• Resolved sebadler

    (@sebadler)


    We are getting a storm of virus warnings from our server scanners claiming that a binary is infected in your latest package. this is the cwebp-linux file.

    Isolated the file does not bring anything up when tested on various scan engines. But running and using the plugin on a live site, triggers warnings from cache file system and the binary it self.

    Please double check we got some 300 sites behaving strangely, we are removing this product until this is settled.

    EWWW-Image-Optimizer-Version 3.1.1
    ELF.9EAF670BB2.agent.tht.talos
    Detection Name: W32.E5CE40FA67-100.SBX.VIOC
    Scanner used: IMMUNET

    This seems to be linked or have similarities to this incident:
    https://www.qualys.com/research/sans-at-risk/2016/week-18/

    • This topic was modified 8 years, 5 months ago by Jan Dembowski.
Viewing 1 replies (of 1 total)
Viewing 1 replies (of 1 total)
  • The topic ‘warning virus in package do not download’ is closed to new replies.