FS#77420 - [wine] /usr/lib32/wine/i386-windows/dxdiag.exe reported as dangerous by clamscan and virustotal

Attached to Project: Community Packages
Opened by Emanuele Giacomelli (manuelino) - Tuesday, 07 February 2023, 11:36 GMT
Last edited by Toolybird (Toolybird) - Tuesday, 07 February 2023, 20:57 GMT
Task Type General Gripe
Category Security
Status Closed
Assigned To No-one
Architecture x86_64
Severity Medium
Priority Normal
Reported Version
Due in Version Undecided
Due Date Undecided
Percent Complete 100%
Votes 0
Private No

Details

Description:

When I do full system scans of my machine with clamscan, /usr/lib32/wine/i386-windows/dxdiag.exe is reported as malware:

/usr/lib32/wine/i386-windows/dxdiag.exe: Win.Malware.Ulise-9870721-0 FOUND

----------- SCAN SUMMARY -----------
Known viruses: 8651667
Engine version: 1.0.0
Scanned directories: 0
Scanned files: 1
Infected files: 1
Data scanned: 0.27 MB
Data read: 0.26 MB (ratio 1.06:1)
Time: 8.629 sec (0 m 8 s)
Start Date: 2023:02:07 12:14:19
End Date: 2023:02:07 12:14:28

Uploading the file to VirusTotal also triggers some scanners:

https://www.virustotal.com/gui/file/c172a4dda255bebcb117481162c555655733498be665fe45be987fb9a0b7c849

Additional info:
* Package is wine 8.1-1

Steps to reproduce:

* install wine
* run `sudo freshclam && clamscan /usr/lib32/wine/i386-windows/dxdiag.exe'
* grabbing the archive anew from a mirror and unpacking it gives the same results

This may well be a false positive, but better safe than sorry.
This task depends upon

Closed by  Toolybird (Toolybird)
Tuesday, 07 February 2023, 20:57 GMT
Reason for closing:  Duplicate
Additional comments about closing:   FS#67474   FS#69371   FS#71561 
Comment by Toolybird (Toolybird) - Tuesday, 07 February 2023, 20:57 GMT
Clearly a false positive. Please don't waste our time.

Loading...