safe or not?

safe or not?

Secure Home | Search | About
 Anti-Virus Software    Post an article   get this group's latest topics as an RSS feed add this group's latest topics to your My MSN content add this group's latest topics to your My Yahoo content add this group's latest topics to your Google content
Subject Author Date
safe or not? badgolferman 11-26-2006
---> Re: safe or not? David H. Lipman11-27-2006
Posted by badgolferman on November 26, 2006, 11:17 pm
If you were  Registered and logged in, you could reply and use other advanced thread options
From http://virusscan.jotti.org/

File: Servant.Salamander.v2.50.RC2-rG.zip
Status: INFECTED/MALWARE
MD5 75dc0859df4a4bcd9e35bc3830f3efa3
Packers detected: PE_PATCH.UPX, UPX
Scanner results
AntiVir Found Heuristic/Malware (probable variant)
ArcaVir Found nothing
Avast Found nothing
AVG Antivirus Found nothing
BitDefender Found Trojan.Downloader.Zlob.AZV
ClamAV Found nothing
Dr.Web Found nothing
F-Prot Antivirus Found nothing
F-Secure Anti-Virus Found Trojan-Downloader.Win32.Zlob.ban
Fortinet Found nothing
Kaspersky Anti-Virus Found Trojan-Downloader.Win32.Zlob.ban
NOD32 Found nothing
Norman Virus Control Found nothing
VirusBuster Found nothing
VBA32 Found nothing

Posted by badgolferman on November 26, 2006, 11:30 pm
If you were  Registered and logged in, you could reply and use other advanced thread options
badgolferman, 11/26/2006,11:17:43 PM, wrote:

> From http://virusscan.jotti.org/
>
> File: Servant.Salamander.v2.50.RC2-rG.zip
> Status: INFECTED/MALWARE
> MD5 75dc0859df4a4bcd9e35bc3830f3efa3
> Packers detected: PE_PATCH.UPX, UPX
> Scanner results
> AntiVir Found Heuristic/Malware (probable variant)
> ArcaVir Found nothing
> Avast Found nothing
> AVG Antivirus Found nothing
> BitDefender Found Trojan.Downloader.Zlob.AZV
> ClamAV Found nothing
> Dr.Web Found nothing
> F-Prot Antivirus Found nothing
> F-Secure Anti-Virus Found Trojan-Downloader.Win32.Zlob.ban
> Fortinet Found nothing
> Kaspersky Anti-Virus Found Trojan-Downloader.Win32.Zlob.ban
> NOD32 Found nothing
> Norman Virus Control Found nothing
> VirusBuster Found nothing
> VBA32 Found nothing

-----------------------

Additional information:
http://www.virustotal.com/en/indexf.html

Antivirus Version Update Result
AntiVir 7.2.0.46 11.26.2006 DR/Zlob.Gen
Authentium 4.93.8 11.24.2006 no virus found
Avast 4.7.892.0 11.23.2006 no virus found
AVG 386 11.27.2006 Downloader.Zlob.DX
BitDefender 7.2 11.27.2006 Trojan.Downloader.Zlob.AZV
CAT-QuickHeal 8.00 11.25.2006 no virus found
ClamAV devel-20060426 11.25.2006 no virus found
DrWeb 4.33 11.26.2006 no virus found
eSafe 7.0.14.0 11.26.2006 suspicious Trojan/Worm
eTrust-InoculateIT 23.73.67 11.25.2006 no virus found
eTrust-Vet 30.3.3211 11.24.2006 no virus found
Ewido 4.0 11.26.2006 no virus found
Fortinet 2.82.0.0 11.27.2006 suspicious
F-Prot 3.16f 11.24.2006 no virus found
F-Prot4 4.2.1.29 11.24.2006 no virus found
Ikarus 0.2.65.0 11.24.2006 Trojan-Downloader.Win32.Zlob.aof
Kaspersky 4.0.2.24 11.27.2006 Trojan-Downloader.Win32.Zlob.ban
McAfee 4904 11.24.2006 no virus found
Microsoft 1.1804 11.27.2006 no virus found
NOD32v2 1882 11.24.2006 no virus found
Norman 5.80.02 11.24.2006 no virus found
Panda 9.0.0.4 11.26.2006 no virus found
Prevx1 V2 11.27.2006 Trojan.Zlob.Gen
Sophos 4.11.0 11.16.2006 no virus found
TheHacker 6.0.3.124 11.27.2006 no virus found
UNA 1.83 11.24.2006 no virus found
VBA32 3.11.1 11.26.2006 no virus found
VirusBuster 4.3.15:9 11.26.2006 no virus found

Posted by Virus Guy on November 26, 2006, 11:59 pm
If you were  Registered and logged in, you could reply and use other advanced thread options
badgolferman wrote:

> File: Servant.Salamander.v2.50.RC2-rG.zip
> Status: INFECTED/MALWARE
> MD5 75dc0859df4a4bcd9e35bc3830f3efa3
> Packers detected: PE_PATCH.UPX, UPX
>
> BitDefender Found Trojan.Downloader.Zlob.AZV
> F-Secure Anti-Virus Found Trojan-Downloader.Win32.Zlob.ban
> Kaspersky Anti-Virus Found Trojan-Downloader.Win32.Zlob.ban
> AntiVir 7.2.0.46 11.26.2006 DR/Zlob.Gen
> AVG 386 11.27.2006 Downloader.Zlob.DX
> eSafe 7.0.14.0 11.26.2006 suspicious Trojan/Worm
> Ikarus 0.2.65.0 11.24.2006 Trojan-Downloader.Win32.Zlob.aof
> Prevx1 V2 11.27.2006 Trojan.Zlob.Gen

Where did you get the file?

Probably from here:

http://nzbmatrix.com/nzb-details.php?id=40602

Heh. Do a google search for this:

Servant.Salamander.v2.50.

Google gives a warning on the first result:

http://www.google.ca/interstitial?url=http://crackzplanet.com/servant.salamander.v2.5/search_servant%2Bsalamander%2Bv2.5_crack_keygen_serial_nocd_cracked.html

"Warning - visiting this web site may harm your computer!"

Since the file you have is a .zip, why don't you try unzipping it to
it's own directory and then submit the internal files separately to
VirusTotal and see which one is viral.

Posted by David H. Lipman on November 27, 2006, 6:30 pm
If you were  Registered and logged in, you could reply and use other advanced thread options

| From http://virusscan.jotti.org/
|
| File: Servant.Salamander.v2.50.RC2-rG.zip
| Status: INFECTED/MALWARE
| MD5 75dc0859df4a4bcd9e35bc3830f3efa3
| Packers detected: PE_PATCH.UPX, UPX
| Scanner results
| AntiVir Found Heuristic/Malware (probable variant)
| ArcaVir Found nothing
| Avast Found nothing
| AVG Antivirus Found nothing
| BitDefender Found Trojan.Downloader.Zlob.AZV
| ClamAV Found nothing
| Dr.Web Found nothing
| F-Prot Antivirus Found nothing
| F-Secure Anti-Virus Found Trojan-Downloader.Win32.Zlob.ban
| Fortinet Found nothing
| Kaspersky Anti-Virus Found Trojan-Downloader.Win32.Zlob.ban
| NOD32 Found nothing
| Norman Virus Control Found nothing
| VirusBuster Found nothing
| VBA32 Found nothing

No ZLob Trojan is safe !


--
Dave
http://www.claymania.com/removal-trojan-adware.html
http://www.ik-cs.com/got-a-virus.htm



Posted by badgolferman on November 27, 2006, 8:49 pm
If you were  Registered and logged in, you could reply and use other advanced thread options
David H. Lipman, 11/27/2006,6:30:41 PM, wrote:

>
> > From http://virusscan.jotti.org/
> >
> > File: Servant.Salamander.v2.50.RC2-rG.zip
> > Status: INFECTED/MALWARE
> > MD5 75dc0859df4a4bcd9e35bc3830f3efa3
> > Packers detected: PE_PATCH.UPX, UPX
> > Scanner results
> > AntiVir Found Heuristic/Malware (probable variant)
> > ArcaVir Found nothing
> > Avast Found nothing
> > AVG Antivirus Found nothing
> > BitDefender Found Trojan.Downloader.Zlob.AZV
> > ClamAV Found nothing
> > Dr.Web Found nothing
> > F-Prot Antivirus Found nothing
> > F-Secure Anti-Virus Found Trojan-Downloader.Win32.Zlob.ban
> > Fortinet Found nothing
> > Kaspersky Anti-Virus Found Trojan-Downloader.Win32.Zlob.ban
> > NOD32 Found nothing
> > Norman Virus Control Found nothing
> > VirusBuster Found nothing
> > VBA32 Found nothing
>
> No ZLob Trojan is safe !

What am I to make of all the other programs not tagging it as malware,
especially NOD32 which is what I have on my sytem?

Similar ThreadsPosted
how safe am I? June 22, 2005, 12:01 pm
Scanning in safe mode? January 12, 2006, 6:40 am
Is there a safe way to check out an EXE file? January 30, 2006, 11:30 am
Vundo remover safe? April 18, 2006, 12:45 am
NAV won't scan in safe mode May 2, 2006, 11:57 pm
Re: Is the BugHunter backdoor Trojan safe to run on my PC? February 24, 2007, 1:34 pm
Re: Is the BugHunter backdoor Trojan safe to run on my PC? February 24, 2007, 10:23 pm
Problem running AV-CLS in Safe Mode January 1, 2008, 4:21 pm
Cwshredder problems? Safe place to download msconfig.exe? February 24, 2006, 7:09 pm
Exploit Prevention Labs Updates LinkScanner Safe Surfing Product Line With Support for Vista and Firefox (SYS-CON Media) February 11, 2007, 9:02 am

The site map in XML format XML site map

Contact Us | Privacy Policy