[Dshield] Possible New Worm/Virus/Trojan

Paul Ferguson fergdawg at netzero.net
Fri Apr 18 17:38:36 GMT 2008


-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

- -- jayjwa <jayjwa at atr2.ath.cx> wrote:

>On Thu, 17 Apr 2008, Paul Ferguson wrote:
>
>-> 
>-> It's a new Pandex Trojan agent.
>
>
>There are now so many win32 malwares with that name that a search yields
>about  
10 different families. None of the posts seemed recent enough to be this
one.
>

Well, that is an unfortunate byproduct of the AV industry -- too
many names for the same malware.

In any event, that is what it was -- we (Trend Micro) received
a sample early yesterday...

- - ferg

-----BEGIN PGP SIGNATURE-----
Version: PGP Desktop 9.6.3 (Build 3017)

wj8DBQFICNyXq1pz9mNUZTMRAuCIAJ9nlRA6bU9qE+DFp8dLSK31b2UHqwCgoBT7
mKt90xLwwY9LflgWjQCYg8g=
=rFnP
-----END PGP SIGNATURE-----


--
"Fergie", a.k.a. Paul Ferguson
 Engineering Architecture for the Internet
 fergdawg(at)netzero.net
 ferg's tech blog: http://fergdawg.blogspot.com/




More information about the list mailing list