v0.18.9:collector 併進同一支執行檔——磁碟上不再攤出第二支 exe

leo 08-06 裁決:「不要兩支,寫成一支檔案」。

## 為什麼
v0.18.7-8 的「單一 exe」其實是**一支包著另一支**:collector.exe 被 go:embed
進 Arcrun.exe,執行時攤到 ~/.arcrun-rag/bin/ 再跑。
那正是防毒軟體眼中的 dropper 特徵 —— 封測者實撞
`Trojan:Win32/Sabsik.FL.A!ml`,檔案當場被隔離、自動刪除。

⚠️ 誠實界定:`!ml` 結尾=**機器學習判定**,Sabsik 是最常見的通用誤判家族,
   主因是「未簽章+下載次數少」,**不是**特別指向 dropper 行為。
   所以本次改動**不保證**解除誤判——真正的解是上架 MS Store(微軟簽章)。
   但「執行時把第二支 PE 寫到磁碟再執行」本來就該拿掉,這是對的方向且順手變小。

## 怎麼做
- `collector/` 39 個檔 `package main` → `package collector`,`main()` → 匯出的 `Run(args) int`
- 新增 `collector/cmd/collector/`(薄殼 CLI,讓單獨跑 collector 這條路仍可用)
- App 直接 import 該套件;`main()` 第一件事就判 `--collector`,是的話走 `collector.Run` 不碰 GUI
- `supervisor` 加 `ArgPrefix`,App 把 `BinPath` 指向 `os.Executable()` 自己
- 刪掉 `bundled_collector_{windows,other}.go`(embed + 攤檔那套)
- 三支打包腳本不再編/複製第二支;版本注入同時打到兩個 package
- build-win.sh 的機械閘改成**直接問它**:`--collector --version` 回得出版本才放行
  (舊閘是比大小,只能證明「有 embed」,證明不了「分派是對的」)

## 驗(真機實跑)
· `.app/Contents/MacOS/` 只有 **一個** 執行檔(原本兩個)
· 跑起來兩個行程是**同一個 exe**:
    …/MacOS/arcrun-app
    …/MacOS/arcrun-app --collector direct --config …
· `~/.arcrun-rag/bin` **不存在**(沒有任何東西被攤出來)
· 端到端:丟檔進看守資料夾 → collector.log `"status":"ingested","http_status":200`
· `lsappinfo` 仍是 `type="UIElement"`、`Version="0.18.9"`
· collector 39 檔測試全過;app 測試過;go vet 全綠;mac + windows 交叉編譯皆過
· 單檔 26MB → 22MB(不再夾帶第二份完整程式)
This commit is contained in:
2026-08-06 16:00:47 +08:00
parent f4eb3c9fa1
commit 4d3a6a09a6
50 changed files with 196 additions and 193 deletions
+13 -4
View File
@@ -50,8 +50,8 @@ type Status struct {
// round 對應 collector direct 每輪印到 stdout 的 JSON(見 direct.go runOne)。
type round struct {
At string `json:"at"`
Phase string `json:"phase"` // t191"start"(開工)/"done"(跑完);舊版沒有此欄=空
At string `json:"at"`
Phase string `json:"phase"` // t191"start"(開工)/"done"(跑完);舊版沒有此欄=空
Folder string `json:"folder"`
Results []json.RawMessage `json:"results"`
@@ -101,7 +101,12 @@ func (l *rotatingLog) Write(p []byte) (int, error) {
// Supervisor 看守單一 collector direct 行程。
type Supervisor struct {
BinPath string // collector 執行檔路徑(托盤 app bundle 內)
BinPath string // collector 執行檔路徑(托盤 app bundle 內)
// ArgPrefix 插在 "direct" 之前的參數。
// 🔴 2026-08-06:桌面 App 不再內嵌第二支 .exe 再攤到磁碟(Defender 眼中的 dropper
// 特徵),改成**同一支執行檔**用 `--collector` 換身分 ⇒ BinPath 指向自己、
// ArgPrefix = ["--collector"]。leo 裁決:「不要兩支,寫成一支檔案」。
ArgPrefix []string
ConfigPath string // direct config.json 路徑
Backoff time.Duration // 非預期退出後的重起間隔(0=預設 3s)
LogPath string // 子行程輸出落地檔(空=~/.arcrun-rag/collector.logt14
@@ -257,7 +262,11 @@ func (s *Supervisor) loop(ctx context.Context) {
// runOnce 跑一次 collector direct 行程,串流其 stdout JSON 更新狀態,回傳退出原因。
func (s *Supervisor) runOnce(ctx context.Context) error {
cmd := exec.CommandContext(ctx, s.BinPath, "direct", "--config", s.ConfigPath)
// ArgPrefix 讓呼叫端把「同一支執行檔換個身分跑」的參數插在最前面
// (桌面 App 用 `Arcrun.exe --collector direct --config …` 跑自己)。
// 空的時候行為與過去完全一樣(獨立的 collector 執行檔)。
args := append(append([]string{}, s.ArgPrefix...), "direct", "--config", s.ConfigPath)
cmd := exec.CommandContext(ctx, s.BinPath, args...)
// t75Windows 上不要讓 collector 彈出 console 視窗(每輪閃一次,使用者會以為中毒)。
// 非 Windows 平台為 no-op,見 hidewindow_*.go。
hideChildWindow(cmd)