I had being sending a virus sample over the past week and it hadn’t been added to the database. It Alwil not improve the response time to submission of infected file it will fall behind competence. Others company response or add the a signature within 24-48 hours.
I hope the virus analysts team post here.
Can you tell us more about that sample? Name of the file, virus name, etc.
The file name is postal.exe and this is the virustotal report
Antivirus Version Last Update Result
AhnLab-V3 2008.4.1.2 2008.04.01 -
AntiVir 7.6.0.78 2008.04.01 TR/Crypt.XPACK.Gen
Authentium 4.93.8 2008.03.31 -
Avast 4.7.1098.0 2008.03.31 -
AVG 7.5.0.516 2008.04.01 BackDoor.Generic9.ACMA
BitDefender 7.2 2008.04.01 Backdoor.Small.PN
CAT-QuickHeal 9.50 2008.03.31 (Suspicious) - DNAScan
ClamAV 0.92.1 2008.04.01 -
DrWeb 4.44.0.09170 2008.04.01 BackDoor.IRC.Sdbot.1372
eSafe 7.0.15.0 2008.03.31 Win32.Rbot.ahl
eTrust-Vet 31.3.5661 2008.04.01 -
Ewido 4.0 2008.04.01 Backdoor.Small.pn
F-Prot 4.4.2.54 2008.03.31 W32/Heuristic-162!Eldorado
F-Secure 6.70.13260.0 2008.04.01 Backdoor.Win32.Small.pn
FileAdvisor 1 2008.04.01 -
Fortinet 3.14.0.0 2008.04.01 W32/Small.PN!tr.bdr
Ikarus T3.1.1.20 2008.04.01 Backdoor.Win32.Small.pn
Kaspersky 7.0.0.125 2008.04.01 Backdoor.Win32.Small.pn
McAfee 5264 2008.04.01 Generic BackDoor
Microsoft 1.3301 2008.04.01 Trojan:Win32/Ircbrute
NOD32v2 2993 2008.04.01 -
Norman 5.80.02 2008.04.01 W32/Smalldoor.BJSP
Panda 9.0.0.4 2008.04.01 Suspicious file
Prevx1 V2 2008.04.01 Heuristic: Suspicious Self Modifying EXE
Rising 20.38.12.00 2008.04.01 -
Sophos 4.28.0 2008.04.01 Mal/Generic-A
Sunbelt 3.0.978.0 2008.03.18 -
Symantec 10 2008.04.01 -
TheHacker 6.2.92.260 2008.04.01 Backdoor/Small.pn
VBA32 3.12.6.3 2008.03.25 -
VirusBuster 4.3.26:9 2008.04.01 Backdoor.IRCBot.XET
Webwasher-Gateway 6.6.2 2008.04.01 Trojan.Crypt.XPACK.Gen
Can you send the samples to virus @ avast.com ?
You can zip and password the files… Inform a link to this thread and the password used.
You can send the files to Chest and, from there, resend to Alwil for analysis.
Thanks.