Huge thanks to our Platinum Members Endace and LiveAction,
and our Silver Member Veeam, for supporting the Wireshark Foundation and project.

Ethereal-users: [Ethereal-users] Backdoor program?

Note: This archive is from the project's previous web site, ethereal.com. This list is no longer active.

From: av@xxxxxxxxxxxxxx (Martin Gordon)
Date: Tue, 3 May 2005 12:22 +0100 (BST)
Frisk flags the ethereal download as infected - is this true, please?

All the best - *martin*

-------------------------------  NORMAL SCAN - REPORT 
-------------------------------

F-PROT ANTIVIRUS
Program version: 3.16b
Engine version: 3.16.6

VIRUS SIGNATURE FILES
MACRO.DEF created 5/2/2005
SIGN.DEF created 5/2/2005
SIGN2.DEF created 5/2/2005

StartTime: 05.03.2005  09:30

Scan settings:

Path to scan:
<Hard drive> C:\

Which files:
All files (Ignore extensions).
Scan inside archives.
Scan inside compressed executables
Scan inside subfolders.

Action if malware is found:
Disinfect.
(confirm action)How to scan:
Use heuristics (always in normal mode).

C:\www\download\000\ethereal-setup-0.10.10.exe  is a security risk 
named W32/Haxdoor.AP@bd
The scanning ended successfully, with infected or suspicious object found

Results of virus scanning:

MBRs scanned..........: 1
Boot sectors scanned..: 1
Files total...........: 106854
Scanned objects.......: 112448
Infected objects......: 1
Suspicious objects....: 1
Deleted objects.......: 0
Disinfected objects...: 0
Renamed objects.......: 0
Moved objects.........: 0

Endtime: 05.03.2005  10:17

Scantime: 45:43 min.
------------------------------- END OF REPORT 
------------------------------