Ad Widget

Collapse

Trojan: Win32/Varpes.M!cl in Zabbix 3.0 LTS pre-compiled agents for Windows

Collapse
X
 
  • Time
  • Show
Clear All
new posts
  • jruizjimenez
    Junior Member
    • Jul 2012
    • 10

    #1

    Trojan: Win32/Varpes.M!cl in Zabbix 3.0 LTS pre-compiled agents for Windows

    Hi

    I am downloading Windows (All) pre-compiled agent for release 3.0 LTS from http://www.zabbix.com/download.php

    URL of the file is http://www.zabbix.com/downloads/3.0...._3.0.0.win.zip

    Browser: Chrome 64bits Versión 50.0.2661.57 beta-m (64-bit)
    OS: Windows 7 64 Bits

    As soon as the file is downloaded, the "Microsoft Security Essentials" says that the file has a Virus and deletes the file.

    Microsoft Security Essentials:
    Versión de cliente antimalware: 4.9.218.0
    Versión del motor: 1.1.12603.0
    Definición de antivirus: 1.217.613.0
    Definición de antispyware: 1.217.613.0
    Versión de motor del Sistema de inspección de red: 2.1.11804.0
    Versión de definición de Sistema de inspección de red: 115.44.0.0

    Virus: trojan:win32/Varpes.M (see screen shoot attached)

    I read the same problem in post https://www.zabbix.com/forum/showthread.php?t=53100

    Virustotal says it is safe.

    Is "Microsoft Security Essentials" wrong?

    Thanks
    Last edited by jruizjimenez; 14-10-2016, 12:08.
  • Monitor
    Junior Member
    • Apr 2016
    • 1

    #2
    No reply on this Thread?
    I am new to Zabbix and the detection of a named trojan scares me a bit.
    Maybe you can give some feedback on this from official site?

    Thanks!

    Comment

    • andris
      Zabbix developer
      • Feb 2012
      • 228

      #3
      2 online scanners found nothing:

      Comment

      • jlrd
        Junior Member
        • Oct 2012
        • 11

        #4
        I've not seen this problem on my end. I'm running Windows Defender, latest definition is 1.217.1197.0 and it doesn't detect or flag it.

        It's possible that the definitions that you had at the time had a bad a definition that cast too broad a net on some perceived signature that the the Zabbix agent binary and this virus shared.

        I've never had problems with the compiled binaries from zabbix.com.

        Comment

        • Atsushi
          Senior Member
          • Aug 2013
          • 2028

          #5
          I checked by McAfee Virus Scan Enterprise 8.8.0(engine 5800.7501, DAT 8133.0000).
          But I couldn't find virus.

          Comment

          • paredeso
            Junior Member
            • Apr 2016
            • 1

            #6
            we are running "Microsoft Security Essentials"

            I saw the same message from our antivirus.
            Virus definition 1.217.1131.0

            Comment

            Working...