Filezilla installer is suspicious, again

I’m seeing hits on this file as well from advanced security tools in an enterprise environment. This appears to be a bit more than just a few false hits on VirusTotal. The installation of filezilla_3.29.0_win64-setup_bundled.exe file with MD5 of 9f405c266c883305537c11246bdb1d42 shows signs of malicious activity in the form of IDS/IPS bypass techniques to copy and append .dat files behind the scenes. This activity can sometimes be a false positive, but this does not appear to be a false hit.The most suspicious part of the install we see is the spawning of an unsigned, unidentified process called tofufeti.exe which then spawns dozens of cmd.exe prompts to append these .dat files together after itself being put together by .dat file copy and appends.See attached screenshot for the process chain we see spawning off of filezilla_3.29.0_win64-setup_bundled.exe. Each cmd.exe process expands into another chain of cmd.exe and conhost.exe processes to perform cleanup of the

Perl 5.28.0 released (Perl5 v28.0)

From: Sawyer XDate: June 23, 2018 02:09Subject: Perl 5.28.0 is now available!Message ID:

  When we look at modern man we have to face the fact that modern man
  suffers from a kind of poverty of the spirit which stands in glaring
  contrast with his scientific and technological abundance. We’ve
  learned to fly the air as birds, we’ve learned to swim the seas as
  fish, yet we haven’t learned to walk the earth as brothers and

    — Martin Luther King Jr., 1967

We are delighted to announce perl v5.28.0, the first stable release of
version 28 of Perl 5.

You will soon be able to download Perl 5.28.0 from your favorite CPAN
mirror or find it at:

SHA1 digests for this release are:

  0622f86160e8969633cbd21a2cca9e11ae1f8c5a  perl-5.28.0.tar.gz
  c0e9e7a0dea97ec9816687d865fd461a99ef185c  perl-5.28.0.tar.xz

You can find a full list of changes in the file “perldelta.pod” located
in the “pod” directory inside the release and

Git v2.18.0

From: Junio C Hamano
Date: Thu Jun 21 2018 – 15:27:40 EST

The latest feature release Git v2.18.0 is now available at theusual places. It is comprised of 903 non-merge commits sincev2.17.0, contributed by 80 people, 24 of which are new faces.The tarballs are found at: following public repositories all have a copy of the ‘v2.18.0’tag and the ‘master’ branch that the tag points at:url = = git:// = contributors whose contributions weren’t in v2.17.0 are as follows.Welcome to the Git development community!Bill Ritcher, Birger Skogeng Pedersen, Casey Fitzpatrick,Dan Jacques, Drew DeVault, Eckhard S. MaaÃ, Erik E Brady,Florian GambÃck, Harald Nordgren, Jeremy Linton, KarthikeyanSingaravelan, Leif Middelschulte, Loganaden Velvindron, LuisMarsano, Meng-Sung Wu, Paul-Sebastian Ungureanu, Pedro AlvarezPiedehierro, Pratik Karki, Romain Merland, Ryan Dammrose,Takuto Ikuta, Tao Qingyun, Wink Saville, and Yuki Kokubun.Returning contributors who helped this release are as follows.Thanks for your continued support.Ãvar ArnfjÃrà Bjarmason, Alexander Shopov, Anders Kaseorg,Andreas Heiduk, Andre Hinrichs,

