[clamav-users] More fp's. Now its almost everything that has been zipped.

Al Varnell alvarnell at mac.com
Sun Dec 25 10:40:32 UTC 2016


A handful of ClamXav users can confirm the Firefox omni.ja:Win.Trojan.Toa-5370234-0. It also identified some Adobe products as infected when run through QA.

Reported as FP.

-Al-

On Dec 24, 2016, at 9:08 PM, Gene Heskett <gheskett at shentel.net> wrote:

> Hi all. I am drowning in these for a couple days now.
> 
> /home/gene/Download/firefox/omni.ja: Win.Trojan.Toa-5370234-0 FOUND
> /home/gene/Download/7i43.zip: Win.Trojan.Toa-5372190-0 FOUND
> /home/gene/Download/5i25.zip: Win.Trojan.Toa-5372190-0 FOUND
> /home/gene/firefox/omni.ja: Win.Trojan.Toa-5370234-0 FOUND
> /home/gene/Public/7i92.zip: Win.Trojan.Toa-5372190-0 FOUND
> /home/gene/Public/5i25.zip: Win.Trojan.Toa-5372190-0 FOUND
> /home/gene/.mozilla/firefox/2fv0cbez.default/extensions/firebug at software.joehewitt.com.xpi: 
> Win.Trojan.Toa-5366523-0 FOUND
> /home/gene/.mozilla/Default User/zm63kxty.slt/Cache/61E7CF65d01: 
> Win.Trojan.Toa-5370234-0 FOUND
> /home/gene/Mail/inbox/cur/1458140602.5547.Pz3b3:2,S: 
> Win.Trojan.Toa-5370439-0 FOUND
> /home/gene/Mail/coco/cur/1423220414.32681.j29Bg:2,S: 
> Win.Trojan.Toa-5372190-0 FOUND
> /home/gene/Mail/coco/cur/1423220351.32681.5q7Ex:2,S: 
> Win.Trojan.Toa-5370085-0 FOUND
> /home/gene/Mail/sent-mail/cur/1464364674.1042.tmhLu:2,S: 
> Win.Trojan.Toa-5372190-0 FOUND
> /home/gene/bin/firefox/omni.ja: Win.Trojan.Toa-5370234-0 FOUND
> /home/gene/Downloads/Download/opti_8_1_08_2209.zip: 
> Win.Trojan.Toa-5371146-0 FOUND
> /home/gene/Downloads/5i25(1).zip: Win.Trojan.Toa-5372190-0 FOUND
> /home/gene/Downloads/5i25.zip: Win.Trojan.Toa-5372190-0 FOUND
> /home/gene/Downloads/SeaToolsDOS223ALL.ISO: Win.Trojan.Toa-5371146-0 
> FOUND
> 
> Cheers, Gene Heskett
> -- 
> "There are four boxes to be used in defense of liberty:
> soap, ballot, jury, and ammo. Please use in that order."
> -Ed Howdershelt (Author)
> Genes Web page <http://geneslinuxbox.net:6309/gene>
> 
> 
> _______________________________________________
> clamav-users mailing list
> clamav-users at lists.clamav.net
> http://lists.clamav.net/cgi-bin/mailman/listinfo/clamav-users
> 
> 
> Help us build a comprehensive ClamAV guide:
> https://github.com/vrtadmin/clamav-faq
> 
> http://www.clamav.net/contact.html#ml

-Al-
-- 
Al Varnell
Mountain View, CA




-------------- next part --------------
A non-text attachment was scrubbed...
Name: smime.p7s
Type: application/pkcs7-signature
Size: 3573 bytes
Desc: not available
URL: <https://lists.clamav.net/pipermail/clamav-users/attachments/20161225/45036dae/attachment.bin>


More information about the clamav-users mailing list