Page 1 of 1

Guest Addition Virus

Posted: 1. Apr 2024, 13:15
by bmaring
Clamav found: VBoxGuestAdditions_7.0.97-162509.iso: PUA.Win.Packer.Armadillo-98 FOUND

Re: Guest Addition Virus

Posted: 1. Apr 2024, 19:46
by FranceBB
That has to be an April 1st joke 'cause the guest additions aren't infected as long as you downloaded them directly from the Oracle's website.

Re: Guest Addition Virus

Posted: 7. Apr 2024, 17:01
by bmaring
Another detected: "VBoxGuestAdditions_7.0.97-162569.iso: PUA.Win.Packer.Armadillo-98 FOUND". Both of these downloaded from https://www.virtualbox.org/wiki/Testbuilds.

Not an April fools joke

Re: Guest Addition Virus

Posted: 7. Apr 2024, 19:18
by Martin
PUA = "Potentially Unwanted Application"
This is not a virus.
Which virus scanner did you use?
virustotal.com reports "clean" for all 92 scan engines.

Re: Guest Addition Virus

Posted: 7. Apr 2024, 20:55
by FranceBB
No problem after scanning it with ESET Endpoint Protection from my Fedora 40:
Screenshot from 2024-04-07 19-53-44.png
Screenshot from 2024-04-07 19-53-44.png (37.75 KiB) Viewed 2118 times
It has to be a false positive, no doubt about that.
I even installed the latest development snapshot and tested it out and it works like a charm, so... definitely a false positive, you have nothing to worry about. ;)
Also, if I may, ClamAV has been known for reporting lots of false positives.

Re: Guest Addition Virus

Posted: 9. Apr 2024, 14:47
by bmaring
OK. Thanks very much for the enlightenment.