guys, let me correct the description of chest files processing… the files sent from chest aren’t dropped, of course… they are extracted and sorted by the script periodically (they couldn’t be lost)… but the problem was, that our virus analysts didn’t know where the sorted files were stored… they was unreachable for some time, because the man who knows the sorting scheme used his holidays… the bigegst priority between chested files is for Trojen-gen family possible false positives, but this doesn’t mean, that we ignore the other files… the only problem is, that the files were not distributed to right people… i can confirm, that a new submission system (still under development) should solve this problem with script/manual work… anyway - better to send the files via mail… we have some highlights and priorities for “trusted” submitters there (this should be also more configurable with new submission system)…
btw: misak’s words are coresponding to last week only and like i said already - we have the files and the delay in their analysis should be cleared soon… the files will be in the right hands tomorrow and you don’t have to think about avast! chest as some kind of black hole… once again, sorry for the rumour, it was a misunderstanding between analysts and chest processor…
Hi Maxx_original,
The most important thing here is that you set your protocols strict and abide by them. This is vital for an av depository. Put these protocols to print, and distribute them to everyone concerned so they can stick to them.
polonus
Thanks for explaining… Without this explanation (it was a misunderstanding between analysts and chest processor) we can’t trust on the company seriousness.
Thankyou for your explanation, thats all I needed to know, keep up the excellent work
polonus: agree with your opinion… more ppl in our team should be introduced to samples processing details… we’ll accept some necessary steps to make it better…
Tech: alwil’s policy never contained anything about making a chest only for a laugh, you can be sure with this ;)… i already told to misak, that his post could be titled as “PR message of the year” ;D
That will make me sleep happy (again) ![]()
Hey misak, whatch your steps ;D
Dear developers!
Three weeks have gone and nothing has changed. I sent you this file twice from Virus Chest and by e-mail to virus@avast.com. UFO.EXE is still undetected. Can you answer if you receive my files?
Does Avast Antivirus have any support?
Regards, Oleg
Today’s update to 071127 solved the problem.
Thanks to all.
Regards, Oleg
So sorry for my previous post. I have hold discussions with colleague that care on it and i understand him badly. I will next time better thing then write.
Don’t worry that much. The worse thing will be if that was true and not only a matter of explanation ![]()
The file got finally detected by Avast (on the USB pendrive) and removed. Next time I plugged it in, it was still inside, still appearently Avast doesn’t detect it on the PC.
What is this virus? A virus? A worm? A trojan? A rootkit? Is it somewhere on my PC as well? Can it be seen and manually removed without a rootkit tool?
This file has probably been on my PC for several weeks already, I’d like to know what it has been doing all this time, and what do I have to do to be completely sure it has been removed from both my USB pendrive AND my two PCs.
Maybe, but using a rootkit won’t be that bad.
Try other tools… I suggest:
AVG Antispyware
SUPERantispyware
Spyware Terminator
AVG antirootkit
Trend Micro RootkitBuster
Thanks, I’ll try to check tonite (it’s on my GF’s PC, as usual…).
Oh, due to a lack of internet connection she couldn’t update Avast for the last 2 days, maybe the solution is already there but she couldn’t check it due to lack of update.
Still it sounds strange that Avast finally detected UFO, but only removed it from the pendrive, not from the PC…
It just bothers me I’ll have to waste 1 more day of my time removing this virus, I bet she won’t be able to use any online AV systems, nor install Ccleaner, F-Secure Blacklight, HijackThis, Ewido and everything else. -_-’
Any news on this file? Has it been added to Avast Database?
Sounds pretty strange that Avast appearently detected it once after the update around november the 27th, and now it doesn’t detect it anymore (while the virus/worm is still there, since it continues to infect USB pendrives plugged into the notebook)
follow the instructions to disable autoruns on fixed disks and USB devices as described here http://forum.avast.com/index.php?topic=31671.60 this should stop the re-infecting… another detections for newer variants of autorun viruses are ready to be processed…
Google search for avast UFO.exe, the second result down for me Remove Virus newheur_pe - Topic Buzz by Omgili, second link on that page led here… UFO.exe that resides on my USB is not being detected by Avast! Sux0rz.
Then send the sample to virus@avast.com zipped and password protected with the password in email body, a link to this topic might help and undetected malware in the subject.
Or you can also add the file to the User Files (File, Add) section of the avast chest where it can do no harm and send it from there (select the file, right click, email to Alwil Software). No need to zip and PW protect when the sample is sent from chest. A copy of the file/s will remain in the original location, so any further action you take can remove that.