I actually downloaded you package of Winbox, I launched it and clicked on ‘connect’ but then I got a message saying that the application cannot connect … I gotta say I feel kinda dumb right now and don’t know what to do …
Can I ask you to please update the link to V3.0 so we can get on to routers with 6.33? If you had a formal version on the download page it would probably get downloaded quite a bit.
@soamz, @SaeedYa: Actually they’re doing smartest thing ever. Maintaining three applications (Windows, OS X, Linux) require people knowing these three operating systems. Additionally even if app is built around the same codebase more bugs will be present.
What MikroTik did is just built app which is Wine-complaint (which really means application conforming to standards without ugly hacks). Forms and windows used inside Winbox are custom anyway.
This guy Joshaven has made windbox for os x and it’s pretty stabile and good, i been using 3.0 for a while and am downloading now 3.4 if anyone needs this is his blog where you can find it and download it http://joshaven.com/resources/tools/winbox-for-mac/
So we don’t pass on Windows malware, of course. I’ve never seen it diagnose anything except Windows malware I’ve received in email… until this.
The infected file is indicated as WinBox.app/Contents/Resources/drive_c/windows/mono/mono-2.0/bin/MonoPosixHelper-x86_64.dll . From the name, that sounds like it may be part of the Wine Bottler tool itself, so I’m not sure how productive that would be.
Regardless, I would hope that MikroTik wouldn’t want to continue to offer an infected file in their download area.
Possibly Unwanted Application. While not necessarily malicious, the scanned file presents certain characteristics which depending on the user policies and environment may or may not represent a threat. For full details see: http://www.clamav.net/doc/pua.html .
Giving purpose of this file in mono I can only guess why it was marked as suspicious. It contains POSIX compatibility layer and some clever asm - it looks suspicious, for sure, but this file itself is harmless.