Here's my list of vendor submission addresses, many of which initially came from Nick Fitzgerald.
[EMAIL PROTECTED] avsubmit.symantec.com [EMAIL PROTECTED] [EMAIL PROTECTED] [EMAIL PROTECTED] [EMAIL PROTECTED] [EMAIL PROTECTED] [EMAIL PROTECTED] [EMAIL PROTECTED] [EMAIL PROTECTED] [EMAIL PROTECTED] [EMAIL PROTECTED] [EMAIL PROTECTED] [EMAIL PROTECTED] [EMAIL PROTECTED] [EMAIL PROTECTED] Most of these want you to send it in a password protected zip file with a password 'infected'. Some of them want the password to be 'virus'. I tend to just send two zip files to everyone on my distribution list. If anyone knows of any others, I'd appreciate the info. -John > -----Original Message----- > From: Scenobro [mailto:[EMAIL PROTECTED] > Sent: Thursday, September 02, 2004 9:00 PM > To: [EMAIL PROTECTED] > Subject: [Full-Disclosure] Where to submit a suspected trojan > or virus? > > > I found an explorer.exe in my system32 folder which I believe take > precedence over the real explorer.exe located in c:\windows. > It's a 92K file that seems to be a visual basic program. Among the > strings contained in it there is a "C:\TestDL.exe" which I > didn't find > on my disk and a url > "http://www.getupdate.com/TestDownload.exe" which > does't exists. (the home page of that site is a textfile > containing only > "SB2"). > I sent the file to virustotal.com and they found nothing. > Where I can send this file for analysis? > > _______________________________________________ > Full-Disclosure - We believe in it. > Charter: http://lists.netsys.com/full-disclosure-charter.html > _______________________________________________ Full-Disclosure - We believe in it. Charter: http://lists.netsys.com/full-disclosure-charter.html
