Has anyone received a Trojan security warning for FMPA included with this 2.228 release?
Windows Security
Threat detected: Trojan:Win32/Wacatac.B!ml
Alert level: Severe
Date: 12/23/2019 3:28 PM
Category: Trojan
Details: This program is dangerous and executes commands from an attacker.
Affected items: file: C:\DSD Plus\FMPA.exe
Yup:
Classification: A Network Trojan was Detected
Severity: High
Status: Drop
Destination IP: 67.225.138.150
Signature name: ET MALWARE User-Agent (Internet Explorer)
Signature rules:
alert http $HOME_NET any -> $EXTERNAL_NET any (msg:"ET MALWARE User-Agent (Internet Explorer)"; flow:established,to_server; content:"Internet Explorer"; depth:17; http_user_agent; isdataat:!1,relative; content:!"pnrws.skype.com"; http_host; content:!"iecvlist.microsoft.com"; http_host; content:!".lenovo.com"; http_host; metadata: former_category ADWARE_PUP; reference:url,doc.emergingthreats.net/bin/view/Main/2008052; classtype:trojan-activity; sid:2008052; rev:17; metadata:created_at 2010_07_30, updated_at 2019_09_28
Signature ID: 2008052
ET MALWARE User-Agent (Internet Explorer)
dst IP: 67.225.138.150:80
00000000 47 45 54 20 68 74 74 70 3a 2f 2f 77 77 77 2e 64 GET.http://www.d
00000010 73 64 70 6c 75 73 2e 63 6f 6d 2f 64 73 64 70 6c sdplus.com/dsdpl
00000020 75 73 75 70 6c 6f 61 64 73 2f 46 61 73 74 4c 61 usuploads/FastLa
00000030 6e 65 2f 46 61 73 74 4c 61 6e 65 43 75 72 72 65 ne/FastLaneCurre
00000040 6e 74 56 65 72 73 69 6f 6e 49 6e 66 6f 2e 74 78 ntVersionInfo.tx
00000050 74 20 48 54 54 50 2f 31 2e 31 0d 0a 55 73 65 72 t.HTTP/1.1..User
00000060 2d 41 67 65 6e 74 3a 20 49 6e 74 65 72 6e 65 74 -Agent:.Internet
00000070 20 45 78 70 6c 6f 72 65 72 0d 0a 48 6f 73 74 3a .Explorer..Host:
00000080 20 77 77 77 2e 64 73 64 70 6c 75 73 2e 63 6f 6d .www.dsdplus.com
00000090 0d 0a 43 6f 6e 6e 65 63 74 69 6f 6e 3a 20 4b 65 ..Connection:.Ke
000000a0 65 70 2d 41 6c 69 76 65 0d 0a 0d 0a
67.225.138.150
City Lansing
Country United States
Organization Liquid Web, L.L.C
ISP Liquid Web, L.L.C
Last Update 2019-12-22T05:19:18.642463
Hostnames cpanel5.qwikhost.com
ASN AS32244