There are some malicious scripts contain YSZZ 0.9 vip and JSXX 0.44 vip Does NOD32 Antivirus 5.2.9.1 protect from 'YSZZ 0.9 vip' and Gondad Exploit Kit(JSXX 0.44 vip) now?
Unfortunately, I don't remember the Website URL address now. By the way AVG can detect Gondad Exploit Kit with JSXX 0.44 vip JavaScript Encrypter at that time. I could get some info about KaiXin Exploit Pack with Javascript encrypter Yszz 0.7 vip ( [xttp://www.kahusecurity.com/2012/new-chinese-exploit-pack/ ). Of course I believe Yszz 0.9 vip is newer version. I'm using ESET NOD32 at my home so I don't want to take a risk. I just hope that ESET NOD32 also can detect those things.
No one knows ESET NOD32 can protect from KaiXin Exploit Pack with Javascript encrypter Yszz 0.9 vip and Gondad Exploit Kit with JSXX 0.44 vip JavaScript Encrypter or cannot protect? [PCMag - Study: 7 of 13 Top Rated Antivirus Fail Against HTTPS Exploits] http://securitywatch.pcmag.com/none...p-rated-antivirus-fail-against-https-exploits
According to VirusTotal, ESET detects the KaiXin Exploit Pack as Win32/PSW.OnLineGames with various extension updates as new encryptions and versions have been created. The Java exploits talked about in Kahusecurity's blog post about the KaiXin Exploit Pack lists 3 Java Exploits (Rhino, Atomic and Applet Field) which are covered by ESET Bloggers here, here and here and all are detected by ESET with the latest versions of these files/exploits being added in the last few days. I suspect we'll see even more as they continue to evolve. ESET Malware Researcher Sébastien Duquette also wrote a blog about it back in October. The link you posted refers to an article about an NSS Labs test result that we've already covered here.