

- #FILEZILLA FTP CLIENT VIRUS UPDATE#
- #FILEZILLA FTP CLIENT VIRUS PLUS#
- #FILEZILLA FTP CLIENT VIRUS DOWNLOAD#
- #FILEZILLA FTP CLIENT VIRUS FREE#
I soon discovered that FileZilla® was storing all my passwords in a plain text file on my computer, and knowing this, malware authors and hackers are targeting this file.
#FILEZILLA FTP CLIENT VIRUS PLUS#
Plus it saved all my logins and passwords for me which made managing the dozens of sites I looked after much much easier.Įverything was fine for years until one day all of the websites I managed were hacked, filled with malware, and blacklisted from Google on the same day. I've been a web developer for a while now and like most web developers I use FTP, a lot. Now Filezilla® has also decided to support encrypted passwords. I would agree however that AVG has sometimes been problematic as I have experienced some of it's occassional false positives.Why FileZilla Secure? tl dr at the time I started this project, FileZilla® did not encrypt saved FTP passwords and I got hacked, so I decided to implement it on own. So I think just delete that file and get a 'clean' copy of version 3.7.4.1. I think there is something wrong with the 3.7.3 version file from SourceForge.įinally I used a Shell Extension Scan of the same folder and AVG again detected a problem only with the version 3.7.3 file in there. Interestingly the file size of version 3.7.3 is showing as 645kb, but version 3.7.4.1 is showing as 4710kb - a significant difference.
#FILEZILLA FTP CLIENT VIRUS DOWNLOAD#
I then downloaded another copy of 'FileZilla_3.7.4.1_win32-setup.exe' (which I have renamed to allow being in the same folder) from the filezilla-project org as mentioned above which redirects back to SourceForge for the actual download link.Īll these files I have sitting in the same folder and AVG is scanning them in the background because periodically it pops up its screen telling me there is a virus in version 3.7.3 but none of the others. I downloaded 'FileZilla_3.7.4.1_win32-setup.exe' from Softpedia and it is fine - no virus warning from AVG. I downloaded 'FileZilla_Server-0_9_43.exe' from SourceForge and it is fine - nothing picked up by AVG. Searched that exact term on the AVG website - returned nothing useful. I downloaded 'FileZilla_3.7.3_win32-setup.exe' from SourceForge and AVG is repeatedly nagging me that it's infected with ''. I just now checked via its interface panel and it says my AVG is up-to-date.
#FILEZILLA FTP CLIENT VIRUS FREE#
Well I'll just start by saying, I'm using AVG AntiVirus Free Version 202.
#FILEZILLA FTP CLIENT VIRUS UPDATE#
Any attempt to update the application fails, which is most likely a protection to prevent overwriting of malware binaries.Įdit August, 06 2014 : As rmflow say, SourceForge is not trusted source anymore, so I edit this to remove the reference The only differences that can be seen at first glance are smaller filesize of filezilla.exe (~6,8 MB), 2 dll libraries ibgcc_s_dw2-1.dll and libstdc++-6.dll (not included in the official version) and information in “About FileZilla” window indicates the use of older SQLite/GnuTLS versions. The installed malware FTP client looks like the official version and it is fully functional! You can’t find any suspicious behavior, entries in the system registry, communication or changes in application GUI. All other elements like texts, buttons, icons and images are the same.

The only slight difference is version of NullSoft installer where malware uses 2.46.3-Unicode and the official installer uses v2.45-Unicode. Malware installer GUI is almost identical to the official version. As you can see, the installer is mostly hosted on hacked websites with fake content The first suspicious signs are bogus download URLs. We have noticed an increased presence of these malware versions of famous open source FTP clients. Malformed FileZilla FTP client with login stealerīeware of malformed FileZilla FTP client versions 3.7.3 and 3.5.3. If you get filezilla from other site, maybe, could be infected.
