Virus sample

Duis mollis, est non commodo luctus, nisi erat porttitor ligula, eget lacinia odio sem nec elit. Sed posuere consectetur est at lobortis. Vestibulum id ligula porta felis euismod semper. Donec ullamcorper nulla non metus auctor fringilla. Aenean lacinia bibendum nulla sed consectetur. Cras justo odio, dapibus ac facilisis in, egestas eget quam. Cras mattis consectetur purus sit amet fermentum. Morbi leo risus, porta ac consectetur ac, vestibulum at eros. Sed posuere consectetur est at lobortis. Etiam porta sem malesuada magna mollis euismod. Cum sociis natoque penatibus et magnis dis parturient montes, nascetur ridiculus mus. Duis mollis, est non commodo luctus, nisi erat porttitor ligula, eget lacinia odio sem nec elit. Cras justo odio, dapibus ac facilisis in, egestas eget quam. Aenean eu leo quam. Pellentesque ornare sem lacinia quam venenatis vestibulum. Curabitur blandit tempus porttitor. Sed posuere consectetur est at lobortis.


HorstL wrote:

What's about rootkits. A few friends of me had a inadvertently meeting with them last year. I had no chance to rescue their systems. Rootkits are very aggressive. There are only a few tools which recognize them and destroy them. On their PC's the security suites are destroyed by the rootkits. Trying to scan with several Antirootkit/ Antivirus engines ... (ClamAV the clamav.exe disappeared in the moment it was on the HDD the same with Avira's Antivirus scan-engine.) No tool worked for me. This rootkit ( I forget its name) gave me no chance. :-(

 

Cheerio

Lars 

 


Offcourse this is for rootkits as well. I meant all kinds of malware

Maybe it is a idea to talk virus samples? Help people out with virus problems?

That's certainly one of the things we had in mind when we were planning through the beta; we thought people would want to discuss malware infections (of all varieties). Go for it!

 

As a side note, we added a specialized antirootkit engine a while back that was internally called VxMS. It's performed well in both internal testing and reviews, even against stand-alone rootkit scanners. Give it a go with NAV/NIS08 if you encounter a similar situation in the future and let us know about your experience. As you point out, rootkits can be exceptionally nasty and we've seen some unusual stuff in the past 12 months. There was one that created an EFS partition and dropped itself into it in order to protect itself from removal. Pretty darn clever but not undefeatable (though it did require an engine update).


davecole wrote:

That's certainly one of the things we had in mind when we were planning through the beta; we thought people would want to discuss malware infections (of all varieties). Go for it!

 

As a side note, we added a specialized antirootkit engine a while back that was internally called VxMS. It's performed well in both internal testing and reviews, even against stand-alone rootkit scanners. Give it a go with NAV/NIS08 if you encounter a similar situation in the future and let us know about your experience. As you point out, rootkits can be exceptionally nasty and we've seen some unusual stuff in the past 12 months. There was one that created an EFS partition and dropped itself into it in order to protect itself from removal. Pretty darn clever but not undefeatable (though it did require an engine update).


Thanx
Perhaps a separate section will be much handy just for malware discussions/ problems

What's about rootkits. A few friends of me had a inadvertently meeting with them last year. I had no chance to rescue their systems. Rootkits are very aggressive. There are only a few tools which recognize them and destroy them. On their PC's the security suites are destroyed by the rootkits. Trying to scan with several Antirootkit/ Antivirus engines ... (ClamAV the clamav.exe disappeared in the moment it was on the HDD the same with Avira's Antivirus scan-engine.) No tool worked for me. This rootkit ( I forget its name) gave me no chance. :-(

 

Cheerio

Lars