul

  • Administrator
  • Hero Member
  • *****
  • Posts: 67
    • View Profile
Re: Rufus exe is infected - UPDATED
« Reply #2 on: June 24, 2018, 10:58:34 PM »
Rufus has been updated.

Portable Apps has a new version out... Rufus Portable 3.1 Build 2
https://portableapps.com/news/2018-06-25--rufus-portable-3.1-build-2-released

The same thing happened with Acronis True Image 2018 exe a few months back being misidentified by Windows Defender as containing a trojan.