Virus infected downloads for manage plugin?

Addons for Cacti and discussion about those addons

Moderators: Moderators, Developers

Post Reply
Author
Message
garex
Posts: 3
Joined: Mon Nov 12, 2012 4:08 am

Virus infected downloads for manage plugin?

#1 Post by garex » Mon Nov 12, 2012 4:14 am

Hi guys,

Not to create a panic, so please stay calm.

I tried to download the manage plugin today and I got the following from my virus scanner:

<!DOCTYPE html PUBLIC "-//W3C//DTD HTML 4.01//EN">
<html><head><meta http-equiv="Content-Type" content="text/html; charset=UTF-8"><style type="text/css">html,body{height:100%;padding:0;margin:0;}.oc{display:table;width:100%;height:100%;}.ic{display:table-cell;vertical-align:middle;height:100%;}div.msg{display:block;border:1px solid #30c;padding:0;width:500px;font-family:helvetica,sans-serif;margin:10px auto;}h1{font-weight:bold;color:#fff;font-size:14px;margin:0;padding:2px;text-align:center;background: #30c;}p{font-size:12px;margin:15px auto;width:75%;font-family:helvetica,sans-serif;text-align:left;}</style><title>High Security Alert!!</title></head><body><div class="oc"><div class="ic"><div class="msg"><h1>High Security Alert!!</h1><p>You are not permitted to download the file "manage-0.6.2.zip" because it is infected with the virus "Riskware/AntiZlob".<br /><br />URL = docs.cacti.net/_media/userplugin:manage-0.6.2.zip<br /><br />File quarantined as: .<br /><br /><a href="http://www.fortinet.com/ve?vn=Riskware% ... ody></html>

I assume this to be a false positive, am I right?

Yours,

Martin

User avatar
BSOD2600
Cacti Moderator
Posts: 12160
Joined: Sat May 08, 2004 12:44 pm
Location: USA

Re: Virus infected downloads?

#2 Post by BSOD2600 » Tue Nov 13, 2012 2:39 pm

I'm going to say false positive.

Looking over the virustotal scan results, several AV dont like that it includes Sysinternals pskill. This is a valid tool, see http://technet.microsoft.com/en-us/sysi ... s/bb896649

User avatar
Linegod
Developer
Posts: 1630
Joined: Thu Feb 20, 2003 10:16 am
Location: Canada
Contact:

Re: Virus infected downloads for manage plugin?

#3 Post by Linegod » Tue Nov 13, 2012 4:59 pm

I concur.
--
Live fast, die young
You're sucking up my bandwidth.

J.P. Pasnak,CD
CCNA, LPIC-1
http://www.warpedsystems.sk.ca

Post Reply