On Thu, Dec 13, 2012 at 2:03 AM, Al Varnell <[email protected]> wrote:
> Looks like Dr. Web finally got around to uploading "Trojan.SMSSend.3666" to > VirusTotal here > < > https://www.virustotal.com/file/0e8269e425123e3b9a8c7adc94fa5ba5e60f934db3e > b61f43eeebeb40ad21654/analysis/>. Dr. Web's write-up is here > <http://news.d rweb.com/show/?i=3138>. Apple has updated their system > calling it "OSX.SMSSend.i". > > Sorry, I would have uploaded it to ClamAV but VirusTotal denied me access > to > their sample database saying that I need to use the ClamAV corporate > account > to do so. You should have no trouble obtaining it directly from them. > > > -Al- > > -- > Al Varnell > Mountain View, CA > > > _______________________________________________ > Help us build a comprehensive ClamAV guide: visit http://wiki.clamav.net > http://www.clamav.net/support/ml > Thanks for the heads up. We have the sample (and ClamAV signature "Trojan.OSX.SMSsend.A" in daily.cvd). Dave R. -- --- Dave Raynor Sourcefire Vulnerability Research Team [email protected] _______________________________________________ Help us build a comprehensive ClamAV guide: visit http://wiki.clamav.net http://www.clamav.net/support/ml
