lilypond-user
[Top][All Lists]
Advanced

[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

Re: LilyPond 2.19.52 identified as malware


From: Hans Aikema
Subject: Re: LilyPond 2.19.52 identified as malware
Date: Thu, 15 Dec 2016 01:30:45 +0100

> On 14 Dec 2016, at 23:44, Peter Toye <address@hidden> wrote:
> 
> Trying to download and install LP 2.19.52. It seemed to install OK, in the 
> sense that a load of files went into the directory.
> 
> But when I tried to install it into Frescobaldi my anti-malware program 
> (Kaspersky) came up with a load or error messages and deleted many of the 
> files in the directory. A selection of the error messages is below.
> 
> Has the repository been hacked?
> 
> Regards,
> 
> Peter
> mailto:address@hidden
> www.ptoye.com
> 
> 14.12.2016 22.04.45        File deleted when rolling back actions of 
> malicious program        c:\program files 
> (x86)\lilypond2.19\usr\bin\_codecs_iso2022.dll        Object: c:\program 
> files (x86)\lilypond2.19\usr\bin\_codecs_iso2022.dll        Application name: 
> D:\PC Software\LilyPond\lilypond-2.19.52-1.mingw.exe        Application path: 
> d:\pc software\lilypond\lilypond-2.19.52-1.mingw.exe        Time: 14/12/2016 
> 22:04
> 14.12.2016 22.04.45        File deleted when rolling back actions of 
> malicious program        c:\program files 
> (x86)\lilypond2.19\usr\bin\_codecs_cn.dll        Object: c:\program files 
> (x86)\lilypond2.19\usr\bin\_codecs_cn.dll        Application name: D:\PC 
> Software\LilyPond\lilypond-2.19.52-1.mingw.exe        Application path: d:\pc 
> software\lilypond\lilypond-2.19.52-1.mingw.exe        Time: 14/12/2016 22:04
> 14.12.2016 22.04.45        File deleted when rolling back actions of 
> malicious program        c:\program files 
> (x86)\lilypond2.19\usr\bin\_bisect.dll        Object: c:\program files 
> (x86)\lilypond2.19\usr\bin\_bisect.dll        Application name: D:\PC 
> Software\LilyPond\lilypond-2.19.52-1.mingw.exe        Application path: d:\pc 
> software\lilypond\lilypond-2.19.52-1.mingw.exe        Time: 14/12/2016 22:04
> 14.12.2016 22.04.45        File deleted when rolling back actions of 
> malicious program        c:\program files (x86)\lilypond2.19\uninstall.exe    
>     Object: c:\program files (x86)\lilypond2.19\uninstall.exe        
> Application name: D:\PC Software\LilyPond\lilypond-2.19.52-1.mingw.exe        
> Application path: d:\pc software\lilypond\lilypond-2.19.52-1.mingw.exe        
> Time: 14/12/2016 22:04
> 14.12.2016 22.01.44        Malicious program deleted        
> PDM:Trojan.Win32.Generic        Application name: D:\PC 
> Software\LilyPond\lilypond-2.19.52-1.mingw.exe        Application path: d:\pc 
> software\lilypond\lilypond-2.19.52-1.mingw.exe        Time: 14/12/2016 22:01
> 14.12.2016 22.00.33        Malicious program terminated        
> PDM:Trojan.Win32.Generic        Application name: D:\PC 
> Software\LilyPond\lilypond-2.19.52-1.mingw.exe        Application path: D:\PC 
> Software\LilyPond\lilypond-2.19.52-1.mingw.exe        Time: 14/12/2016 22:00
> 14.12.2016 22.00.32        Malicious program detected        
> PDM:Trojan.Win32.Generic        Application name: D:\PC 
> Software\LilyPond\lilypond-2.19.52-1.mingw.exe        Application path: d:\pc 
> software\lilypond\lilypond-2.19.52-1.mingw.exe        Time: 14/12/2016 22:00
> 14.12.2016 21.57.56        Application added to the Low Restricted group      
>   D:\PC Software\LilyPond\lilypond-2.19.52-1.mingw.exe        Application: 
> D:\PC Software\LilyPond\lilypond-2.19.52-1.mingw.exe        Reason: according 
> to calculated rating        Application path: D:\PC 
> Software\LilyPond\lilypond-2.19.52-1.mingw.exe        Time: 14/12/2016 21:57
> _______________________________________________
> lilypond-user mailing list
> address@hidden
> https://lists.gnu.org/mailman/listinfo/lilypond-user
I have just downloaded LP 2.19.52 windows binary and checked it with Kaspersky 
Online Virusscan…. result on the web: File is safe. So it might be best to 
check if your Kaspersky is fully updated with the latest definitions. Sounds 
like a false-positive on your system


reply via email to

[Prev in Thread] Current Thread [Next in Thread]