“Here you have” Virus (aka W32/VBMania@MM)

Reply
Not applicable

“Here you have” Virus (aka W32/VBMania@MM)

New virus, described here:

http://www.avertlabs.com/research/blog/index.php/2010/09/09/widespread-reporting-of-here-you-have-vi...

Is this virus recognized by the PAN devices?  I'm not sure how to look that up, or I would do so myself.

If not, any thoughts on mitigating risk?  I don't see .scr files in file blocking.

Thanks,

Grant

--------------

L1 Bithead

Re: “Here you have” Virus (aka W32/VBMania@MM)

Palo Alto Web site  >  Support  >  Threat Database
drop down and select Virus.

I was just there looking for the same thing.

Not applicable

Re: “Here you have” Virus (aka W32/VBMania@MM)

Thanks, it looks to me like it's not recognized.

Any thoughts on mitigation?

L0 Member

Re: “Here you have” Virus (aka W32/VBMania@MM)

It might be listed under a different name. Trend Micro recognizes it as WORM_MEYLME.B.

Not applicable

Re: “Here you have” Virus (aka W32/VBMania@MM)

I don't see anything on any virus. You would think you could just select from the drop down and hit enter and it would pull up a list, but I get nothing, even when I put something in there still nothing.

Not applicable

Re: “Here you have” Virus (aka W32/VBMania@MM)

unfortunately, no.

Not applicable

Re: “Here you have” Virus (aka W32/VBMania@MM)

if you're not seeing anything, you're doing it wrong.

type w32 , change type to virus, hit find, and see an enormous list.

L6 Presenter

Re: “Here you have” Virus (aka W32/VBMania@MM)

This was slated to be included in last night's emergency Threat/AV content release for PAN OS 3.1.x.

PAN OS 3.0.x will be addressed with next Tuesday's content release.

L3 Networker

Re: “Here you have” Virus (aka W32/VBMania@MM)

I still dont see this added into the threat database...is it known by a different name in Palo Alto land?

L0 Member

Re: “Here you have” Virus (aka W32/VBMania@MM)

Hi,

Coverage for "Here you have" virus is as follows:

3.1

Virus Name: Trojan/Win32.swisyn.bofj

Content release: 271 (daily content release)

Release date: 5th August


Virus Name: Trojan/W32.swisyn.bxoh

Content Release: 299-364 (Daily A/V content update)

Release Date: 10th Sep

3.0

Virus Name: Trojan/Win32.swisyn.0804

Content release: 203 (weekly content release)

Release date: 25th August

Thanks,

Sandeep

Like what you see?

Show your appreciation!

Click Like if a post is helpful to you or if you just want to show your support.

Click Accept as Solution to acknowledge that the answer to your question has been provided.

The button appears next to the replies on topics you’ve started. The member who gave the solution and all future visitors to this topic will appreciate it!

These simple actions take just seconds of your time, but go a long way in showing appreciation for community members and the Live Community as a whole!

The Live Community thanks you for your participation!