Lexia/PugPlanet Sotware Virus Warning....

This is the place for posts that don't fit into any other category.

Moderator: RichardW

User avatar
CitroJim
A very naughty boy
Posts: 41564
Joined: 30 Apr 2005, 23:33
x 1033

Lexia/PugPlanet Sotware Virus Warning....

Post by CitroJim » 06 Nov 2014, 22:03

Following a routine AntiVirus scan of my system this evening I found the following reportedly infected file inside my copy of the Lexia/Peuegot Planet software as supplied with the kit I bought a few years ago now...

Details from the AV Scan report:
/Lexia3/PP2000/PP2000_09B_22.14-New/DCS/tools/ENDINST.EXE: Win.Trojan.Menti-2458 FOUND
This is from a Linux system. The scanner was ClamAV with the very latest definitions.

Information on the virus is scant but it appears to be a back-door.

For peace of mind I recommend a scan with an up-to-date virus scanner of any machines you may have with the Lexia/PP software installed.

I hope/pray this is a false positive generated by ClamAV but better to be safe than sorry...

Trainman
donor 2018
Posts: 2578
Joined: 21 Aug 2009, 11:58
x 10

Re: Lexia/PugPlanet Sotware Virus Warning....

Post by Trainman » 07 Nov 2014, 00:07

Thanks Jim,

Ill run a scan tomorrow on XP using McAfee and see what that comes up with....

citronut
Posts: 10938
Joined: 29 Apr 2005, 00:46
x 3

Re: Lexia/PugPlanet Sotware Virus Warning....

Post by citronut » 07 Nov 2014, 09:13

the copmlicator/laptop i run my DIS-LAXIA on is never allowed anywhere near the internet, so this should be safe ???????

Hell Razor5543
NOT Alistair or Simon
Posts: 9413
Joined: 01 Apr 2012, 09:47
x 648

Re: Lexia/PugPlanet Sotware Virus Warning....

Post by Hell Razor5543 » 07 Nov 2014, 09:19

Not necessarily, as the OP suggests the virus was found in an original file supplied with the equipment. I am currently running a full scan of my netbook that I use my Lexia on. I am using MSE, and there was an update this morning.

Jim, where did you get your kit from? I got mine from Easy Diagnostics.

User avatar
CitroJim
A very naughty boy
Posts: 41564
Joined: 30 Apr 2005, 23:33
x 1033

Re: Lexia/PugPlanet Sotware Virus Warning....

Post by CitroJim » 07 Nov 2014, 10:52

Hell Razor5543 wrote: Jim, where did you get your kit from? I got mine from Easy Diagnostics.
It was such a long time ago now I really can't recall or indeed still have the records. My software came on a DVD-R with the words 'Lexia-3 hand-written on it!

Not professional at all but it has always been fine.

One thing that's just occurred to me is I took an ISO of my Lexia disk and used it to burn a few copies which have been sent to various members. I'm getting in touch with at least one I know..

Malcolm, if your Lexia machine never, ever ses the Internet and cannot - like my Lexia Laptop - then you have no worries but if it ever does thenm you may be vulnerable so do get it scanned.

Hell Razor5543
NOT Alistair or Simon
Posts: 9413
Joined: 01 Apr 2012, 09:47
x 648

Re: Lexia/PugPlanet Sotware Virus Warning....

Post by Hell Razor5543 » 07 Nov 2014, 12:50

I have also sent a disk of to another forum member, and have let them know (with a link to this post) of this issue.

Is the suspect file on the installation disks?

User avatar
CitroJim
A very naughty boy
Posts: 41564
Joined: 30 Apr 2005, 23:33
x 1033

Re: Lexia/PugPlanet Sotware Virus Warning....

Post by CitroJim » 07 Nov 2014, 13:04

Yes, it is on the installation disk James, in the file noted in the first post of this topic.

Sent from my Lumia 900 using Tapatalk

Hell Razor5543
NOT Alistair or Simon
Posts: 9413
Joined: 01 Apr 2012, 09:47
x 648

Re: Lexia/PugPlanet Sotware Virus Warning....

Post by Hell Razor5543 » 07 Nov 2014, 15:49

Well, 8 hours 20 minutes later my netbook says it is clean (well, Microsoft Security Essentials says it is). That would suggest the disks are as well. Still, better check them.

MikeT
Posts: 4838
Joined: 11 Jun 2007, 16:17
x 185

Re: Lexia/PugPlanet Sotware Virus Warning....

Post by MikeT » 07 Nov 2014, 16:27

From what I can tell, ENDINST.EXE is a Windows (update?) program relating to handling errors that can otherwise ruin your day when installing software. It's unremarkable that it should be flagged on a Linux box as suspicious.(You should see AVG go mental when installing Diagbox on a Windows machine!). But the sensible thing to do to allay any fears would be to run the software in a sandbox and determine if any "backdoor" activity is malicious (or, as I suspect, just part of the app).

User avatar
CitroJim
A very naughty boy
Posts: 41564
Joined: 30 Apr 2005, 23:33
x 1033

Re: Lexia/PugPlanet Sotware Virus Warning....

Post by CitroJim » 07 Nov 2014, 18:23

Thanks for the additional information Mike..

So will it install with that file absent?

Hell Razor5543
NOT Alistair or Simon
Posts: 9413
Joined: 01 Apr 2012, 09:47
x 648

Re: Lexia/PugPlanet Sotware Virus Warning....

Post by Hell Razor5543 » 07 Nov 2014, 19:14

Well, according to MSE my netbook and both disks supplied are clean.

User avatar
CitroJim
A very naughty boy
Posts: 41564
Joined: 30 Apr 2005, 23:33
x 1033

Re: Lexia/PugPlanet Sotware Virus Warning....

Post by CitroJim » 07 Nov 2014, 19:32

Hell Razor5543 wrote:Well, according to MSE my netbook and both disks supplied are clean.

Good :-D That's what I'm hoping to hear James. I have my suspicions it's just the quite old software I have an it may be a false positive from ClamAV. I'll be interested to hear if others find the same.

Thanks James :-D

User avatar
DickieG
Monaco's youngest playboy
Posts: 4896
Joined: 25 Nov 2006, 10:15
x 12

Re: Lexia/PugPlanet Sotware Virus Warning....

Post by DickieG » 07 Nov 2014, 19:33

CitroJim wrote:
Hell Razor5543 wrote: Jim, where did you get your kit from? I got mine from Easy Diagnostics.
It was such a long time ago now I really can't recall or indeed still have the records.
If it's your original Lexia 3 running on a laptop then I think it'll be the one of the ones we bought from that Polish guy living in Southampton.

User avatar
CitroJim
A very naughty boy
Posts: 41564
Joined: 30 Apr 2005, 23:33
x 1033

Re: Lexia/PugPlanet Sotware Virus Warning....

Post by CitroJim » 07 Nov 2014, 19:56

DickieG wrote: If it's your original Lexia 3 running on a laptop then I think it'll be the one of the ones we bought from that Polish guy living in Southampton.
Yes it is Richard, that's the one...

Do you still have the original software that came with yours? Perhaps if you do you could scan it and see how yours looks...

Trainman
donor 2018
Posts: 2578
Joined: 21 Aug 2009, 11:58
x 10

Re: Lexia/PugPlanet Sotware Virus Warning....

Post by Trainman » 07 Nov 2014, 21:00

I've not had chance to look today, it's on my to do list for tomorrow along with a couple of other jobs.