    What if I run a virus/trojan Windows EXE on Ubuntu with Wine?

    I've got a file said to contain information I was looking for. Unfortunately it is an executable instead of DOC (as it was meant to be) and the site I've downloaded it from looks suspicious for me. If I was not using Linux, I'd run it on a VM or a separate PC. But running Linux, do I need to

    worry, or can I just run it with Wine? Can Wine system be infected?

    he news is only slightly better than it is on Windows. If you run the executable, it can do anything

    n executable can, up to and including getting whatever data is in your home folder.

    he good news is that most Windows viruses aren't (yet) written in a way to work well on Wine. In

    ome cases you can delete the wine folder and be otherwise unaffected.

    he bad news is that a wine executable is an executable in the full Linux sense -- there's nothing

    opping it from doing anything a malicious shell script might, including escaping the .wine folder.

    ine has a wiki page on securing Wine here: -- partial

    easures you can take include things like scanning a file with ClamAV before running it.

    here was an . Short version: Almost all Windows viruses aren't

    ritten to run well on Wine. Maybe Wine has gotten better, but it's not the sort of compatibility

    at Wine i s looking to offer.

    ancient article about this 5 years ago

    here are a couple viruses that infect both Windows & Linux but they're very very rare and didn't

    pread all that well.

    mple way to "secure" wine is in winecfg tell all the desktop integration folders to point to your

    wine folder and remove drives other than the drive_c inside the .wine folder.

    It's not so much viruses but rootkits that are dangerous to Linux. Just be careful with root access,

    do and su commands.

    That might be true when Linux was almost exclusively in the domain of servers and enterprise machines, but

    nowadays a lot of people use it as a desktop OS... it'd be hard to argue to those people that they aren't

    endangered, even after losing all their personal info, because the virus wasn't able to run as root.


    Chan-Ho Suh

