Author Topic: Avast detects while zscaler gives a green 8/100,  (Read 1434 times)

0 Members and 1 Guest are viewing this topic.

Offline polonus

  • Avast √úberevangelist
  • Probably Bot
  • *****
  • Posts: 33633
  • malware fighter
Avast detects while zscaler gives a green 8/100,
« on: April 23, 2012, 04:14:16 PM »
See: htxp://zulu.zscaler.com/submission/show/9969c1599a17c6a749e155dbe7fbbc59-1335189631
and htxp://urlquery.net/report.php?id=45594
Maybe the malware was closed down.
But given as malcious site here:
htxps://www.virustotal.com/file/eb4e91bab18a2319f03869f35358ddd77047335dc33edd0e67eb295040a82062/analysis/
Malware found was: UDS:DangerousObject.Multi.Generic or TR/Crypt.XPACK.Gen , avast detects as Win32:Kryptik-INL [Trj]

polonus
Cybersecurity is more of an attitude than anything else. Avast Evangelists.

Use NoScript, a limited user account and a virtual machine and be safe(r)!

Offline Milos

  • Avast team
  • Super Poster
  • *
  • Posts: 2264
Re: Avast detects while zscaler gives a green 8/100,
« Reply #1 on: April 23, 2012, 04:58:58 PM »
Hello,
detection seems correct.

Milos

Offline polonus

  • Avast √úberevangelist
  • Probably Bot
  • *****
  • Posts: 33633
  • malware fighter
Re: Avast detects while zscaler gives a green 8/100,
« Reply #2 on: April 23, 2012, 05:58:40 PM »
Hi Milos,

Thanks for verification and good we all are being protected,

polonus
Cybersecurity is more of an attitude than anything else. Avast Evangelists.

Use NoScript, a limited user account and a virtual machine and be safe(r)!

michaelawsutton

  • Guest
Re: Avast detects while zscaler gives a green 8/100,
« Reply #3 on: April 24, 2012, 12:19:38 AM »
Unfortunately the site in question is now down so we can't investigate further. If you do still have access to the content, please forward it to zulu [_at_] zscaler . com so that we can take a look at it. We'll gladly pass along feedback on whether or not we feel that the content should have been flagged by Zulu.

Michael Sutton
VP, Security Research
Zscaler