Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

ClamAV detects malicious Win.Packed.Jalapeno-10036400-0 signature #469

Open
nmschulte-aviture opened this issue Sep 30, 2024 · 4 comments
Open

Comments

@nmschulte-aviture
Copy link

https://www.virustotal.com/gui/file/0b882a5736399df5f47fbb75785bb2bdfd43ca243c29031adb97854be9528598

MD5
e390de07942c035b20e62d7e9194b04f

SHA-1
b40e1890f064e7dba235158424b4e61de03f2c19

File Version
4.2.8.1168

@nmschulte-aviture nmschulte-aviture changed the title ClamAV detects maliciouos Win.Packed.Jalapeno-10036400-0 signature ClamAV detects malicious Win.Packed.Jalapeno-10036400-0 signature Sep 30, 2024
@lilith
Copy link
Member

lilith commented Oct 1, 2024

I'm guessing that some malicious program uses ImageResizer and it got flagged as part of the problem?

Is this the same the digest of the file on NuGet?

@nmschulte-aviture
Copy link
Author

nmschulte-aviture commented Oct 1, 2024

I'm guessing that some malicious program uses ImageResizer and it got flagged as part of the problem?

This is not the case, at least in my understanding.

Is this the same the digest of the file on NuGet?

Yes, this is imageresizer.4.2.8.nupkg/lib/net45/ImageResizer.dll (https://www.nuget.org/api/v2/package/ImageResizer/4.2.8).

sha256sum imageresizer.4.2.8.nupkg
7dba7a294cd3511ac07e88cbb55e11b7460db57c309b9b712433c67dbbced1fa imageresizer.4.2.8.nupkg

@lilith
Copy link
Member

lilith commented Oct 1, 2024 via email

@nmschulte-aviture
Copy link
Author

false positives can be reported to ClamAV here: https://www.clamav.net/reports/fp

note that VirusTotal is also reporting that "Google" detects this as well

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

No branches or pull requests

2 participants