PDA

View Full Version : virus in free proxy software



Classic
2006-09-26, 12:24
My humble apologies if this is the wrong place to post. Thought I should tell someone, and since I use and trust Spybot S&D I joined forum just to say:
in the free proxy software 'socksfarm' from w3.proxyfarm.com, there is a virus. No idea what as my software (avast) flagged it with a big alert when I scanned the downloaded zipfile, and I deleted it. That's all. If posting inappropriate, again my apologies, and all the very best to you all.
PS That'll teach me to try and surf anonymously :)

bitman
2006-09-26, 16:09
What you should do in such a case (virus) is submit the file to VirusTotal (http://www.virustotal.com).

They will test it using almost 30 antivirus engines with current detections and give you a report of the results. They will also provide the file and results to these antivirus vendors to update their database if necessary.

Here are the results for the Socksfarm zip file from that site:


Complete scanning result of "socksfarm_1.0.zip", processed in VirusTotal at 09/26/2006 15:34:20 (CET).

[ file data ]
* name: socksfarm_1.0.zip
* size: 916493
* md5.: 6e617c0e0ae98b8c75e262a4d88cda14
* sha1: 28d00602839789ea1c45fcdb8b53b4e0d51d7e4b

[ scan result ]
AntiVir 7.2.0.18/20060926 found nothing
Authentium 4.93.8/20060925 found nothing
Avast 4.7.892.0/20060926 found [Win32:Trojan-gen. {Delphi}]
AVG 386/20060925 found nothing
BitDefender 7.2/20060926 found nothing
CAT-QuickHeal 8.00/20060926 found nothing
ClamAV devel-20060426/20060926 found nothing
DrWeb 4.33/20060926 found [Trojan.DownLoader.9459]
eTrust-InoculateIT 23.73.5/20060926 found nothing
eTrust-Vet 30.3.3102/20060926 found nothing
Ewido 4.0/20060926 found [Downloader.Small]
F-Prot 3.16f/20060925 found nothing
F-Prot4 4.2.1.29/20060925 found nothing
Fortinet 2.82.0.0/20060926 found nothing
Ikarus 0.2.65.0/20060926 found nothing
Kaspersky 4.0.2.24/20060926 found nothing
McAfee 4859/20060925 found nothing
Microsoft 1.1603/20060926 found nothing
NOD32v2 1.1776/20060926 found nothing
Norman 5.80.02/20060926 found nothing
Panda 9.0.0.4/20060926 found nothing
Sophos 4.10.0/20060926 found nothing
Symantec 8.0/20060926 found nothing
TheHacker 6.0.1.081/20060926 found nothing
UNA 1.83/20060925 found nothing
VBA32 3.11.1/20060925 found [Trojan.DownLoader.9459]
VirusBuster 4.3.7:9/20060926 found nothing

__________________________________________________
VirusTotal is a free service offered by Hispasec Sistemas. There are no guarantees about the availability and continuity of this service. Do not reply to this message. It has been generated by an automatic address that will not handle any reply. Although the detection rate afforded by the use of multiple antivirus engines is far superior to that offered by just one product, these results DO NOT guarantee the harmlessness of a file. Currently, there is not any solution that offers a 100% effectiveness rate for detecting viruses and malware.

Note that only four AV products found something, though they tend to agree on some kind of Trojan Downloader. With this kind of result, I'd stay away from the file.

Bitman