Re: BitDefender false positive on 2 files?

"Alejandro S." <[email protected]> Fri, 10 Apr 2026 09:21:25 +0200
Newsgroups gmane.linux.debian.user.mirrors
Message-ID <CAMbxrVqfNpAx6wE99-RKSZ+mksKOMvMObYXnA6HaTOHO4-gaTQ@mail.gmail.com>
--000000000000c1ccf9064f15fbd7
Content-Type: text/plain; charset="UTF-8"
Content-Transfer-Encoding: quoted-printable

Have you checked what this packets are?

Atentamente,
  Alejandro Su=C3=A1rez

On Fri, 10 Apr 2026, 09:09 OSLUZ, <[email protected]> wrote:

> I ran the two files through VirusTotal.com, and it flagged them as
> malicious
>
> Regards
>
> ________________________________________
>
> Oficina de Software Libre
> Servicio de Inform=C3=A1tica y Comunicaciones
> Universidad de Zaragozahttps://osluz.unizar.es/
> ________________________________________
>
> El 10/4/26 a las 1:05, Santiago Roland escribi=C3=B3:
>
> Hi, i just run Bit Defender full scan on the mirror server and it detecte=
d 2 files as malware.
>
> /pool/main/p/pocsuite3/pocsuite3_1.9.6.orig.tar.gz
> Threat name: Trojan.GenericKD.79774915
>
>
> /pool/main/i/impacket/impacket_0.12.0.orig.tar.gz
> Threat name: Adware.GenericKD.61104868
>
> Could this be a false positive? Should i add an exclusion on these?
>
> Cheers
>
>
>

--000000000000c1ccf9064f15fbd7
Content-Type: text/html; charset="UTF-8"
Content-Transfer-Encoding: quoted-printable

<div dir=3D"auto"><div><div>Have you checked what this packets are?=C2=A0</=
div><div><br></div><div data-smartmail=3D"gmail_signature"><div dir=3D"ltr"=
><div>Atentamente,<br>=C2=A0 Alejandro Su=C3=A1rez</div></div></div><br><di=
v class=3D"gmail_quote gmail_quote_container"><div dir=3D"ltr" class=3D"gma=
il_attr">On Fri, 10 Apr 2026, 09:09 OSLUZ, &lt;<a href=3D"mailto:osluz@uniz=
ar.es">[email protected]</a>&gt; wrote:<br></div><blockquote class=3D"gmail_q=
uote" style=3D"margin:0px 0px 0px 0.8ex;border-left:1px solid rgb(204,204,2=
04);padding-left:1ex"><u></u>

 =20
   =20
 =20
  <div style=3D"padding-bottom:1px">
    <p>I ran the two files through VirusTotal.com, and it flagged them
      as malicious</p>
    <p>Regards</p>
    <pre cols=3D"72">________________________________________
=20
Oficina de Software Libre
Servicio de Inform=C3=A1tica y Comunicaciones
Universidad de Zaragoza
<a href=3D"https://osluz.unizar.es/" target=3D"_blank" rel=3D"noreferrer">h=
ttps://osluz.unizar.es/</a>
________________________________________</pre>
    <div>El 10/4/26 a las 1:05, Santiago Roland
      escribi=C3=B3:<br>
    </div>
    <blockquote type=3D"cite">
      <pre>Hi, i just run Bit Defender full scan on the mirror server and i=
t detected 2 files as malware.

/pool/main/p/pocsuite3/pocsuite3_1.9.6.orig.tar.gz
Threat name: Trojan.GenericKD.79774915


/pool/main/i/impacket/impacket_0.12.0.orig.tar.gz
Threat name: Adware.GenericKD.61104868

Could this be a false positive? Should i add an exclusion on these?

Cheers

</pre>
    </blockquote>
  </div>
  <u></u><u></u>

</blockquote></div></div></div>

--000000000000c1ccf9064f15fbd7--