Jump to content
The Uniform Server Community

Trojan in Windows Binary (unpacker)


Recommended Posts


We've been trying to download the latest (XIV) version of the Windows Binary (14_0_0_ZeroXIV.exe) but we are getting reports of malware (Trojan:Win32/Casdet!rfn) when either downloading or launching the executable.  This is occurring on more than one AV (Sophos is one which reports the issue when you launch the unpacker)




Link to comment
Share on other sites

My apologies for the late reply on this thread. For the ease of use, we have included a couple of AutoIT scripts to make a couple of things easier for users and unfortunately some of the Antivirus programs treat any AutoIT scripts as bad. I have posted an announcement on the Announcements thread. And have submitted this to VirusTotal as well. 

In the next version, we will make these scripts an optional modular include so that the users may include this additional scripts based on their need.

Please be assured that there is no Virus or Malware or Trojan of any kind in UniformServer. All the source code is on our Github repo.


Link to comment
Share on other sites

  • 5 weeks later...

In the latest release of UniformServer Zero XIV 14.0.1, we have removed the need for the AutoIT script to hide the MySQL8 Console window. This version should no longer be flagged as a false positive malware.

Link to comment
Share on other sites

Join the conversation

You can post now and register later. If you have an account, sign in now to post with your account.

Reply to this topic...

×   Pasted as rich text.   Paste as plain text instead

  Only 75 emoji are allowed.

×   Your link has been automatically embedded.   Display as a link instead

×   Your previous content has been restored.   Clear editor

×   You cannot paste images directly. Upload or insert images from URL.


  • Create New...