Wilders Security Forums  

Go Back   Wilders Security Forums > Official ESET Support Forum > ESET Home Users Products Forum > ESET NOD32 Antivirus
User Name
Password
Register FAQ Members List Calendar Search Today's Posts Mark Forums Read

 
 
Thread Tools Search this Thread
  #1  
Old October 12th, 2008, 01:45 PM
miki75 miki75 is offline
Infrequent Poster
 
Join Date: Oct 2008
Location: Italy
Posts: 7
Unhappy ESET NOD32 Antivirus don't detect these viruses

Hi,

2 problems with ESET database and real time antivirus, because don't detect these files:

- this malware got from web pages: 0xf9.exe
and here the result form Virus Total: ~Link removed per Policy. - Ron~

- this MBR rootkit got from a regular web site (but was hacked and infected): ROOTKIT INFECTION - index.pdf
and here the result form Virus Total: ~Link removed per Policy. - Ron~
The first don't give me problems, because was a malware and I have blocked it (manually)
but the second (the rootkit) give me many many problems and I have removed using GMER and mbr.exe
The PC is vulnerable only when Acrobat is a version below 8.1.2,
because version 8.1.1 and below have security problems.
But also in this case, NOD32 should detect and block this !!!

All files are on this zip file: Snipped: link removed. Posting links to malware is against TOS.

Regards

Miki

Last edited by ronjor : October 12th, 2008 at 02:29 PM. Reason: Virus Total/Jotti links removed
  #2  
Old October 12th, 2008, 01:55 PM
Marcos Marcos is offline
Eset Moderator
 
Join Date: Nov 2002
Posts: 14,185
Default Re: ESET NOD32 Antivirus don't detect these viruses

As you can see, there are very few AVs that detect these files. As always, if you come across a suspicious file send it in a RAR archive (or compressed with another ordinary packer) protected with the password "infected" to samples[at]eset.com with as much information about the files as possible.
  #3  
Old October 12th, 2008, 02:50 PM
Kosak's Avatar
Kosak Kosak is offline
Frequent Poster
 
Join Date: Jul 2007
Location: Slovakia
Posts: 711
Default Re: ESET NOD32 Antivirus don't detect these viruses

Hello miki, check, if NOD32 with the newest Antistealth module saw that files. This you can recognize, when you enable logging all objects or use ECLS.
 

Wilders Security Forums > Official ESET Support Forum > ESET Home Users Products Forum > ESET NOD32 Antivirus « Previous Thread | Next Thread »

Thread Tools Search this Thread
Search this Thread:

Advanced Search

Posting Settings
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

vB code is On
Smilies are On
[IMG] code is On
HTML code is Off
Forum Jump


All times are GMT -4. The time now is 05:40 PM.


Powered by vBulletin® Copyright ©2000 - 2013, Jelsoft Enterprises Ltd.
Copyright ©2002 - 2013, Wilders Security Forums