Lexia/PugPlanet Sotware Virus Warning....

This is the place for posts that don't fit into any other category.

Moderator: RichardW

User avatar
CitroJim
A very naughty boy
Posts: 49952
Joined: 30 Apr 2005, 23:33
x 6295

Lexia/PugPlanet Sotware Virus Warning....

Post by CitroJim »

Following a routine AntiVirus scan of my system this evening I found the following reportedly infected file inside my copy of the Lexia/Peuegot Planet software as supplied with the kit I bought a few years ago now...

Details from the AV Scan report:
/Lexia3/PP2000/PP2000_09B_22.14-New/DCS/tools/ENDINST.EXE: Win.Trojan.Menti-2458 FOUND
This is from a Linux system. The scanner was ClamAV with the very latest definitions.

Information on the virus is scant but it appears to be a back-door.

For peace of mind I recommend a scan with an up-to-date virus scanner of any machines you may have with the Lexia/PP software installed.

I hope/pray this is a false positive generated by ClamAV but better to be safe than sorry...
Jim

Runner, cyclist, time triallist, duathlete, Citroen AX fan and the CCC Citroenian 'From A to Z' Columnist...
Trainman
(Donor 2018)
Posts: 2591
Joined: 21 Aug 2009, 11:58
x 43

Re: Lexia/PugPlanet Sotware Virus Warning....

Post by Trainman »

Thanks Jim,

Ill run a scan tomorrow on XP using McAfee and see what that comes up with....
Steve

2008 C6 2.7 Exclusive in Mativoire Beige with Vitali Leather.
2019 C5 1.6 Aircross Flair+ in Platinum Grey with Claudia Rimini Leather

http://c6owners.org/index.php
citronut
Posts: 10937
Joined: 29 Apr 2005, 00:46
x 93

Re: Lexia/PugPlanet Sotware Virus Warning....

Post by citronut »

the copmlicator/laptop i run my DIS-LAXIA on is never allowed anywhere near the internet, so this should be safe ???????
Regards, malcolm.

current ride a BX 1.7 TZD estate
1986 MK1 BX 1.9na D Auto(in Mothman Andy's stable )
layed up roppy 1.9TD XANT estate, now gone to meet her maker
purple and lilac metalic 2CV(VIOLET)registered to her in doors
1972 DS special been layed up aprox 31 years
Hell Razor5543
Donor 2023
Posts: 13764
Joined: 01 Apr 2012, 09:47
x 3015

Re: Lexia/PugPlanet Sotware Virus Warning....

Post by Hell Razor5543 »

Not necessarily, as the OP suggests the virus was found in an original file supplied with the equipment. I am currently running a full scan of my netbook that I use my Lexia on. I am using MSE, and there was an update this morning.

Jim, where did you get your kit from? I got mine from Easy Diagnostics.
James
ex BX 1.9
ex Xantia 2.0HDi SX
ex Xantia 2.0HDi LX
Ex C5 2.0HDi VTR
Ex C5 2.0HDi VTR

C5 2.2HDi VTX+
Yes, I am paranoid, but am I paranoid ENOUGH?
Out amongst the stars, looking for a world of my own!
User avatar
CitroJim
A very naughty boy
Posts: 49952
Joined: 30 Apr 2005, 23:33
x 6295

Re: Lexia/PugPlanet Sotware Virus Warning....

Post by CitroJim »

Hell Razor5543 wrote: Jim, where did you get your kit from? I got mine from Easy Diagnostics.
It was such a long time ago now I really can't recall or indeed still have the records. My software came on a DVD-R with the words 'Lexia-3 hand-written on it!

Not professional at all but it has always been fine.

One thing that's just occurred to me is I took an ISO of my Lexia disk and used it to burn a few copies which have been sent to various members. I'm getting in touch with at least one I know..

Malcolm, if your Lexia machine never, ever ses the Internet and cannot - like my Lexia Laptop - then you have no worries but if it ever does thenm you may be vulnerable so do get it scanned.
Jim

Runner, cyclist, time triallist, duathlete, Citroen AX fan and the CCC Citroenian 'From A to Z' Columnist...
Hell Razor5543
Donor 2023
Posts: 13764
Joined: 01 Apr 2012, 09:47
x 3015

Re: Lexia/PugPlanet Sotware Virus Warning....

Post by Hell Razor5543 »

I have also sent a disk of to another forum member, and have let them know (with a link to this post) of this issue.

Is the suspect file on the installation disks?
James
ex BX 1.9
ex Xantia 2.0HDi SX
ex Xantia 2.0HDi LX
Ex C5 2.0HDi VTR
Ex C5 2.0HDi VTR

C5 2.2HDi VTX+
Yes, I am paranoid, but am I paranoid ENOUGH?
Out amongst the stars, looking for a world of my own!
User avatar
CitroJim
A very naughty boy
Posts: 49952
Joined: 30 Apr 2005, 23:33
x 6295

Re: Lexia/PugPlanet Sotware Virus Warning....

Post by CitroJim »

Yes, it is on the installation disk James, in the file noted in the first post of this topic.

Sent from my Lumia 900 using Tapatalk
Jim

Runner, cyclist, time triallist, duathlete, Citroen AX fan and the CCC Citroenian 'From A to Z' Columnist...
Hell Razor5543
Donor 2023
Posts: 13764
Joined: 01 Apr 2012, 09:47
x 3015

Re: Lexia/PugPlanet Sotware Virus Warning....

Post by Hell Razor5543 »

Well, 8 hours 20 minutes later my netbook says it is clean (well, Microsoft Security Essentials says it is). That would suggest the disks are as well. Still, better check them.
James
ex BX 1.9
ex Xantia 2.0HDi SX
ex Xantia 2.0HDi LX
Ex C5 2.0HDi VTR
Ex C5 2.0HDi VTR

C5 2.2HDi VTX+
Yes, I am paranoid, but am I paranoid ENOUGH?
Out amongst the stars, looking for a world of my own!
MikeT
Posts: 4809
Joined: 11 Jun 2007, 16:17
x 232

Re: Lexia/PugPlanet Sotware Virus Warning....

Post by MikeT »

From what I can tell, ENDINST.EXE is a Windows (update?) program relating to handling errors that can otherwise ruin your day when installing software. It's unremarkable that it should be flagged on a Linux box as suspicious.(You should see AVG go mental when installing Diagbox on a Windows machine!). But the sensible thing to do to allay any fears would be to run the software in a sandbox and determine if any "backdoor" activity is malicious (or, as I suspect, just part of the app).
User avatar
CitroJim
A very naughty boy
Posts: 49952
Joined: 30 Apr 2005, 23:33
x 6295

Re: Lexia/PugPlanet Sotware Virus Warning....

Post by CitroJim »

Thanks for the additional information Mike..

So will it install with that file absent?
Jim

Runner, cyclist, time triallist, duathlete, Citroen AX fan and the CCC Citroenian 'From A to Z' Columnist...
Hell Razor5543
Donor 2023
Posts: 13764
Joined: 01 Apr 2012, 09:47
x 3015

Re: Lexia/PugPlanet Sotware Virus Warning....

Post by Hell Razor5543 »

Well, according to MSE my netbook and both disks supplied are clean.
James
ex BX 1.9
ex Xantia 2.0HDi SX
ex Xantia 2.0HDi LX
Ex C5 2.0HDi VTR
Ex C5 2.0HDi VTR

C5 2.2HDi VTX+
Yes, I am paranoid, but am I paranoid ENOUGH?
Out amongst the stars, looking for a world of my own!
User avatar
CitroJim
A very naughty boy
Posts: 49952
Joined: 30 Apr 2005, 23:33
x 6295

Re: Lexia/PugPlanet Sotware Virus Warning....

Post by CitroJim »

Hell Razor5543 wrote:Well, according to MSE my netbook and both disks supplied are clean.

Good :-D That's what I'm hoping to hear James. I have my suspicions it's just the quite old software I have an it may be a false positive from ClamAV. I'll be interested to hear if others find the same.

Thanks James :-D
Jim

Runner, cyclist, time triallist, duathlete, Citroen AX fan and the CCC Citroenian 'From A to Z' Columnist...
User avatar
DickieG
Monaco's youngest playboy
Posts: 4877
Joined: 25 Nov 2006, 10:15
x 38

Re: Lexia/PugPlanet Sotware Virus Warning....

Post by DickieG »

CitroJim wrote:
Hell Razor5543 wrote: Jim, where did you get your kit from? I got mine from Easy Diagnostics.
It was such a long time ago now I really can't recall or indeed still have the records.
If it's your original Lexia 3 running on a laptop then I think it'll be the one of the ones we bought from that Polish guy living in Southampton.
13 Ram 1500 Hemi
14 BMW 535D Tourer
19 BMW i3s
06 C3 Desire 1.4
72 DS 21 EFi Pallas BVH
User avatar
CitroJim
A very naughty boy
Posts: 49952
Joined: 30 Apr 2005, 23:33
x 6295

Re: Lexia/PugPlanet Sotware Virus Warning....

Post by CitroJim »

DickieG wrote: If it's your original Lexia 3 running on a laptop then I think it'll be the one of the ones we bought from that Polish guy living in Southampton.
Yes it is Richard, that's the one...

Do you still have the original software that came with yours? Perhaps if you do you could scan it and see how yours looks...
Jim

Runner, cyclist, time triallist, duathlete, Citroen AX fan and the CCC Citroenian 'From A to Z' Columnist...
Trainman
(Donor 2018)
Posts: 2591
Joined: 21 Aug 2009, 11:58
x 43

Re: Lexia/PugPlanet Sotware Virus Warning....

Post by Trainman »

I've not had chance to look today, it's on my to do list for tomorrow along with a couple of other jobs.
Steve

2008 C6 2.7 Exclusive in Mativoire Beige with Vitali Leather.
2019 C5 1.6 Aircross Flair+ in Platinum Grey with Claudia Rimini Leather

http://c6owners.org/index.php