Virus warning when downloading Word plugin

Hello,

when downloading the wordplugin, our company firewall marks the XPI as containing a virus. The details are:

Product: McAfee Web Gateway 7.0
URL: http://www.zotero.org/download/integration/Zotero-WinWord-Plugin-3.1.xpi
Media Type: application/executable
Virus Name: McAfeeGW: Virus.Agent.Gaba.ffb

When I downloaded the file from a different machine (outside of the firewall), I got a file with these hashes:

MD5:
4c4bf9f056034371390bda6665d5b8d4
SHA1:
11505422a1b3248a805f6bd6f58fd3902f2be12e
SHA256:
1246420aa66d717be27be2b583ce39d38d505c5015e525f1c2b6bd746013487e

Because I cannot see the file seen by the firewall, I cannot guarantee that they are identical. Please advice if the mentioned hashes are correct or not.
  • http://forums.zotero.org/discussion/18078/kaspersky-claims-zotero-standalone-21a3-contains-adware-adwarewin32gabaeth/#Item_9
  • Thank you for the reassurance. That thread mentioned to let you know if the latest version still gives the false positive: it does for McAfee.

    Is it possible to publish correct hash-values somewhere (either signed or on a different server than binary)?
  • Those hashes are correct. I have reported the false positive to McAfee. Please post any further correspondence to the thread that adamsmith linked above.

This is an old discussion that has not been active in a long time. Instead of commenting here, you should start a new discussion. If you think the content of this discussion is still relevant, you can link to it from your new discussion.