Pages: [1]   Go Down
Author Topic: Strange Finding after testing Arduino Files on Virustotal  (Read 1038 times)
0 Members and 1 Guest are viewing this topic.
Offline Offline
Newbie
*
Karma: 0
Posts: 8
View Profile
 Bigger Bigger  Smaller Smaller  Reset Reset

Hi everybody,

today I had some files from Arduino 0023 checked on Virustotal (in terms of PC security I am sometimes a bit paranoid). When I checked the Files from the FTDI USB drivers folder, I got the following results:

For "FTDIUNIN.exe", ByteHero says " Trojan.Malware.Win32.xPack.m", and "FTLang.dll" and "FTBUSUI.dll" are recognized by Antiy-AVL as "Virus/Win32.CrazyPrier.gen"

I got the same with the Arduino 0022 package. I got both from the Google Code Page of the Arduino Project and the SHA-1 hashes were correct.

I already notified the Arduino team, but also wanted to ask you for your opinion. Is it probably a false positive (as only one of 40 scanners found something)?
Logged

Global Moderator
Netherlands
Online Online
Shannon Member
*****
Karma: 168
Posts: 12434
In theory there is no difference between theory and practice, however in practice there are many...
View Profile
 Bigger Bigger  Smaller Smaller  Reset Reset

Quote
Is it probably a false positive (as only one of 40 scanners found something)?
yes, but you never can be sure ...
 
BTW the damage done by none viral software is much underestimated so only checking for virusses might be not enough.

The real costs of damage is often "how long does it take to repair my PC" and "how much is lost" Making backups regularly (to another type of OS of course) is often equally important than using 40 scanners. I am wondering how your disks perform with al those scanners? don't they wear out?
Logged

Rob Tillaart

Nederlandse sectie - http://arduino.cc/forum/index.php/board,77.0.html -
(Please do not PM for private consultancy)

SF Bay Area (USA)
Offline Offline
Tesla Member
***
Karma: 106
Posts: 6373
Strongly opinionated, but not official!
View Profile
 Bigger Bigger  Smaller Smaller  Reset Reset

Do you get the same results on FTDI drivers downloaded direct from FTDI?
Logged

Offline Offline
Newbie
*
Karma: 0
Posts: 14
View Profile
 Bigger Bigger  Smaller Smaller  Reset Reset

I am wondering how your disks perform with al those scanners? don't they wear out?
It's not a local solution but a website where you can upload a file and have it checked by a series of antivirus engines.

http://www.virustotal.com/
Quote
Virustotal is a service that analyzes suspicious files and URLs and facilitates the quick detection of viruses, worms, trojans, and all kinds of malware detected by antivirus engines.
You can see an example of the results (and the engines used) here: http://www.virustotal.com/file-scan/report.html?id=a28dc7d8cdf6490dce9a7832929aaee95cfff0235d0f8e2487044c57901afc13-1296080680
« Last Edit: December 02, 2011, 03:25:00 pm by sjfaustino » Logged

Pages: [1]   Go Up
Jump to: