FYI…

- http://isc.sans.org/diary.php?storyid=1609
Last Updated: 2006-08-17 15:04:40 UTC
"…Some new malware and the links for the Symantec and Trend Micro descriptions…
We heard from… Virustotal who gave us some additional information:

We have detected a new malware for MS06-047* vulnerability.
It comes with a name syosetu.doc with 107.520 bytes. Hash MD5 is
7443358555983341CB9BB12BB0A0A191

Today, only a few AV can detect it (via virustotal):
W97M/ProjMod!exploit (eTrust-Vet),
W32/Bgent.ZE!tr (Fortinet),
Exploit-OleModule (McAfee),
Exploit:Win32/Ponaml.gen (Microsoft),
Trojan.Mdropper (Symantec),
http://www.symantec.com/enterprise/securit…-081616-2104-99
TROJ_MDROPPER.BK (TrendMicro).
http://www.trendmicro.com/vinfo/virusencyc…EBI&VSect=T …"

* http://isc.sans.org/diary.php?storyid=1568

:ph34r: