[clamav-virusdb] Update (daily: 19422)

Douglas Gastonguay-Goddard noreply at sourcefire.com
Tue Sep 23 15:55:52 UTC 2014


ClamAV database updated (23 Sep 2014 11-52 -0400): daily.cvd
Version: 19422

Submission-ID: 572454903
Sender: Anonymous
Submission notes: Already detected as Rar.Suspect.ExecutableFax-rarpwd
Added: No
Submission notes: Already detected as Zip.Suspect.ExecutableFax-zippwd-1
Added: No
Submission notes: Already detected as Rar.Suspect.ExecutableScan-rarpwd
Added: No
Submission notes: Already detected as Zip.Suspect.ExecutableScan-zippwd-1
Added: No
Submission notes: Already detected as Zip.Suspect.ExecutablePhoto-zippwd-1
Added: No
Submission notes: Already detected as Rar.Suspect.ExecutablePhoto-rarpwd-1
Added: No
Added: Rar.Suspect.MiscDoubleExtension-rarpwd-5
Added: Zip.Suspect.MacroDoubleExtension-zippwd-5
Added: Zip.Suspect.WinDoubleExtension-zippwd-2
Added: Rar.Suspect.MacroDoubleExtension-rarpwd-4

Submission-ID: 591840873
Sender: Virus Total
Sender: Nicole Studer
Submission notes: Thanks. Yea, the problem is the double extension. I think I will revise this signature to 
Submission notes: not include the .lnk as a malicious extension (even though it can be used in attacks) since 
Submission notes: it is causing some FPs. 
Submission notes: 
Submission notes: Expect to see a correction in the next few days. 
Submission notes: 
Submission notes: Thanks,
Submission notes: Doug
Added: No

Submission-ID: 591858821
Sender: Virus Total
Sender: Anonymous
Submission notes: Same as in Submission-ID 538545429
Added: No

Submission-ID: 591858909
Sender: Virus Total
Sender: Anonymous
Submission notes: Same as in Submission-ID 538545429
Added: No

Submission-ID: 591859583
Sender: Virus Total
Sender: Anonymous
Submission notes: Same as in Submission-ID 538545429
Added: No

Submission-ID: 591860135
Sender: Virus Total
Sender: Anonymous
Submission notes: Same as in Submission-ID 538545429
Added: No

Submission-ID: 591860385
Sender: Virus Total
Sender: Anonymous
Submission notes: Same as in Submission-ID 538545429
Added: No

Submission-ID: 591860571
Sender: Virus Total
Sender: Anonymous
Submission notes: Same as in Submission-ID 538545429
Added: No

Submission-ID: 591861713
Sender: Virus Total
Sender: Anonymous
Submission notes: Same as in Submission-ID 538545429
Added: No

Submission-ID: 591861991
Sender: Virus Total
Sender: Anonymous
Submission notes: Same as in Submission-ID 538545429
Added: No

Submission-ID: 591863297
Sender: Virus Total
Sender: Anonymous
Submission notes: Same as in Submission-ID 538545429
Added: No

Submission-ID: 591863361
Sender: Virus Total
Sender: Anonymous
Submission notes: Same as in Submission-ID 538545429
Added: No

Submission-ID: 591863781
Sender: Virus Total
Sender: Anonymous
Submission notes: Same as in Submission-ID 538545429
Added: No

Submission-ID: 591908867
Sender: Virus Total
Sender: Anonymous
Submission notes: Alerting as it should on the file:
Submission notes: 
Submission notes: compress_png.sh
Submission notes: 
Submission notes: You can whitelist the signature by adding a whitelist.ign file to your ClamAV database 
Submission notes: directory (for me, the path is: /usr/local/share/clamav/). In that file put the signature 
Submission notes: names that you do not want alerting, one per line. 
Added: No

Submission-ID: 591962993
Sender: Virus Total
Sender: Anonymous
Submission notes: Same as in Submission-ID 538545429
Added: No

Submission-ID: 591964149
Sender: Virus Total
Sender: Anonymous
Submission notes: Same as in Submission-ID 538545429
Added: No

Submission-ID: 591965321
Sender: Virus Total
Sender: Anonymous
Submission notes: Same as in Submission-ID 538545429
Added: No

Submission-ID: 592040597
Sender: Virus Total
Sender: Anonymous
Submission notes: Same as in Submission-ID 509157843
Added: No

Submission-ID: 592172763
Sender: Virus Total
Sender: Anonymous
Submission notes: Same as in Submission-ID 538545429
Added: No

Submission-ID: 592172949
Sender: Virus Total
Sender: Anonymous
Submission notes: Same as in Submission-ID 538545429
Added: No

Submission-ID: 592173359
Sender: Virus Total
Sender: Anonymous
Submission notes: Same as in Submission-ID 538545429
Added: No

Submission-ID: 592173507
Sender: Virus Total
Sender: Anonymous
Submission notes: Same as in Submission-ID 538545429
Added: No

Submission-ID: 592173723
Sender: Virus Total
Sender: Anonymous
Submission notes: Same as in Submission-ID 538545429
Added: No

Submission-ID: 592174581
Sender: Anonymous
Submission notes: Same as in Submission-ID 538545429
Added: No

Submission-ID: 592175169
Sender: Virus Total
Sender: Anonymous
Submission notes: Same as in Submission-ID 538545429
Added: No

Submission-ID: 592175253
Sender: Virus Total
Sender: Anonymous
Submission notes: Same as in Submission-ID 538545429
Added: No

Submission-ID: 592175771
Sender: Virus Total
Sender: Anonymous
Submission notes: Same as in Submission-ID 538545429
Added: No

Submission-ID: 592176459
Sender: Anonymous
Submission notes: Same as in Submission-ID 538545429
Added: No

Submission-ID: 592283741
Sender: Anonymous
Submission notes: Same as in Submission-ID 538545429
Added: No

Submission-ID: 592288477
Sender: Anonymous
Submission notes: Same as in Submission-ID 260123387
Added: No

Submission-ID: 592289705
Sender: Virus Total
Sender: Anonymous
Submission notes: Same as in Submission-ID 538545429
Added: No

Submission-ID: 592296995
Sender: Anonymous
Submission notes: Same as in Submission-ID 538545429
Added: No

Submission-ID: 592297125
Sender: Virus Total
Sender: Anonymous
Submission notes: Same as in Submission-ID 538545429
Added: No

Submission-ID: 592302829
Sender: Anonymous
Submission notes: Same as in Submission-ID 278663813
Added: No

Submission-ID: 592302827
Sender: Anonymous
Submission notes: Same as in Submission-ID 278054644
Added: No

Submission-ID: 592308519
Sender: Anonymous
Submission notes: Same as in Submission-ID 278054644
Added: No

Submission-ID: 592309343
Sender: Anonymous
Submission notes: Same as in Submission-ID 538545429
Added: No

Submission-ID: 592309815
Sender: Anonymous
Submission notes: Same as in Submission-ID 538545429
Added: No

Submission-ID: 592311159
Sender: Anonymous
Submission notes: Same as in Submission-ID 538545429
Added: No

Submission-ID: 592317169
Sender: Anonymous
Submission notes: Same as in Submission-ID 278663813
Added: No

Submission-ID: 592322959
Sender: Anonymous
Submission notes: Same as in Submission-ID 538545429
Added: No

Submission-ID: 592457069
Sender: Anonymous
Submission notes: Same as in Submission-ID 510968773
Added: No

Submission-ID: 592474837
Sender: Virus Total
Sender: Anonymous
Submission notes: Same as in Submission-ID 538545429
Added: No

Submission-ID: 592475413
Sender: Anonymous
Submission notes: Same as in Submission-ID 43191469
Added: No

Submission-ID: 592479759
Sender: Anonymous
Submission notes: Same as in Submission-ID 538545429
Added: No

Submission-ID: 592481363
Sender: Anonymous
Submission notes: Same as in Submission-ID 538545429
Added: No

Submission-ID: 592490465
Sender: Anonymous
Submission notes: Same as in Submission-ID 241916509
Added: No

Submission-ID: 592493689
Sender: Virus Total
Sender: Anonymous
Submission notes: Same as in Submission-ID 241916509
Added: No

Submission-ID: 592587683
Sender: Crowdstrike
Submission notes: Same as in Submission-ID 260123387
Added: No

Submission-ID: 592602823
Sender: Crowdstrike
Submission notes: Same as in Submission-ID 260123387
Added: No

Submission-ID: 592613673
Sender: Anonymous
Submission notes: Same as in Submission-ID 538545429
Added: No

Submission-ID: 592645349
Sender: Anonymous
Submission notes: Same as in Submission-ID 538545429
Added: No

Submission-ID: 592645585
Sender: Anonymous
Submission notes: Same as in Submission-ID 538545429
Added: No

Submission-ID: 592646349
Sender: Anonymous
Submission notes: Same as in Submission-ID 538545429
Added: No

Submission-ID: 592646623
Sender: Anonymous
Submission notes: Same as in Submission-ID 538545429
Added: No

Submission-ID: 592647341
Sender: Anonymous
Submission notes: Same as in Submission-ID 538545429
Added: No

Submission-ID: 592649075
Sender: Anonymous
Submission notes: Same as in Submission-ID 538545429
Added: No

Submission-ID: 592652669
Sender: Anonymous
Submission notes: Same as in Submission-ID 538545429
Added: No

Submission-ID: 592652967
Sender: Anonymous
Submission notes: Same as in Submission-ID 538545429
Added: No

Submission-ID: 592653921
Sender: Anonymous
Submission notes: Same as in Submission-ID 538545429
Added: No

Submission-ID: 592654569
Sender: Anonymous
Submission notes: Same as in Submission-ID 538545429
Added: No

Submission-ID: 592655287
Sender: Anonymous
Submission notes: Same as in Submission-ID 538545429
Added: No

Submission-ID: 592655853
Sender: Anonymous
Submission notes: Same as in Submission-ID 538545429
Added: No

Submission-ID: 592656909
Sender: Anonymous
Submission notes: Same as in Submission-ID 518334101
Added: No

Submission-ID: 592658315
Sender: Anonymous
Submission notes: Same as in Submission-ID 538545429
Added: No

Submission-ID: 592658349
Sender: Anonymous
Submission notes: Same as in Submission-ID 538545429
Added: No

Submission-ID: 592658459
Sender: Anonymous
Submission notes: Same as in Submission-ID 538545429
Added: No

Submission-ID: 592659231
Sender: Anonymous
Submission notes: Same as in Submission-ID 538545429
Added: No

Submission-ID: 592659749
Sender: Anonymous
Submission notes: Same as in Submission-ID 538545429
Added: No

Submission-ID: 592659847
Sender: Anonymous
Submission notes: Same as in Submission-ID 538545429
Added: No

Submission-ID: 592661505
Sender: Anonymous
Submission notes: Same as in Submission-ID 538545429
Added: No

Submission-ID: 592664765
Sender: Anonymous
Submission notes: Same as in Submission-ID 538545429
Added: No

Submission-ID: 592666161
Sender: Anonymous
Submission notes: Same as in Submission-ID 538545429
Added: No

Submission-ID: 592668217
Sender: Anonymous
Submission notes: Same as in Submission-ID 538545429
Added: No

Submission-ID: 592668545
Sender: Anonymous
Submission notes: Same as in Submission-ID 538545429
Added: No

Submission-ID: 592670157
Sender: Anonymous
Submission notes: Same as in Submission-ID 538545429
Added: No

Submission-ID: 592670383
Sender: Anonymous
Submission notes: Same as in Submission-ID 538545429
Added: No

Submission-ID: 592672379
Sender: Anonymous
Submission notes: Same as in Submission-ID 538545429
Added: No

Submission-ID: 592675107
Sender: Anonymous
Submission notes: Same as in Submission-ID 260123387
Added: No

Submission-ID: 592716629
Sender: Anonymous
Submission notes: Same as in Submission-ID 538545429
Added: No

Submission-ID: 592717735
Sender: Anonymous
Submission notes: Same as in Submission-ID 538545429
Added: No

Submission-ID: 592718181
Sender: Anonymous
Submission notes: Same as in Submission-ID 538545429
Added: No

Submission-ID: 592718757
Sender: Anonymous
Submission notes: Same as in Submission-ID 538545429
Added: No

Submission-ID: 592720761
Sender: Anonymous
Submission notes: Same as in Submission-ID 538545429
Added: No

Submission-ID: 592721417
Sender: Anonymous
Submission notes: Same as in Submission-ID 538545429
Added: No

Submission-ID: 592723461
Sender: Anonymous
Submission notes: Same as in Submission-ID 538545429
Added: No

Submission-ID: 592724001
Sender: Virus Total
Sender: Anonymous
Submission notes: Same as in Submission-ID 538545429
Added: No

Submission-ID: 592725189
Sender: Anonymous
Submission notes: Same as in Submission-ID 538545429
Added: No

Submission-ID: 592743439
Sender: Anonymous
Submission notes: Same as in Submission-ID 464641587
Added: No

Submission-ID: 592752351
Sender: Anonymous
Submission notes: Same as in Submission-ID 538545429
Added: No

Submission-ID: 592753689
Sender: Anonymous
Submission notes: Alerting on WEB-INF/lib/payment-core-2.1.0.jar 
Submission notes: 
Submission notes: We will revise this signature if we see more FPs of this type. Thank you.
Added: No

-- 
Best regards,
  Douglas Gastonguay-Goddard




More information about the clamav-virusdb mailing list