Author Topic: Samples missed by avast (VirusTotal links only!)  (Read 414193 times)

0 Members and 2 Guests are viewing this topic.

Offline polonus

  • Avast Überevangelist
  • Probably Bot
  • *****
  • Posts: 33891
  • malware fighter
Re: Samples missed by avast (VirusTotal links only!)
« Reply #510 on: December 06, 2011, 04:29:31 PM »
Hi Dim@rik,

Well a year means ages in computer terms: 2011/01/15 13:57:20 (CET)
But 2008 means a golden oldie:
Detected   Jun 15 2008 16:27 GMT
Released   Jun 15 2008 21:14 GMT
McAfee Description Modified 2004-06-09

polonus
Cybersecurity is more of an attitude than anything else. Avast Evangelists.

Use NoScript, a limited user account and a virtual machine and be safe(r)!

REDACTED

  • Guest
Re: Samples missed by avast (VirusTotal links only!)
« Reply #511 on: December 06, 2011, 04:33:08 PM »
Hi Dim@rik,

Well a year means ages in computer terms: 2011/01/15 13:57:20 (CET)
But 2008 means a golden oldie:
Detected   Jun 15 2008 16:27 GMT
Released   Jun 15 2008 21:14 GMT
McAfee Description Modified 2004-06-09

polonus



Hi Polonus

Old macro :)

Offline polonus

  • Avast Überevangelist
  • Probably Bot
  • *****
  • Posts: 33891
  • malware fighter
Re: Samples missed by avast (VirusTotal links only!)
« Reply #512 on: December 06, 2011, 04:48:59 PM »
@Dim@rik

Stare przeboje.

pozdrawiam,

Damian
Cybersecurity is more of an attitude than anything else. Avast Evangelists.

Use NoScript, a limited user account and a virtual machine and be safe(r)!

Offline polonus

  • Avast Überevangelist
  • Probably Bot
  • *****
  • Posts: 33891
  • malware fighter
Cybersecurity is more of an attitude than anything else. Avast Evangelists.

Use NoScript, a limited user account and a virtual machine and be safe(r)!

razoreqx

  • Guest
Re: Samples missed by avast (VirusTotal links only!)
« Reply #514 on: December 07, 2011, 01:28:59 PM »
Bookmarked
« Last Edit: December 07, 2011, 03:20:30 PM by razoreqx »

Online DavidR

  • Avast Überevangelist
  • Certainly Bot
  • *****
  • Posts: 88895
  • No support PMs thanks
Re: Samples missed by avast (VirusTotal links only!)
« Reply #515 on: December 07, 2011, 01:34:05 PM »
Bookmark it, stickies are a pain in the rear; not long back you had to scroll down to get to the live content too many stickies.
Windows 10 Home 64bit/ Acer Aspire F15/ Intel Core i5 7200U 2.5GHz, 8GB DDR4 memory, 256GB SSD, 1TB HDD/ avast! free 24.2.6105 (build 24.2.8918.824) UI 1.0.799/ Firefox, uBlock Origin, uMatrix/ MailWasher Pro/ Avast! Mobile Security

Offline Asyn

  • Avast Überevangelist
  • Certainly Bot
  • *****
  • Posts: 76037
    • >>>  Avast Forum - Deutschsprachiger Bereich  <<<
Re: Samples missed by avast (VirusTotal links only!)
« Reply #516 on: December 07, 2011, 03:11:11 PM »
Bookmark it, stickies are a pain in the rear; not long back you had to scroll down to get to the live content too many stickies.

+1
W8.1 [x64] - Avast Free AV 23.3.8047.BC [UI.757] - Firefox ESR 102.9 [NS/uBO/PB] - Thunderbird 102.9.1
Avast-Tools: Secure Browser 109.0 - Cleanup 23.1 - SecureLine 5.18 - DriverUpdater 23.1 - CCleaner 6.01
Avast Wissenswertes (Downloads, Anleitungen & Infos): https://forum.avast.com/index.php?topic=60523.0

Offline polonus

  • Avast Überevangelist
  • Probably Bot
  • *****
  • Posts: 33891
  • malware fighter
« Last Edit: December 07, 2011, 06:41:22 PM by polonus »
Cybersecurity is more of an attitude than anything else. Avast Evangelists.

Use NoScript, a limited user account and a virtual machine and be safe(r)!



Offline Asyn

  • Avast Überevangelist
  • Certainly Bot
  • *****
  • Posts: 76037
    • >>>  Avast Forum - Deutschsprachiger Bereich  <<<
W8.1 [x64] - Avast Free AV 23.3.8047.BC [UI.757] - Firefox ESR 102.9 [NS/uBO/PB] - Thunderbird 102.9.1
Avast-Tools: Secure Browser 109.0 - Cleanup 23.1 - SecureLine 5.18 - DriverUpdater 23.1 - CCleaner 6.01
Avast Wissenswertes (Downloads, Anleitungen & Infos): https://forum.avast.com/index.php?topic=60523.0

razoreqx

  • Guest
« Last Edit: December 09, 2011, 07:36:05 PM by razoreqx »

Offline polonus

  • Avast Überevangelist
  • Probably Bot
  • *****
  • Posts: 33891
  • malware fighter
Re: Samples missed by avast (VirusTotal links only!)
« Reply #522 on: December 09, 2011, 10:13:58 PM »
Hi razoreqx,

Same category: http://www.virustotal.com/file-scan/report.html?id=e4e269d9ad00071607b85105055b223b781fc7ab0f0df70f79f084ae0d639304-1323464483
See this analysis, based on same MD5 hash: http://camas.comodo.com/cgi-bin/submit?file=e4e269d9ad00071607b85105055b223b781fc7ab0f0df70f79f084ae0d639304

This is how DrWeb's URL scanner detected this malware:
Checking: -http://46.166.157.31/up_4.exe
Engine version: 5.0.2.3300
Total virus-finding records: 2910580
File size: 169.50 KB
File MD5: 0f38403648d34e9987abf501af245973

-http://46.166.157.31/up_4.exe packed by UPX
>-http://46.166.157.31/up_4.exe infected with BackDoor.IRC.NgrBot.42

reported to virus AT avast dot com,

polonus
« Last Edit: December 09, 2011, 10:18:32 PM by polonus »
Cybersecurity is more of an attitude than anything else. Avast Evangelists.

Use NoScript, a limited user account and a virtual machine and be safe(r)!