X-Recipient: archive-cygwin AT delorie DOT com X-SWARE-Spam-Status: No, hits=-1.9 required=5.0 tests=BAYES_00,FREEMAIL_FROM,RCVD_IN_DNSWL_NONE,T_RP_MATCHES_RCVD X-Spam-Check-By: sourceware.org Message-ID: From: Tom Szczesny To: Subject: Possible security problem -- in Python module Date: Mon, 27 Feb 2012 00:01:24 -0500 Content-Type: text/plain; charset="iso-8859-1" MIME-Version: 1.0 Mailing-List: contact cygwin-help AT cygwin DOT com; run by ezmlm List-Id: List-Subscribe: List-Archive: List-Post: List-Help: , Sender: cygwin-owner AT cygwin DOT com Mail-Followup-To: cygwin AT cygwin DOT com Delivered-To: mailing list cygwin AT cygwin DOT com Content-Transfer-Encoding: 8bit X-MIME-Autoconverted: from quoted-printable to 8bit by delorie.com id q1R5T86x013846 Sat 2012-02-25 17:39:23.0618 Begin passive write scan (330 file(s)) Sat 2012-02-25 17:39:26.0660 Begin passive write scan (7 file(s)) Sat 2012-02-25 17:39:27.0425 Infection detected: c:\cygwin\lib\python2.6\distutils\command\wininst-9.0.exe [MD5: 0563061137E462BF38717F90488C4504] [3/00080000] [Trojan.Dropper] Sat 2012-02-25 17:39:27.0425 File blocked in realtime: c:\cygwin\lib\python2.6\distutils\command\wininst-9.0.exe [MD5: 0563061137E462BF38717F90488C4504, Size: 196096 bytes] [524288/00000003] [Trojan.Dropper] Sat 2012-02-25 17:39:27.0425 Determination flags modified: MD5: 0563061137E462BF38717F90488C4504, Size: 196096 bytes, Flags: 00000020 Sat 2012-02-25 17:39:27.0581 Performing cleanup entry: 1 Sat 2012-02-25 17:39:27.0659 End passive write scan (7 file(s)) Sat 2012-02-25 17:39:29.0921 End passive write scan (330 file(s)) This was detected using "Webroot SecureAnywhere -- Complete". This may be a false possitive, but I thought I should report it. -- Problem reports: http://cygwin.com/problems.html FAQ: http://cygwin.com/faq/ Documentation: http://cygwin.com/docs.html Unsubscribe info: http://cygwin.com/ml/#unsubscribe-simple