Spyware, Viruses, & Security forum

General discussion

UPDATES - July 24, 2008

by roddy32 / July 23, 2008 9:23 PM PDT
TrojanHunter 5.0 Ruleset Update - July 23, 2008

An updated TrojanHunter ruleset is available. This update adds 21 new trojan definitions:

TrojanDownloader.Cntr.125
TrojanDownloader.Cntr.124
TrojanDownloader.Exchanger.119
TrojanDownloader.Small.2632
TrojanDownloader.Small.2631
TrojanDownloader.Small.2630
TrojanDownloader.Small.2629
TrojanDownloader.Small.2628
TrojanDownloader.Small.2627
TrojanDownloader.Tibs.271
TrojanDownloader.Winlagons.168
TrojanDropper.Agent.929
TrojanDropper.Agent.928
TrojanDropper.VB.314
TrojanSpy.Zbot.335
TrojanSpy.Zbot.334
Worm.Locksky.176
Worm.Zhelatin.552
Worm.Zhelatin.551
Worm.Zhelatin.550
Worm.Zhelatin.549

Licensed TrojanHunter users can easily update using TrojanHunter's LiveUpdate utility. If you are using the trial version of TrojanHunter, please see http://www.misec.net/trojanhunter/updating/ for instructions on how to update to the latest ruleset.

You should have 181069 rules.

Also added later 181099 for LiveUpdate only

PWSteal.OnLineGames.1135
PWSteal.OnLineGames.1134
PWSteal.OnLineGames.1133
Shutdowner.111
Small.695
TrojanDownloader.Agent.2412
TrojanDownloader.Agent.2411
TrojanDownloader.Agent.2410
http://www.misec.net/forum/board/RulesetUpdates/1216875167
Discussion is locked
You are posting a reply to: UPDATES - July 24, 2008
The posting of advertisements, profanity, or personal attacks is prohibited. Please refer to our CNET Forums policies for details. All submitted content is subject to our Terms of Use.
Track this discussion and email me when there are updates

If you're asking for technical help, please be sure to include all your system info, including operating system, model number, and any other specifics related to the problem. Also please exercise your best judgment when posting in the forums--revealing personal information such as your e-mail address, telephone number, and address is not recommended.

You are reporting the following post: UPDATES - July 24, 2008
This post has been flagged and will be reviewed by our staff. Thank you for helping us maintain CNET's great community.
Sorry, there was a problem flagging this post. Please try again now or at a later time.
If you believe this post is offensive or violates the CNET Forums' Usage policies, you can report it below (this will not automatically remove the post). Once reported, our moderators will be notified and the post will be reviewed.
Collapse -
a-squared signature update
by roddy32 / July 23, 2008 9:42 PM PDT
Collapse -
Panda
by roddy32 / July 23, 2008 9:52 PM PDT
Collapse -
NOD32 - 3294 (20080724)
by roddy32 / July 23, 2008 9:56 PM PDT
2008-07-24 11:04
HTML/TrojanDownloader.IFrame, JS/TrojanDownloader.Agent.NFD (2), JS/TrojanDownloader.Psyme.NDI (2), Win32/Adware.Mycentria (2), Win32/Adware.OneStep, Win32/Adware.SpySheriff, Win32/Adware.UltimateDefender, Win32/Adware.Virtumonde, Win32/Adware.Virtumonde.FP (2), Win32/Agent.NMQ (2), Win32/DoS.Bonk.E, Win32/DoS.Bonk.F, Win32/Flooder.Agent.H, Win32/Flooder.Agent.M, Win32/Flooder.IntelIRC.15, Win32/Fuclip, Win32/Fuclip.BF, Win32/Hupigon (2), Win32/Hupigon.CCY, Win32/Hupigon.EMA, Win32/Hupigon.EQE, Win32/Hupigon.NFS, Win32/Hupigon.NHB, Win32/Hupigon.NJA, Win32/Injector.BV (2), Win32/Nuwar, Win32/Nuwar.DF, Win32/Potar.A, Win32/Potar.B, Win32/PSW.LdPinch.NCB, Win32/PSW.QQPass.CL, Win32/PSW.WOW.NDP (4), Win32/Spy.Agent.NES, Win32/TrojanDownloader.Agent.VJT, Win32/TrojanDownloader.Agent.WUR (2), Win32/TrojanDownloader.Delf.OFA (2), Win32/TrojanDownloader.Small.AWA (2), Win32/TrojanDownloader.Small.ODW (3), Win32/TrojanDownloader.Zlob.CEI (17)
http://www.eset.eu/podpora/aktualizacia-3294?lng=en
http://www.eset.eu/support/update-xy1
Collapse -
NOD32 - 3296 (20080724)
by roddy32 / July 24, 2008 4:06 AM PDT
2008-07-24 19:35
Win32/Adware.AdMedia, Win32/Adware.Antivirus2008, Win32/Adware.CiDHelp (2), Win32/Adware.IeDefender.NGM, Win32/Adware.Vapsup, Win32/Adware.Virtumonde (2), Win32/Adware.WinFixer (2), Win32/Agent.NZJ (2), Win32/Agent.NZK, Win32/Autoit.DB, Win32/AutoRun.TW, Win32/Bagle.PH, Win32/Delf.NNA (2), Win32/IRCBot.AIS, Win32/PSW.Delf.NLU (2), Win32/PSW.Lineage.DN, Win32/PSW.OnLineGames.NNS, Win32/Qhost, Win32/Rootkit.Agent.NGE, Win32/Spy.Agent.NES, Win32/Spy.Agent.NHT, Win32/Spy.Agent.PZ, Win32/Spy.Banker.OYA (3), Win32/Spy.Banker.OYB, Win32/Spy.Banker.OYC, Win32/Spy.Banker.OYD (2), Win32/Spy.Banker.OYE, Win32/Spy.Banker.OYF (2), Win32/Spy.Banker.OYG (2), Win32/Spy.Banker.OYH (2), Win32/Spy.Banker.OYI (2), Win32/Spy.Banker.OYK, Win32/Spy.Banker.OYW (2), Win32/Spy.Banker.QLZ (2), Win32/Spy.Delf.NJU (3), Win32/Spy.Nuklus, Win32/Spy.Nuklus.D, Win32/TrojanClicker.Agent.NDY (3), Win32/TrojanClicker.Delf.AKM (2), Win32/TrojanDownloader.Agent.OBB (2), Win32/TrojanDownloader.Banload.OAG (2), Win32/TrojanDownloader.Dadobra.IA (2), Win32/TrojanDownloader.FakeAlert.DR, Win32/TrojanDownloader.Small.ODX (3), Win32/TrojanDownloader.Swizzor, Win32/TrojanDownloader.Zlob.BXN (7), Win32/TrojanDownloader.Zlob.CEJ, Win32/TrojanDownloader.Zlob.CEK, Win32/TrojanDownloader.Zlob.CEL (14), Win32/TrojanDownloader.Zlob.CEM (3), Win32/TrojanDownloader.Zlob.CEN, Win32/TrojanProxy.Daemonize.NAF, Win32/TrojanProxy.Dlena.HV, Win32/Wigon.DI, Win32/Zalup
http://www.eset.eu/podpora/aktualizacia-3296?lng=en
http://www.eset.eu/support/update-xy1
Collapse -
AVG - AVI 270.5.5/ 1570
by roddy32 / July 23, 2008 10:01 PM PDT
[color=blue]AVG - AVI 270.5.5/ 1570[/color]
Added detection of new variant of Worm/Autoit, Worm/Delf, new variants of trojans PSW.Banker, PSW.OnlineGames, Adload.
July 24, 2008
http://www.grisoft.com/us.news
Collapse -
AVG - AVI 270.5.5/ 1571
by roddy32 / July 24, 2008 6:07 AM PDT
Collapse -
BOClean FILE DATE : 2008-07-24 11:23:14 (UTC)
by roddy32 / July 23, 2008 10:33 PM PDT
THIRTY ONE new nasties for a total of 58910 **UNIQUE**
infectors (324,042 variants of these including
trojans,worms,bots,hijackers,downloaders,spam proxies, rootkits, adware,
spyware,keyloggers,"dialers" and other malware in total) covered in
today's update for BOClean 4.27.

Please also note that if you ever miss an update (or several) the update
you collect includes **ALL** previous update information. There is no
need to go hunting down other updates. The current one is always complete.
http://www.nsclean.com/trolist.html
Collapse -
BOClean FILEDATE: 2008-07-24 14:45:46 (UTC)
by roddy32 / July 24, 2008 1:43 AM PDT
TWENTY-FOUR new nasties for a total of 58934 *UNIQUE* infectors (
324,078 variants of these including trojans, worms, bots, hijackers,
downloaders, spam proxies, rootkits, adware, spyware, keyloggers,
"dialers" and other malware in total) covered in today's update for
BOClean 4.27.

Please also note that if you ever miss an update (or several) the update
you collect includes ***ALL*** previous update information. There is no
need to go hunting down other updates. The current one is always complete.
http://www.nsclean.com/trolist.html
Collapse -
avast! 4.x VPS (released:24.7.2008, version: 080724-1)
by roddy32 / July 24, 2008 3:30 AM PDT
Collapse -
avast! 4.x VPS (released:25.7.2008, version: 080725-0)
by roddy32 / July 24, 2008 12:35 PM PDT
Collapse -
AntiVir Version: 7.00.05.167
by roddy32 / July 24, 2008 4:09 AM PDT
Collapse -
McAfee Daily #5346
by roddy32 / July 24, 2008 4:20 AM PDT
Collapse -
NAV Daily
by roddy32 / July 24, 2008 4:38 AM PDT
Daily Updates
Symantec AntiVirus
Norton AntiVirus 2006/2007

Virus Definitions created July 24
Virus Definitions released July 24
Defs Version: 100724x
Sequence Number: 83910
Extended Version: 7/24/2008 rev. 24
Total Detections (Threats & Risks): 1982775
http://www.symantec.com/avcenter/defs.download.html
Collapse -
Ad-Aware defs update
by roddy32 / July 24, 2008 4:51 AM PDT
0106.0000 - July 24, 2008

New definitions:

====================
Antispyware 2008
Antivirus2008pro
Win32.Backdoor.Alphabot
Win32.Backdoor.DragonBot
Win32.Backdoor.Hamweq
Win32.Backdoor.IRC.Small
Win32.Backdoor.RemoteStorm
Win32.Backdoor.Swz
Win32.Backdoor.Virtumonde
Win32.SpamTool.IRCBot
Win32.Trojan.FirewallBypass
Win32.Trojan.Moniker
Win32.Trojan.PWS.IMPassGrab
Win32.Trojan.Vxgame
Win32.TrojanDownloader.Shoter
Win32.TrojanDownloader.Veritas
Win32.TrojanDownloader.WMA.GetCodec
Win32.TrojanDownloader.XorCalc
Win32.Trojan-Dropper.Aholic
Win32.Trojan-Dropper.FJoiner
Win32.Trojan-Dropper.Poisoner
Win32.Trojan-PWS.Maha
Win32.Worm.Maplas
VirusRemover2008

Updated definitions:
====================
Advanced Antivirus
AdvancedCleaner
Adware.BHO(generic)
Adware.E404
Adware.Ejik
Adware.NaviPromo
Adware.ZenoSearch
AdwareAlert
AdwareBot
AntiMalwareGuard
AntiSpyware
AntispywareBot
AntiVirus 2008
Antivirus2009
Ardamax Keylogger
Backdoor.Visel
Dialer
ErrorKiller
ErrorSmart
ErrorSweeper
FakeAlert
IEAntiVirus
MalwareBot
PCPrivacyCleaner
PrivacyControl
PurityScan
RegClean
RegistrySmart
SpyBurner
SpywareRemover
SpywareStop
Ultimateantivirus 2008
Win32.AdWare.Cinmus
Win32.Backdoor.Agent
Win32.Backdoor.Agobot
Win32.Backdoor.AimBot
Win32.Backdoor.BeastDoor
Win32.Backdoor.Bifrose
Win32.Backdoor.Bot
Win32.Backdoor.Ceckno
Win32.Backdoor.CiaDoor
Win32.Backdoor.CmjSpy
Win32.Backdoor.DarkMoon
Win32.Backdoor.Delf
Win32.Backdoor.DragonIrc
Win32.Backdoor.EggDrop
Win32.Backdoor.Emogen
Win32.Backdoor.ForBot
Win32.Backdoor.HacDef
Win32.Backdoor.Hackarmy
Win32.Backdoor.Hupigon
Win32.Backdoor.IRCBot
Win32.Backdoor.IRCZapchast
Win32.Backdoor.Iroffer
Win32.Backdoor.JokerDoor
Win32.Backdoor.Messah
Win32.Backdoor.mIRC-based
Win32.Backdoor.MoSucker
Win32.Backdoor.Mytobor
Win32.Backdoor.Nuclear
Win32.Backdoor.Oderoor
Win32.Backdoor.Optix
Win32.Backdoor.PcClient
Win32.Backdoor.Poison
Win32.Backdoor.PoisonIvy
Win32.Backdoor.PopWin
Win32.Backdoor.Powerspider
Win32.Backdoor.Prorat
Win32.Backdoor.Prosiak
Win32.Backdoor.Prosti
Win32.Backdoor.Radmin
Win32.Backdoor.Raid
Win32.Backdoor.RBot
Win32.Backdoor.Reload
Win32.Backdoor.Robobot
Win32.Backdoor.Rukap
Win32.Backdoor.Rustock
Win32.Backdoor.SDBot
Win32.Backdoor.Shark
Win32.Backdoor.Sheldor
Win32.Backdoor.Singu
Win32.Backdoor.Sinowal
Win32.Backdoor.Small
Win32.Backdoor.SmallHTTP-based
Win32.Backdoor.Spyboter
Win32.Backdoor.SubSeven
Win32.Backdoor.Turkojan
Win32.Backdoor.VanBot
Win32.Backdoor.VB
Win32.Backdoor.VBbot
Win32.Backdoor.Webdor
Win32.Backdoor.WootBot
Win32.Backdoor.Zapulko
Win32.Dialer.GBDialer
Win32.Dialer.Trojan
Win32.Dluca.TrojanDownloader
Win32.Generic.PWS
Win32.Hoax.Fera
Win32.P2PWorm.Agent
Win32.P2PWorm.Krepper
Win32.P2PWorm.SpyBot
Win32.Rootkit.Agent
Win32.Rootkit.Clbd
Win32.Rootkit.HideProc
Win32.Rootkit.Podnuha
Win32.Rootkit.Qandr
Win32.Spybot.worm
Win32.Trojan.Agent
Win32.Trojan.AntiAVG
Win32.Trojan.Articles
Win32.Trojan.Atraps
Win32.Trojan.AutoIT
Win32.Trojan.Bagle
Win32.Trojan.BHO
Win32.Trojan.Buzus
Win32.Trojan.Crypt
Win32.Trojan.Dbit
Win32.Trojan.Delf
Win32.Trojan.Diamin
Win32.Trojan.Disabler
win32.Trojan.Dnschanger
Win32.Trojan.Downloader
Win32.Trojan.ExplorerHijack
Win32.Trojan.Filco
Win32.Trojan.HideProc
Win32.Trojan.Hider
Win32.Trojan.IFramer
Win32.Trojan.Inject
Win32.Trojan.KillAV
Win32.Trojan.KillFiles
Win32.Trojan.KillWin
Win32.Trojan.LowZones
Win32.Trojan.Midgare
Win32.Trojan.Monder
Win32.Trojan.Obfuscated
Win32.Trojan.Pakes
Win32.Trojan.Patched
Win32.Trojan.Puper.d
Win32.Trojan.Qhost
Win32.Trojan.Sadenav
Win32.Trojan.Slefdel
Win32.Trojan.Small
Win32.Trojan.Soul
Win32.Trojan.Spy
Win32.Trojan.Starter
Win32.Trojan.StartPage
Win32.Trojan.Tibs
Win32.Trojan.Vaklik
Win32.Trojan.Vapsup
Win32.Trojan.VB
Win32.TrojanClicker
Win32.TrojanClicker.Delf
Win32.TrojanClicker.Oleloa
Win32.TrojanClicker.Small
Win32.TrojanClicker.VB
Win32.TrojanDownloader.Adload
Win32.TrojanDownloader.Agent
Win32.TrojanDownloader.Alphabet
Win32.TrojanDownloader.Autoit
Win32.TrojanDownloader.Bagle
Win32.TrojanDownloader.Banload
Win32.TrojanDownloader.BHO
Win32.TrojanDownloader.CallSolutions
Win32.TrojanDownloader.Cntr
Win32.TrojanDownloader.ConHook
Win32.TrojanDownloader.Crypter
Win32.TrojanDownloader.Dadobra
Win32.TrojanDownloader.Delf
Win32.TrojanDownloader.Diehard
Win32.TrojanDownloader.Exchanger
Win32.TrojanDownloader.Firu
Win32.TrojanDownloader.FraudLoad
Win32.TrojanDownloader.Friendown
Win32.TrojanDownloader.Hmir
Win32.TrojanDownloader.Homles
Win32.TrojanDownloader.Injecter
Win32.TrojanDownloader.ISTBar
Win32.TrojanDownloader.Loan
Win32.TrojanDownloader.Murlo
Win32.TrojanDownloader.Mutant
Win32.TrojanDownloader.NewMedia
Win32.TrojanDownloader.Obitel
Win32.TrojanDownloader.Peregar
Win32.TrojanDownloader.QQHelper
Win32.TrojanDownloader.Satray
Win32.TrojanDownloader.Small
Win32.TrojanDownloader.SpyAgent
Win32.TrojanDownloader.Swizzor.br
Win32.TrojanDownloader.Tibs
Win32.TrojanDownloader.Tiny
Win32.TrojanDownloader.VB
Win32.TrojanDownloader.Winlagons
Win32.TrojanDownloader.Vivia
Win32.TrojanDownloader.Vixup
Win32.Trojandownloader.Zlob
Win32.TrojanDropper
Win32.TrojanDropper.Auto
Win32.Trojan-Dropper.BHO
Win32.Trojan-Dropper.Cabi
Win32.Trojan-Dropper.Delf
Win32.TrojanDropper.EESbinder
Win32.TrojanDropper.ExeBinder
Win32.TrojanDropper.Flystud
Win32.TrojanDropper.HeliosBinder
Win32.TrojanDropper.Interlac
Win32.Trojan-Dropper.Joiner
Win32.TrojanDropper.Microjoin
Win32.Trojan-Dropper.MSWord.Agent
Win32.Trojan-Dropper.MuDrop
Win32.TrojanDropper.MultiJoiner
Win32.Trojan-Dropper.Pakes
Win32.TrojanDropper.Pincher
Win32.TrojanDropper.Small
Win32.TrojanDropper.VB
Win32.TrojanProxy.Agent.dl
Win32.TrojanProxy.Daemonize
Win32.TrojanProxy.Horst
Win32.TrojanProxy.Migmaf
Win32.TrojanProxy.Mitglieder.bi
Win32.TrojanProxy.Procin
Win32.TrojanProxy.Ranky
Win32.TrojanProxy.Redbind
Win32.TrojanProxy.Slaper
Win32.TrojanProxy.Small
Win32.Trojan-PSW.Nilage
Win32.TrojanPWS.Delf
Win32.Trojan-PWS.Gamec
Win32.TrojanPWS.LdPinch
Win32.TrojanPWS.Magania
Win32.TrojanPWS.Maran
Win32.TrojanPWS.OnlineGames
Win32.TrojanPWS.QQPass
Win32.TrojanPWS.Small
Win32.TrojanSpy.Banbra
Win32.TrojanSpy.Bancos
Win32.TrojanSpy.Banker
Win32.TrojanSpy.BZub
Win32.TrojanSpy.Delf
Win32.TrojanSpy.DiabloKeys
Win32.TrojanSpy.Flux
Win32.TrojanSpy.Goldun
Win32.TrojanSpy.Keylogger
Win32.TrojanSpy.Proagent
Win32.TrojanSpy.VB
Win32.TrojanSpy.Zbot
Win32.Worm.Agent
Win32.Worm.Allaple
Win32.Worm.Anilogo
Win32.Worm.AutoIt
Win32.Worm.Autorun
Win32.Worm.Bagle
Win32.Worm.Bobic
Win32.Worm.Downloader
Win32.Worm.FTPShare
Win32.Worm.Fujack
Win32.Worm.Glowa
Win32.Worm.IRCBot
Win32.Worm.Kidala
Win32.Worm.Kolab
Win32.Worm.Otwycal
Win32.Worm.Rbot
Win32.Worm.SDBot
Win32.Worm.Socks
Win32.Worm.Warezov
Win32.Worm.VB
Win32.Worm.Winko
Win32.Worm.Womble
Win32.Worm.Zhelatin
Virtumonde
XPAntivirus

MD5 checksum for defs.ref is 6d48151618b1991dd6df438703c120a3
MD5 checksum for core.aawdef is 170e4324977034ebf78a47dca520054c

http://www.lavasoft.com/support/securitycenter/blog/?p=264#more-264
Collapse -
Avast! 4 Home/Pro Version 4.8.1229 - July 23, 2008
by roddy32 / July 24, 2008 6:14 AM PDT
Collapse -
SUPERAntiSpyware #3514
by roddy32 / July 24, 2008 6:28 AM PDT
Collapse -
ClamAV #7817
by roddy32 / July 24, 2008 6:54 AM PDT

Latest ClamAV? stable release is: 0.93.3
Total number of signatures: 371588
ClamAV Virus Databases:
main.cvd ver. 47 released on 23 Jun 2008 18:20 +0000
daily.cvd ver. 7817 released on 24 Jul 2008 20:04 +0000
http://www.clamav.net/

Collapse -
BitDefender - 07/25/2008 - 02:33
by roddy32 / July 24, 2008 11:09 AM PDT
Popular Forums
icon
Computer Newbies 10,686 discussions
icon
Computer Help 54,365 discussions
icon
Laptops 21,181 discussions
icon
Networking & Wireless 16,313 discussions
icon
Phones 17,137 discussions
icon
Security 31,287 discussions
icon
TVs & Home Theaters 22,101 discussions
icon
Windows 7 8,164 discussions
icon
Windows 10 2,657 discussions

Does BMW or Volvo do it best?

Pint-size luxury and funky style

Shopping for a new car this weekend? See how the BMW X2 stacks up against the Volvo XC40 in our side-by-side comparison.