Also, two days after posting an undetected virus to a public and open mailing list for infosec, as well as someone distributing it via SPAM, here are the virustotal results: 14 of 32 detect it, even though it seems that VirusTotal is using yesterdays scan engine for some of them:
Antivirus Version Last Update Result AhnLab-V3 2007.12.8.0 2007.12.07 - AntiVir 7.6.0.40 2007.12.07 TR/Agent.dcb.6 Authentium 4.93.8 2007.12.06 - Avast 4.7.1098.0 2007.12.06 - AVG 7.5.0.503 2007.12.07 Agent.LCC BitDefender 7.2 2007.12.07 - CAT-QuickHeal 9.00 2007.12.07 Trojan.Agent.dcb ClamAV 0.91.2 2007.12.07 - DrWeb 4.44.0.09170 2007.12.07 - eSafe 7.0.15.0 2007.12.06 Win32.Agent.dcb eTrust-Vet 31.3.5359 2007.12.07 - Ewido 4.0 2007.12.07 - FileAdvisor 1 2007.12.07 - Fortinet 3.14.0.0 2007.12.07 W32/Agent.DCB!tr F-Prot 4.4.2.54 2007.12.06 - F-Secure 6.70.13030.0 2007.12.07 Trojan.Win32.Agent.dcb Ikarus T3.1.1.12 2007.12.07 Trojan.Win32.Agent.dcb Kaspersky 7.0.0.125 2007.12.07 Trojan.Win32.Agent.dcb McAfee 5179 2007.12.06 - Microsoft 1.3007 2007.12.07 - NOD32v2 2709 2007.12.07 - Norman 5.80.02 2007.12.07 W32/Agent.DMGO Panda 9.0.0.4 2007.12.06 Suspicious file Prevx1 V2 2007.12.07 Trojan.Agent Rising 20.21.42.00 2007.12.07 - Sophos 4.24.0 2007.12.07 Mal/VBAgt-A Sunbelt 2.2.907.0 2007.12.07 - Symantec 10 2007.12.07 - TheHacker 6.2.9.152 2007.12.07 Trojan/Agent.dcb VBA32 3.12.2.5 2007.12.05 - VirusBuster 4.3.26:9 2007.12.07 - Webwasher-Gateway 6.6.2 2007.12.07 Trojan.Agent.dcb.6 _______________________________________________ Fun and Misc security discussion for OT posts. https://linuxbox.org/cgi-bin/mailman/listinfo/funsec Note: funsec is a public and open mailing list.
