LZOP in TC x64

Discuss and announce Total Commander plugins, addons and other useful tools here, both their usage and their development.

Moderators: Hacker, petermad, Stefan2, white

Post Reply
User avatar
alexanderwdark
Senior Member
Senior Member
Posts: 270
Joined: 2008-04-14, 07:20 UTC
Location: Russia
Contact:

LZOP in TC x64

Post by *alexanderwdark »

LZOP plugin x86-64 port ready

it can unpack LZOP (.lzo) archives and now can make simply LZO- compatible files using lot of algorithms (only 1x are compatible with reference packer!).
iana
Senior Member
Senior Member
Posts: 345
Joined: 2010-07-27, 22:00 UTC

Post by *iana »

Sorry I couldn't find the original posts about these plugins so I'm reporting it here.
2 of your updated plugins are reported as Trojans/malware
wcx_lz8comp_tc_18022013.rar
https://www.virustotal.com/en/file/d8242b61bc3e0de63974cebb7802a5f74a242ce6d95aae3efacf5b06a5a6fbeb/analysis/1361293510/
and
wcx_ukrpack_tc_18022013.rar
https://www.virustotal.com/en/file/8c5753b28df5837806d6b487ef4b4338a4f1e837a5adb2f0b00d0e59b1e099c2/analysis/1361294745/

The reported files are the old exe files (ukr.EXE and lz8.EXE) as those are old files from 2008 and there was a Delphi virus back then can you recompile/update them?

The problem isn't that they're UPX-ed.
User avatar
alexanderwdark
Senior Member
Senior Member
Posts: 270
Joined: 2008-04-14, 07:20 UTC
Location: Russia
Contact:

Post by *alexanderwdark »

iana wrote:Sorry I couldn't find the original posts about these plugins so I'm reporting it here.
2 of your updated plugins are reported as Trojans/malware
wcx_lz8comp_tc_18022013.rar
https://www.virustotal.com/en/file/d8242b61bc3e0de63974cebb7802a5f74a242ce6d95aae3efacf5b06a5a6fbeb/analysis/1361293510/
and
wcx_ukrpack_tc_18022013.rar
https://www.virustotal.com/en/file/8c5753b28df5837806d6b487ef4b4338a4f1e837a5adb2f0b00d0e59b1e099c2/analysis/1361294745/

The reported files are the old exe files (ukr.EXE and lz8.EXE) as those are old files from 2008 and there was a Delphi virus back then can you recompile/update them?

The problem isn't that they're UPX-ed.
This is false alarm. You can send files to antivirus lab, and they fix detection. Microsoft already mark as clear, and there are no Kaspersky, DrWeb or NOD32 detection

P.S. AVAST also fixed

Avira - https://analysis.avira.com/ru/status?uniqueid=Ab7xALfWQWAUyE3Z7G4qY2mIqdfj1wQB&incidentid=1374414
iana
Senior Member
Senior Member
Posts: 345
Joined: 2010-07-27, 22:00 UTC

Post by *iana »

Tanks, I assumed they wore false positives and I reported them as such to avast, but there was a harmless Delphi virus in 2008 (it only affected systems with Delphi installed it changed one of the main pas rtl files and deleted the dcu so it could copy it self on another Delphi installation, my point is you might have been infected and not know about it) and a few plugins wore affected (I remember mover was) so maybe recompiling them would have been a simpler solution, but now avast lets me use them so I'm happy, tanks a lot.
User avatar
alexanderwdark
Senior Member
Senior Member
Posts: 270
Joined: 2008-04-14, 07:20 UTC
Location: Russia
Contact:

Post by *alexanderwdark »

Yes, Avast and Avira fixed their false positives today. I also recompile later. And, this exe files need only for manual console (un)pack. You can delete them safe.
Post Reply