Spyware, Viruses, & Security forum

General discussion

UPDATES - January 30, 2009

by roddy32 / January 29, 2009 8:48 PM PST
TrojanHunter 5.0 Ruleset Update - Jan 29, 2009

An updated TrojanHunter ruleset is available. This update adds 95 new trojan definitions:

Adware.Lop.268
Agent.3476
Agent.3475
Agent.3474
Agent.3473
Agent.3472
AgentBypass.106
Alureon.145
BiFrose.502
BiFrose.501
BiFrose.500
BiFrose.499
BiFrose.498
Crypt.526
FakeAlert.271
Hupigon.1292
Inject.362
IRCBot.860
KillWin.126
Midgare.117
Monder.497
Monder.496
Monder.495
Monder.494
Monder.493
Monder.492
Monder.491
Monder.490
Pakes.593
Poison.140
Poison.139
PWSteal.Agent.458
PWSteal.LdPinch.877
PWSteal.Magania.496
PWSteal.Magania.495
PWSteal.OnLineGames.1475
PWSteal.OnLineGames.1474
PWSteal.Tibia.130
PWSteal.VB.236
Rbot.1737
Rbot.1736
TDSS.139
TrojanDownloader.Agent.2993
TrojanDownloader.Banload.1529
TrojanDownloader.Banload.1528
TrojanDownloader.Banload.1527
TrojanDownloader.Banload.1526
TrojanDownloader.BHO.161
TrojanDownloader.BHOSta.101
TrojanDownloader.FakeMSA.100
TrojanDownloader.VB.1039
TrojanDownloader.VB.1038
TrojanDownloader.VB.1037
TrojanDownloader.VB.1036
TrojanDownloader.VB.1035
TrojanDownloader.VB.1034
TrojanDropper.Agent.1156
TrojanDropper.Agent.1155
TrojanDropper.Binder.125
TrojanDropper.Delf.823
TrojanDropper.Delf.822
TrojanDropper.VB.466
TrojanDropper.VB.465
TrojanDropper.VB.464
TrojanDropper.VB.463
TrojanDropper.VB.462
TrojanDropper.VB.461
TrojanDropper.VB.460
TrojanDropper.VB.459
TrojanDropper.VB.458
TrojanDropper.VB.457
TrojanDropper.VB.456
TrojanDropper.VB.455
TrojanSpy.VB.291
Turkojan.124
Vapsup.156
VB.1388
VB.1387
Virut.131
Vundo.1546
Vundo.1545
Vundo.1544
Vundo.1543
Vundo.1542
Vundo.1541
Vundo.1540
Waledac.120
Worm.Agent.184
Worm.AutoTDSS.132
Worm.Iksmas.130
Worm.Kido.107
Worm.Otwycal.101
Worm.VB.242
Worm.VB.241
Worm.VB.240

Licensed TrojanHunter users can easily update using TrojanHunter's LiveUpdate utility. If you are using the trial version of TrojanHunter, please see http://www.misec.net/trojanhunter/updating/ for instructions on how to update to the latest ruleset.

You should have 205430 rules.
http://www.misec.net/forum/board/RulesetUpdates/1233293416
Discussion is locked
You are posting a reply to: UPDATES - January 30, 2009
The posting of advertisements, profanity, or personal attacks is prohibited. Please refer to our CNET Forums policies for details. All submitted content is subject to our Terms of Use.
Track this discussion and email me when there are updates

If you're asking for technical help, please be sure to include all your system info, including operating system, model number, and any other specifics related to the problem. Also please exercise your best judgment when posting in the forums--revealing personal information such as your e-mail address, telephone number, and address is not recommended.

You are reporting the following post: UPDATES - January 30, 2009
This post has been flagged and will be reviewed by our staff. Thank you for helping us maintain CNET's great community.
Sorry, there was a problem flagging this post. Please try again now or at a later time.
If you believe this post is offensive or violates the CNET Forums' Usage policies, you can report it below (this will not automatically remove the post). Once reported, our moderators will be notified and the post will be reviewed.
Collapse -
NOD32 - 3812 (20090130)
by roddy32 / January 29, 2009 9:00 PM PST
2009-01-30 10:23
HTML/Exploit.VML.NAQ (2), JS/Exploit.RealPlay.NBF, JS/Exploit.XMLPars.V, JS/TrojanDownloader.Agent.NEJ, JS/TrojanDownloader.Iframe.DV, SWF/TrojanDownloader.Small.DJ (2), VBS/LoveLetter.NAB, Win32/Adware.Antivirus2008 (2), Win32/Adware.GooochiBiz (2), Win32/Adware.MSAntispyware2009, Win32/Adware.TMAagent (6), Win32/Adware.XPAntivirus (3), Win32/Agent.NUQ (2), Win32/Agent.ODG, Win32/Agent.OUL (2), Win32/AutoRun.Agent.HF, Win32/AutoRun.FakeAlert.AF, Win32/Bagle.QQ (3), Win32/CasOnline, Win32/Injector.IC, Win32/Olmarik.D, Win32/Olmarik.EH, Win32/Olmarik.EI, Win32/Pinit, Win32/Pinit.N (3), Win32/PSW.Agent.NAW, Win32/PSW.LdPinch.NEL (3), Win32/PSW.OnLineGames.NMP (5), Win32/PSW.OnLineGames.NMY (5), Win32/PSW.OnLineGames.NNU (2), Win32/PSW.OnLineGames.ODJ (2), Win32/PSW.OnLineGames.OHM (2), Win32/PSW.OnLineGames.OHN (2), Win32/PSW.OnLineGames.OHO (2), Win32/PSW.OnLineGames.OHP (3), Win32/PSW.OnLineGames.XTT (2), Win32/PSW.VB.OP, Win32/PSW.WOW.NCD, Win32/Rootkit.Ressdt.NAQ (2), Win32/Rootkit.Vanti.NBA, Win32/Rustock.NGS (2), Win32/Rustock.NGT (2), Win32/Spy.Agent.PZ, Win32/Spy.Banker.ADVA (2), Win32/Spy.Banker.ADVB (2), Win32/Spy.Banker.ADVC (2), Win32/Spy.Banker.ADVE (2), Win32/Spy.Banker.QGU (2), Win32/Spy.KeyLogger.NDR (3), Win32/Spy.Zbot.BA, Win32/Spy.Zbot.GR, Win32/Spy.Zbot.GS, Win32/Spy.Zbot.GT (2), Win32/Tifaut.C, Win32/TrojanClicker.Agent.NEB, Win32/TrojanClicker.Delf.NFT, Win32/TrojanDownloader.Agent.OSU, Win32/TrojanDownloader.Banload.OMO (2), Win32/TrojanDownloader.Banload.OMP, Win32/TrojanDownloader.Delf.OOH, Win32/TrojanDownloader.Delf.OOM (2), Win32/TrojanDownloader.FakeAlert.TU (2), Win32/TrojanDownloader.FakeAlert.WR, Win32/TrojanDownloader.FakeAlert.YB (2), Win32/TrojanDownloader.FakeAlert.YC (5), Win32/TrojanDownloader.Small.ODO, Win32/TrojanDownloader.Small.OJH, Win32/TrojanDownloader.VB.NUY, Win32/TrojanDownloader.VB.NUZ, Win32/VB.NAC (2), Win32/VB.NVZ (3), Win32/VB.NWA, Win32/Waledac (3), Win32/Waledac.AH
http://www.eset.eu/podpora/aktualizacia-3812?lng=en
http://www.eset.eu/support/update-xy1
Collapse -
NOD32 - 3813 (20090130)
by roddy32 / January 29, 2009 11:39 PM PST
2009-01-30 15:58
INF/Autorun, IRC/SdBot, Win32/Adware.AdzgaloreBiz, Win32/Adware.Agent.NKX, Win32/Adware.Antivirus2008 (2), Win32/Adware.Antivirus360, Win32/Adware.GooochiBiz (2), Win32/Adware.InternetAntivirus (2), Win32/Adware.MSAntispyware2009 (3), Win32/Adware.NaviPromo, Win32/Adware.SpywareGuard (8), Win32/Adware.Virtumonde (10), Win32/Adware.WiniGuard, Win32/Agent.NGC (2), Win32/Agent.OUM (2), Win32/Agent.OUN (2), Win32/Agent.OUO, Win32/Agent.WPI, Win32/AutoRun.ABH, Win32/AutoRun.Agent.EU, Win32/AutoRun.Agent.HG (9), Win32/AutoRun.Agent.HH, Win32/AutoRun.Agent.HI, Win32/AutoRun.Agent.HJ (2), Win32/AutoRun.Agent.HK (2), Win32/AutoRun.Autoit.Z, Win32/AutoRun.FakeAlert.AC, Win32/AutoRun.FakeAlert.AP, Win32/AutoRun.FlyStudio.CD, Win32/BHO.NMC, Win32/Bifrose.ADR, Win32/Bifrose.ALFV, Win32/Bifrose.ALFX, Win32/Conficker.AA, Win32/Conficker.X (2), Win32/HackTool.OpenPass.A (2), Win32/Hexzone.AB, Win32/IRCBot.ADZ, Win32/Kryptik.GB, Win32/Olmarik.EJ (2), Win32/Olmarik.EK (2), Win32/Olmarik.EL (2), Win32/Olmarik.EM (2), Win32/Olmarik.EN (2), Win32/Olmarik.EO (2), Win32/Olmarik.EP (2), Win32/Poison.OBI, Win32/PSW.Agent.LSR, Win32/PSW.Agent.NKF (3), Win32/PSW.OnLineGames.NMP (3), Win32/PSW.OnLineGames.NSU, Win32/PSW.OnLineGames.NTP (2), Win32/PSW.OnLineGames.OHQ, Win32/PSW.OnLineGames.OHR, Win32/PSW.OnLineGames.VPI, Win32/PSW.WOW.DZI, Win32/Small.NCK, Win32/Small.NDM (2), Win32/Sohanad.NDM, Win32/Spy.Agent.NLO, Win32/Spy.Agent.NLP (2), Win32/Spy.Agent.PZ, Win32/Spy.Goldun.NDW, Win32/Spy.Goldun.NEE (3), Win32/Spy.Small.NBR (2), Win32/Spy.Zbot.AD, Win32/Spy.Zbot.GM, Win32/Spy.Zbot.GU, Win32/Tifaut.C (5), Win32/TrojanClicker.Delf.NFI, Win32/TrojanDownloader.Agent.ONB (3), Win32/TrojanDownloader.Agent.OQW, Win32/TrojanDownloader.Agent.OSI, Win32/TrojanDownloader.Agent.OSV (2), Win32/TrojanDownloader.Agent.OSW (2), Win32/TrojanDownloader.Agent.OSX (3), Win32/TrojanDownloader.Delf.OON (2), Win32/TrojanDownloader.FakeAlert.PR (2), Win32/TrojanDownloader.FakeAlert.WR (3), Win32/TrojanDownloader.FakeAlert.YD, Win32/TrojanDownloader.FakeAlert.YE, Win32/TrojanDownloader.Small.OIA, Win32/TrojanDownloader.Small.OIB, Win32/TrojanDownloader.Small.OJX (2), Win32/TrojanDownloader.Small.OLC, Win32/TrojanDropper.Agent.NUD, Win32/TrojanDropper.Delf.NJW, Win32/TrojanDropper.Delf.NLJ (2), Win32/VB.JJL, Win32/VB.NWB, Win32/Virut.NBJ, Win32/Waledac (3), Win32/Wigon, Win32/Wigon.GX (2), Win32/Wigon.JA (2)
http://www.eset.eu/podpora/aktualizacia-3813?lng=en
http://www.eset.eu/support/update-xy1
Collapse -
AVG - AVI: 270.10.16/1925
by roddy32 / January 29, 2009 9:02 PM PST

Added detection of new variants of trojans Generic_r.AW, Generic12.BFMU, Agent.AWRI, Downloader.Agent.ATVF, Downloader.Banload.AIBY, Generic12.BFRN.
January 30, 2009
http://www.grisoft.com/us.download-update

Collapse -
AVG - AVI: 270.10.16/1926
by roddy32 / January 30, 2009 5:31 AM PST

Added detection of new variant of Worm/Generic.UGK, Worm/Autoit.OGQ, new variants of trojans PSW.Banker5.CVU, PSW.Generic6.BBMB, Downloader.Generic8.TRB, Downloader.Agent.ATVZ.
January 30, 2009
http://www.grisoft.com/us.download-update

Collapse -
ClamAV #8923
by roddy32 / January 29, 2009 9:08 PM PST

Latest ClamAV? stable release is: 0.94.2
Total number of signatures: 503849
ClamAV Virus Databases:
main.cvd ver. 49 released on 22 Oct 2008 07:46 +0000
daily.cvd ver. 8923 released on 30 Jan 2009 10:49 +0000
http://www.clamav.net/

Collapse -
AntiVir Version: 7.01.01.206
by roddy32 / January 29, 2009 9:17 PM PST
Collapse -
BOClean FILE DATE: 2009-01-30 12:45:00 (UTC)
by roddy32 / January 29, 2009 9:22 PM PST
FORTY NINE new nasties for a total of 69,853 **UNIQUE**
infectors (339,228 variants of these including
trojans,worms,bots,hijackers,downloaders,spam proxies, rootkits, adware,
spyware,keyloggers,"dialers" and other malware in total) covered in
today's update for BOClean 4.27.

Please also note that if you ever miss an update (or several) the update
you collect includes **ALL** previous update information. There is no
need to go hunting down other updates. The current one is always complete.
http://www.comodo.com/boclean/trolist.html
Collapse -
Windows Defender Signature Update January 29, 2009
by roddy32 / January 29, 2009 10:13 PM PST

Definition Version: 1.49.2750.0
Engine Version: 1.1.4205.0

Product Info: Windows Defender

Available via Windows updates or the program updater

NOTE: Users who have not received the update within the program or MU or WU and wish to update manually, go to Microsoft Malware Protection Center Portal website to download the definitions. That is one of the features of their malware protection center portal... to allow manual download of the definitions for users who have trouble in getting the updates due to some reason or for users who administer computers and want to deploy defs updates offline.

Note: that this is not a daily Windows Defender update form the portal.

Windows Defender version: 1.1.1593.0 XP-32 bit system
Windows Defender version: 1.1.1505.0 Vista-32 bit system
Windows Defender version: 1.1.1600.0 Vista SP1

Collapse -
F-Prot
by roddy32 / January 29, 2009 10:31 PM PST

F-PROT Antivirus can as of 30 January 2009 detect more than 1310835 worms, viruses and other malicious programs with its latest virus signature file.
http://www.f-prot.com/products/currentversions.html

Note: The total detections on the site are the same as what was posted on the 23rd of December 2008, BUT the actual program is being updated automatically at regular intervals even though the webpage isn't.

Collapse -
a-squared signature updates
by roddy32 / January 29, 2009 10:50 PM PST
Collapse -
avast! update 30.1.2009 version: 090130-0
by roddy32 / January 29, 2009 11:49 PM PST
Collapse -
Panda
by roddy32 / January 30, 2009 1:53 AM PST
Collapse -
SUPERAntiSpyware #3737
by roddy32 / January 30, 2009 2:20 AM PST
Collapse -
NAV Daily
by roddy32 / January 30, 2009 2:34 AM PST
Collapse -
McAfee Daily #5511
by roddy32 / January 30, 2009 2:40 AM PST
Popular Forums
icon
Computer Newbies 10,686 discussions
icon
Computer Help 54,365 discussions
icon
Laptops 21,181 discussions
icon
Networking & Wireless 16,313 discussions
icon
Phones 17,137 discussions
icon
Security 31,287 discussions
icon
TVs & Home Theaters 22,101 discussions
icon
Windows 7 8,164 discussions
icon
Windows 10 2,657 discussions

Does BMW or Volvo do it best?

Pint-size luxury and funky style

Shopping for a new car this weekend? See how the BMW X2 stacks up against the Volvo XC40 in our side-by-side comparison.