Samples,samples and samples again!

I just wonder why i even bother to gather malware samples and submit them to Alwil…
Oldest sample still in my Chest was added 20th JUNE! Nothing since then. Thats almost 2 months. I know i submitted mainly Adware stuff,but i also have a Trojan Agent,one PurityScan,Nsag virus,P2E trojan,few toolbars + other crap and loads of suspicious files (suspicious naming,one was even tagged by NOD32 heuristics).
I can’t verify suspicious files if you don’t reply and say this and that file is clean.
I regulary check and archive detected ones (because they get detected),but for clean ones i cannot maintain track).
C’mon,please do something about this. It’s so annoying to submit anything when you don’t get any info back about files and it takes ages for them to be added even if they are some minor thing.
Not to mention you should finally remove that latest threats list from the main page.
It’s a very bad example of how company keeps track of latest threats…

im agree with u. Alwil should reply to us so we can know the sample status.
and now maybe the right time for avast website should change (again…) with new informative look.

My opinion is the same as HERE.
I truly believe Alwil should put a extra (wo)man on the job.

A few tips to all who read this:

  • Do not just submit samples to Alwil at the first suspection.
  • First check the setup of Avast and make sure it is set so that it can detect it.
    (eg: thorough scan, scan archives etc)
  • Check them first online with a scanner like JOTTI

I almost went to Kaspersky Lab war machine,but i keep coming back to avast! because of just incredible interface and great handling of malware (good control when detected). My idea is to turn avast! into what Kaspersky Lab is doing since 5 years ago if not more. If you lack any really powerfull proactive method like NOD32 AH then use alternate method. And thats raw signature detection force. I don’t have to give any proof because we all know how good KAV is. Why doesn’t Alwil follow them?
Whole thing got really bad in last year. I remember days back when Karel replied to many of my mails and samples were added in one week at most. Now i wait for 2 months and still nothing. It’s just so dissapointing.

EDIT for Eddy’s post:
I do check them and i even add the name as Comment to EVERY file in chest.
I doubt anyone take this much effort for free.
Some files are just suspicious (lets say files named kernal32.dll),but they aren’t detected by any other AV yet). Now how can i verify that? I have some to to play with samples,but i’m not virus analyst.
I check them with Jotti and VirusTotal and if not positively matched i even use Sandbox Live! emulator and inspect file behaviour(according to entries listed in it) even if Sanbox doesn’t positively detect it. If detected by Kaspersky i take it’s name and add it as comment to file in Chest because Kaspersky naming is usually the most common.

Now i did my part,i just expect Alwil guys will do their part.

I also wonder if Alwil guys check Jotti service for samples. ArcaBit added around 100 samples every day just from Jotti! VirusTotal also provides very good source of new samples. But on the VPS list we don’t see too big numbers of them.
Are there in Czech really no more people with such education or what? I mean you obviously need more virus analysts because Karel and Vlasta can’t handle all the stuff by themself.

I must admit, I really don’t understand why ALWIL keeps this old latest threats on their official website, I’d say even Grisoft AVG’s website is look better than ALWIL, it contains many up-to-date product documents, almost up-to-date virus informations and other marketing stuff but look back to ALWIL’s site you almost can’t find it. ::slight_smile:

Hi folks,

Tempus omnia revelat

polonus

Tempus omnia revelat= “time reveals all”

Win32:Nsag added on VPS 0533-2, 17.08.2005.
hmm… Alwil should put Win32:Zotob-E at the Latest Threats…

Maybe,but i found good that they added Nsag. I submitted it week or two ago…

Btw that Latest Threats list is dead since 2004. I don’t get it why,but thats how it is.

Lots of things will change soon…

I really hope it will Vlk :slight_smile:

Wow… We can expect surprises.
Vlk, did you receive my emails?

Hm,thats odd. I have Nsag.B in my Chest and it’s not detected.
avast! is of course fully updated.

Well it looks like there is some progress with the Latest Threats board :slight_smile:
There’s some new info about Zotob :o
I guess that there is still hope about the Latest Threats board ;D ;D ;D

Well, that’s not what I meant, exactly (the Zotob description). But it’s good to see it there…

Technical, I’ll get back to you later (maybe today). I only got 1 relevant email though - is that what you mean (about the other guy).

Thanks
Vlk

Yes… it is this one 8)

Patience people, patience… ;D

I know I posted those “authentic” photos where Alwil guys are cooking something with Aliens, but believe me, they are normal ordinary people, just like we are. They don’t have 8 hands, and 16 legs ;D I’m sure everything will fall into it’s place, we just have to be little bit more patient… I’m sure that’s all.

Regards !

I am very exited by this ;D

could you give us a few clues as to what you mean by this :smiley:

Don’t tell me you got sold to Symantec too… ;D ;D ;D

It’s a joke, don’t shoot me, it’s a joke 8)

Fast