Still detected as :
com.apple.audio.driver: Osx.Trojan.ColdrootRAT-6492296-0 FOUND


Le 03/04/2018 à 15:26, Al Varnell a écrit :
Begin forwarded message:

From: nore...@sourcefire.com
Subject: [clamav-virusdb] Signatures Published daily - 24446
Date: April 3, 2018 at 6:08:03 AM PDT
To: clamav-viru...@lists.clamav.net

Dropped Detection Signatures:


    * Osx.Malware.Agent-6453877-0

Not sure why you would drop this as it's clearly part of the OSX.Coldroot RAT

VT: 
<https://www.virustotal.com/en/file/d7cd18d3e6929dd1e5c12613f9a937fd45f75aa6e0ecee70908d2638f6b3ce7c/analysis/
 
<https://www.virustotal.com/en/file/d7cd18d3e6929dd1e5c12613f9a937fd45f75aa6e0ecee70908d2638f6b3ce7c/analysis/>>

<https://objective-see.com/blog/blog_0x2A.html 
<https://objective-see.com/blog/blog_0x2A.html>>


-Al-



_______________________________________________
clamav-users mailing list
clamav-users@lists.clamav.net
http://lists.clamav.net/cgi-bin/mailman/listinfo/clamav-users


Help us build a comprehensive ClamAV guide:
https://github.com/vrtadmin/clamav-faq

http://www.clamav.net/contact.html#ml


--
Cordialement / Best regards,

Arnaud Jacques
Gérant de SecuriteInfo.com

Téléphone : +33-(0)3.44.39.76.46
E-mail : a...@securiteinfo.com
Site web : https://www.securiteinfo.com
Facebook : https://www.facebook.com/pages/SecuriteInfocom/132872523492286
Twitter : @SecuriteInfoCom

Securiteinfo.com
La Sécurité Informatique - La Sécurité des Informations.
266, rue de Villers
60123 Bonneuil en Valois
_______________________________________________
clamav-users mailing list
clamav-users@lists.clamav.net
http://lists.clamav.net/cgi-bin/mailman/listinfo/clamav-users


Help us build a comprehensive ClamAV guide:
https://github.com/vrtadmin/clamav-faq

http://www.clamav.net/contact.html#ml

Reply via email to