Stuxnet sting worm

Doest Avast detect the Stuxnet sting worm?

See: http://blogs.technet.com/b/mmpc/archive/2010/07/16/the-stuxnet-sting.aspx

Yes, it does. It’s detected as a rootkit because it’s a rootkit/worm.

How do you know ?

Yes, it does.

Hi Pondus,

We know because of this: http://www.raymond.cc/forum/spyware-viruses/21427-rootkit-tmphider-2.html
Detections were from: 16.7.2010 - and came in 100716-0
• Symantec: W32.Temphid
• Kaspersky: Rootkit.Win32.Stuxnet.a
• TrendMicro: RTKT_STUXNET.A
• F-Secure: Rootkit.Stuxnet.A
• Sophos: W32/Stuxnet-B
• Bitdefender: Rootkit.Stuxnet.A
• Avast: Win32:Stuxnet-B
• Microsoft: Trojan:WinNT/Stuxnet.A
• AVG: Rootkit-Pakes.AG
• PCTools: Rootkit.Stuxnet
• Eset: Win32/Stuxnet.A
• GData: Rootkit.Stuxnet.A
• AhnLab: Backdoor/Win32.Stuxnet
• DrWeb: Trojan.Stuxnet.1
• Fortinet: W32/Stuxnet.A!tr.rkit
• Ikarus: Rootkit.Win32.Stuxnet
• Norman: W32/Stuxnet.D
re: http://djtechnocrat.blogspot.com/2010/07/verisign-revokes-certificate-used-to.html
Here it did not: http://www.virustotal.com/ru/analisis/1635ec04f069ccc8331d01fdf31132a4bc8f6fd3830ac94739df95ee093c555c-1278661251
and here neither: http://www.virustotal.com/ru/analisis/0d8c2bcb575378f6a88d17b5f6ce70e794a264cdc8556c8e812f0b5f9c709198-1278584497
But I do not know what the situation is now…according to igor it is OK…

polonus

md5 is nice… ;D

VirusTotal - mrxcls.sys - 29/41
http://www.virustotal.com/analisis/1635ec04f069ccc8331d01fdf31132a4bc8f6fd3830ac94739df95ee093c555c-1279441634

VirusTotal - cc1db5360109de3b857654297d262ca1 - 29/42
http://www.virustotal.com/analisis/0d8c2bcb575378f6a88d17b5f6ce70e794a264cdc8556c8e812f0b5f9c709198-1279347594

VirusTotal - 016169ebebf1cec2aad6c7f0d0ee9026 - 25/41
http://www.virustotal.com/analisis/743e16b3ef4d39fc11c5e8ec890dcd29f034a6eca51be4f7fca6e23e60dbd7a1-1279281358

Hi Pondus,

Good deduction, good re-check,

pol

Thanks all!!