Re: BitDefender false positive on 2 files?

OSLUZ <[email protected]> Fri, 10 Apr 2026 08:52:57 +0200
Newsgroups gmane.linux.debian.user.mirrors
Message-ID <[email protected]>
This is a multi-part message in MIME format.
--------------XutmXz7O81ffqv06cHiRqjQv
Content-Type: text/plain; charset=UTF-8; format=flowed
Content-Transfer-Encoding: 8bit

I ran the two files through VirusTotal.com, and it flagged them as malicious

Regards

________________________________________
  
Oficina de Software Libre
Servicio de Informática y Comunicaciones
Universidad de Zaragoza
https://osluz.unizar.es/
________________________________________

El 10/4/26 a las 1:05, Santiago Roland escribió:
> Hi, i just run Bit Defender full scan on the mirror server and it detected 2 files as malware.
>
> /pool/main/p/pocsuite3/pocsuite3_1.9.6.orig.tar.gz
> Threat name: Trojan.GenericKD.79774915
>
>
> /pool/main/i/impacket/impacket_0.12.0.orig.tar.gz
> Threat name: Adware.GenericKD.61104868
>
> Could this be a false positive? Should i add an exclusion on these?
>
> Cheers
>
--------------XutmXz7O81ffqv06cHiRqjQv
Content-Type: text/html; charset=UTF-8
Content-Transfer-Encoding: 8bit

<!DOCTYPE html>
<html data-lt-installed="true">
  <head>
    <meta http-equiv="Content-Type" content="text/html; charset=UTF-8">
  </head>
  <body style="padding-bottom: 1px;">
    <p>I ran the two files through VirusTotal.com, and it flagged them
      as malicious</p>
    <p>Regards</p>
    <pre class="moz-signature" cols="72">________________________________________
 
Oficina de Software Libre
Servicio de Informática y Comunicaciones
Universidad de Zaragoza
<a class="moz-txt-link-freetext" href="https://osluz.unizar.es/">https://osluz.unizar.es/</a>
________________________________________</pre>
    <div class="moz-cite-prefix">El 10/4/26 a las 1:05, Santiago Roland
      escribió:<br>
    </div>
    <blockquote type="cite"
      cite="mid:[email protected]">
      <pre wrap="" class="moz-quote-pre">Hi, i just run Bit Defender full scan on the mirror server and it detected 2 files as malware.

/pool/main/p/pocsuite3/pocsuite3_1.9.6.orig.tar.gz
Threat name: Trojan.GenericKD.79774915


/pool/main/i/impacket/impacket_0.12.0.orig.tar.gz
Threat name: Adware.GenericKD.61104868

Could this be a false positive? Should i add an exclusion on these?

Cheers

</pre>
    </blockquote>
  </body>
  <lt-container></lt-container>
</html>

--------------XutmXz7O81ffqv06cHiRqjQv--