PDA

View Full Version : Thank you TDS3


Infosecnyc
March 1st, 2004, 12:05 AM
Scan Control Dumped @ 23:03:36 29-02-04
(DELETED) Positive identification: Rootkit.Vanquish 0.2.0 Bind
File: c:\program files\microsoft visual studio\common\tools\bind.exe

No other trojan/virus scanner picked this up.

Thanks Again!

I also wanted to ask, TDS3 has identified pscan.exe in a GFI Product as Adware,
I was wondering if I can get more information on this pscan.exe file.
I see it is added to Random GFI products/installs.

Thank you Again.
You guys rock, and please keep up the great work.

Jooske
March 1st, 2004, 01:37 AM
Hello Infosecnyc and welcome to the forum!
Happy to hear your great success! You might like in future cases to find the nasty, zip it and submit it to the TDS lab, where Gavin will tell you if there is something special to do more! This is for the bind.exe as well as the other pscan.exe to see if there could be something wrong. submit@diamondcs.com.au

gkweb
March 1st, 2004, 10:18 AM
-{ Quote: "
Positive identification: Rootkit.Vanquish 0.2.0 Bind
File: c:\program files\microsoft visual studio\common\tools\bind.exe
" }-

False positive i think, i got the same with the lastest database.
Sent to Gavin for analyse ;)