Author Topic: Samples missed by avast (VirusTotal links only!)  (Read 374025 times)

0 Members and 1 Guest are viewing this topic.

true indian

  • Guest
Re: Samples missed by avast (VirusTotal links only!)
« Reply #675 on: April 06, 2012, 08:25:52 AM »
Not so sure about that one.

sorry pondus...i grabbed this one from a disinfected pc  :)

true indian

  • Guest
« Last Edit: April 06, 2012, 08:34:01 AM by true indian »





true indian

  • Guest
Re: Samples missed by avast (VirusTotal links only!)
« Reply #681 on: April 08, 2012, 03:47:52 AM »
Windows Processes Accelerator Rogue
Not detected here: https://www.virustotal.com/file/c88842eb9a89c4c675656f0671113e57a3eeeff36389dd30a23d2583341c0682/analysis/

reported to avast
« Last Edit: April 08, 2012, 03:50:15 AM by true indian »

Offline polonus

  • Avast Überevangelist
  • Probably Bot
  • *****
  • Posts: 33533
  • malware fighter
Re: Samples missed by avast (VirusTotal links only!)
« Reply #682 on: April 08, 2012, 01:58:36 PM »
See: htXp://sitecheck.sucuri.net/results/http://cimislia.net
See: htXp://siteinspector.comodo.com/public/reports/show_log?id=544832   But I get a 404 File not found.
Missed here: htXp://zulu.zscaler.com/submission/show/9503176b1afd09c1b82a2fb834476a0f-1333885620
and missed here: htXps://www.virustotal.com/url/cc2ce5819bb48ae41d18d4030dbe91f05556c758cbf1a572985802c6701bee24/analysis/1333885686/
links to suspicious domain: document.write('<iframe src="htXp://link.link dot ru/show

reported to virus AT avast dot com

polonus
Cybersecurity is more of an attitude than anything else. Avast Evangelists.

Use NoScript, a limited user account and a virtual machine and be safe(r)!

Offline polonus

  • Avast Überevangelist
  • Probably Bot
  • *****
  • Posts: 33533
  • malware fighter
Re: Samples missed by avast (VirusTotal links only!)
« Reply #683 on: April 08, 2012, 05:10:56 PM »
Hi true_indian,

You grabbed reports from here, for instance: for the Windows Processes Accelerator Rogue you gave
: http://forums.comodo.com/comodo-internet-security-cis/submit-malware-here-to-be-blacklisted-2012-no-live-malware-t80088.0.html;msg596587

polonus
Cybersecurity is more of an attitude than anything else. Avast Evangelists.

Use NoScript, a limited user account and a virtual machine and be safe(r)!

true indian

  • Guest
Re: Samples missed by avast (VirusTotal links only!)
« Reply #684 on: April 09, 2012, 02:07:59 PM »
Hi polonus no they are not from comodo forum...

Windows Stability Maximizer Rogue
https://www.virustotal.com/file/61ede6100349ee25dcb03d5872d92a388a1636a817d5852423671dcb75606113/analysis/1333944810/

Reported to avast


true indian

  • Guest
Re: Samples missed by avast (VirusTotal links only!)
« Reply #686 on: April 12, 2012, 07:59:47 AM »

Offline polonus

  • Avast Überevangelist
  • Probably Bot
  • *****
  • Posts: 33533
  • malware fighter
Re: Samples missed by avast (VirusTotal links only!)
« Reply #687 on: April 12, 2012, 06:55:22 PM »
Missed trojan.Zlob variant:

htxp://zulu.zscaler.com/submission/show/da0256c76b0000392e0f5ff57c8170fc-1334249398
and
htxps://www.virustotal.com/file/c36d51d5b8185a307171e73720c40b4b6bfbfd1e5186cf39470701bace049a88/analysis/

reported to virus AT avast dot com
Cybersecurity is more of an attitude than anything else. Avast Evangelists.

Use NoScript, a limited user account and a virtual machine and be safe(r)!

true indian

  • Guest
Re: Samples missed by avast (VirusTotal links only!)
« Reply #688 on: April 12, 2012, 06:57:44 PM »
« Last Edit: April 12, 2012, 07:00:46 PM by true indian »

Offline polonus

  • Avast Überevangelist
  • Probably Bot
  • *****
  • Posts: 33533
  • malware fighter
Re: Samples missed by avast (VirusTotal links only!)
« Reply #689 on: April 12, 2012, 07:21:38 PM »
Hi true_indian,

Why report this one as it is updated that many times and the malware will survive just over an hour before it is being closed again, better to have a web- or netshield block? So, senseless action i.m.o.

polonus
Cybersecurity is more of an attitude than anything else. Avast Evangelists.

Use NoScript, a limited user account and a virtual machine and be safe(r)!