Thank you for being a valued part of the CNET community. As of December 1, 2020, the forums are in read-only format. In early 2021, CNET Forums will no longer be available. We are grateful for the participation and advice you have provided to one another over the years.

Thanks,

CNET Support

General discussion

UPDATES - October 22, 2008

Oct 21, 2008 10:33PM PDT
TrojanHunter 5.0 Ruleset Update - Oct 21, 2008

An updated TrojanHunter ruleset is available. This update adds 41 new trojan definitions:

Agent.3056
Bakaki.101
Crypt.482
Delf.1112
FakeAlert.206
FraudPack.144
Hupigon.1254
PcClient.262
PcClient.261
PWSteal.Agent.438
PWSteal.Magania.323
PWSteal.Magania.322
PWSteal.Magania.321
PWSteal.Magania.320
PWSteal.Magania.319
PWSteal.Magania.318
PWSteal.Magania.317
PWSteal.Magania.316
PWSteal.Magania.315
SpamTool.Delf.116
TrojanClicker.Delf.210
TrojanDownloader.Agent.2719
TrojanDownloader.Agent.2718
TrojanDownloader.Banload.1473
TrojanDownloader.CodecPack.125
TrojanDownloader.Delf.1457
TrojanDownloader.Tibs.310
TrojanDropper.Agent.1024
TrojanDropper.Delf.768
TrojanDropper.VB.355
TrojanDropper.VB.354
TrojanSpy.Agent.501
UltimateDefender.109
Virut.122
Vundo.1345
Vundo.1344
Vundo.1343
Vundo.1342
Vundo.1341
Vundo.1340
Vundo.1339

Licensed TrojanHunter users can easily update using TrojanHunter's LiveUpdate utility. If you are using the trial version of TrojanHunter, please see http://www.misec.net/trojanhunter/updating/ for instructions on how to update to the latest ruleset.

You should have 194211 rules.
http://www.misec.net/forum/board/RulesetUpdates/1224647079

Discussion is locked

- Collapse -
NOD32 - 3545 (20081022)
Oct 21, 2008 10:38PM PDT
2008-10-22 13:29
HTML/TrojanDownloader.IFrame, PDF/Exploit.Pidief.NDF, PP97M/TrojanDropper.Agent.NBD, W97M/TrojanDropper.Agent.NBO, Win32/Adware.AdzgaloreBiz (4), Win32/Adware.Cinmus, Win32/Adware.GooochiBiz, Win32/Adware.IeDefender.NHA, Win32/Adware.Vapsup (3), Win32/Adware.VirusResponseLab (2), Win32/AutoRun.ABQ, Win32/AutoRun.ADF, Win32/AutoRun.Autoit.F (2), Win32/AutoRun.KS (2), Win32/AutoRun.XG, Win32/Bagle.QB, Win32/Bagle.QC (2), Win32/Banwor.NBZ (2), Win32/Delf.NFN (2), Win32/Delf.NQO (4), Win32/FlyStudio.NCJ, Win32/Injector.EA, Win32/Mytob.EB, Win32/PSW.OnLineGames.NMP (3), Win32/PSW.OnLineGames.NMY (10), Win32/PSW.OnLineGames.NNU (3), Win32/PSW.OnLineGames.NOP (9), Win32/PSW.OnLineGames.NRR (2), Win32/PSW.OnLineGames.ODJ (9), Win32/PSW.OnLineGames.XTT, Win32/Rootkit.Podnuha.NAJ (2), Win32/Rootkit.Vanti.NBM, Win32/Spy.Banker.PRD (2), Win32/Spy.Banker.YBD (2), Win32/Spy.Delf.NLO (3), Win32/Spy.FtpSend.B, Win32/TrojanDownloader.Agent.OJG (2), Win32/TrojanDownloader.FakeAlert.NF (2), Win32/TrojanDownloader.FakeAlert.NG, Win32/TrojanDownloader.FakeAlert.NH (2), Win32/TrojanDownloader.Small.OGF, Win32/TrojanDownloader.Zlob.CSF (20), Win32/TrojanDownloader.Zlob.CSG, Win32/TrojanDownloader.Zlob.CSH, Win32/TrojanDownloader.Zlob.CSI, Win32/VB.JX, Win32/VB.NRG (3), Win32/Wigon.GK
http://www.eset.eu/podpora/aktualizacia-3545?lng=en
http://www.eset.eu/support/update-xy1
- Collapse -
NOD32 - 3546 (20081022)
Oct 22, 2008 3:27AM PDT
2008-10-22 17:22
BAT/Qhost.NAM, Win32/Adware.BHO.NER (2), Win32/Adware.BHO.NES, Win32/Adware.BHO.NET, Win32/Adware.Cinmus, Win32/Adware.IeDefender.NHN, Win32/Adware.Vapsup (10), Win32/Adware.Virtumonde (4), Win32/Adware.WSearch (8), Win32/Agent.ODG, Win32/Agent.OIN (2), Win32/Agent.OIO (2), Win32/AutoRun.Agent.T (2), Win32/AutoRun.Autoit.C (2), Win32/AutoRun.FakeAlert.G, Win32/AutoRun.FlyStudio.H, Win32/AutoRun.FlyStudio.I, Win32/AutoRun.VB.E (3), Win32/Banwor.NCA, Win32/BHO.HAT, Win32/Delf.NQP, Win32/DoS.Sypak, Win32/Hexzone.B (2), Win32/Hupigon (2), Win32/Hupigon.DTEC, Win32/Kryptik.AV, Win32/Patched.AD, Win32/PcClient (9), Win32/PcClient.IJM, Win32/PcClient.NCA, Win32/PcClient.PMM, Win32/PSW.Gamania.NAZ, Win32/PSW.OnLineGames.NMP (8), Win32/PSW.OnLineGames.NMY (12), Win32/PSW.OnLineGames.NNU (3), Win32/PSW.OnLineGames.NOP (2), Win32/PSW.OnLineGames.ODJ (5), Win32/PSW.Small.NAV, Win32/Qhost (2), Win32/Rbot.VIY, Win32/Rootkit.Podnuha.NAK (2), Win32/Spy.Agent.NJB, Win32/Spy.Agent.NJV, Win32/Spy.Agent.PZ, Win32/Spy.Banker.PHY (2), Win32/Spy.Banker.VBT, Win32/Spy.Banker.YJM (2), Win32/Spy.BZub, Win32/Spy.BZub.NFS (3), Win32/TrojanClicker.Agent.NEO, Win32/TrojanClicker.Agent.NEP (2), Win32/TrojanDownloader.Adload.NFH (2), Win32/TrojanDownloader.Agent.OJH, Win32/TrojanDownloader.Small.AWA, Win32/TrojanDownloader.VB.NRP (2), Win32/TrojanDownloader.Zlob.CSJ (20), Win32/TrojanDropper.Agent.NJV (4), Win32/TrojanDropper.Delf.NJF, Win32/VB.NRH (3), Win32/Virut.NBH
http://www.eset.eu/podpora/aktualizacia-3546?lng=en
http://www.eset.eu/support/update-xy1
- Collapse -
NOD32 - 3547 (20081022)
Oct 22, 2008 8:19AM PDT
2008-10-22 22:16
Win32/Adware.IeDefender.NHN, Win32/Adware.Vapsup (10), Win32/Adware.Virtumonde (4), Win32/Adware.Virtumonde.NCP, Win32/Agent.NNU (2), Win32/Delf.NKU (2), Win32/Delf.NKV (2), Win32/Delf.NKW (3), Win32/Delf.NQQ (2), Win32/Delf.NQR, Win32/Delf.NQS (2), Win32/Dialer.GFS, Win32/Hupigon, Win32/Hupigon.DQPP, Win32/Hupigon.EFKA, Win32/Hupigon.EJAP, Win32/Hupigon.EJNI, Win32/Hupigon.EJWX (2), Win32/Hupigon.ELAH (2), Win32/Hupigon.ELAI, Win32/Hupigon.NKC (2), Win32/Hupigon.NKD (2), Win32/Hupigon.NKE, Win32/PcClient, Win32/PSW.OnLineGames.NMP (2), Win32/PSW.OnLineGames.NMY (2), Win32/PSW.OnLineGames.NRT (2), Win32/Spy.Banker.PRE, Win32/Spy.Banker.PRF (3), Win32/Spy.BZub, Win32/Spy.BZub.NFT (3), Win32/Spy.Delf.NLP, Win32/Spy.Delf.NLQ (2), Win32/TrojanClicker.Agent.DXE (3), Win32/TrojanClicker.Agent.NEB, Win32/TrojanClicker.Agent.NEO, Win32/TrojanDownloader.Agent.OJI (2), Win32/TrojanDownloader.FakeAlert.NI (3), Win32/TrojanDownloader.Swizzor (2), Win32/TrojanDownloader.Zlob.CSK, Win32/TrojanDownloader.Zlob.CSL, Win32/TrojanDropper.Delf.NJG, Win32/Wigon.GD, Win32/Wigon.GL
http://www.eset.eu/podpora/aktualizacia-3547?lng=en
http://www.eset.eu/support/update-xy1
- Collapse -
AntiVir Version: 7.00.07.74
Oct 21, 2008 10:41PM PDT
- Collapse -
AVG - AVI: 270.8.2 /1739
Oct 21, 2008 11:01PM PDT
- Collapse -
AVG - AVI: 270.8.2 /1740
Oct 22, 2008 8:43AM PDT
- Collapse -
SUPERAntiSpyware - 10/21/2008 - #3604
Oct 21, 2008 11:21PM PDT
- Collapse -
SUPERAntiSpyware #3605
Oct 22, 2008 5:01AM PDT
- Collapse -
SUPERAntiSpyware #3606
Oct 22, 2008 12:15PM PDT
- Collapse -
Spybot S&D Detction rules
Oct 21, 2008 11:59PM PDT
2008-10-22
Adware
++ AdDestination ++ Win32.SmartPops.c
Keylogger
+ Ardamax + PerfectKeylogger
Malware
+ Command Service + MicroAntivirus ++ PornBHO.ru + Smitfraud-C. + SpywareBOT.SpywareStop ++ TotalSecure2009 + Win32.Renos ++ UltimateSpyKiller
PUPS
++ Joke.BadGame ++ Joke.Train + MyWay.MyWebSearch + Network Monitor ++ Sleepy
Security
+ Microsoft.Windows.AppFirewallBypass ++ Microsoft.Windows.Comfile.HideExtension
Spyware
+ webHancer ++ Spy-net
Trojan
++ IRC.crt ++ OIN.Analytics ++ RS32UPS.ru ++ SysVenFakP + Virtumonde + Virtumonde.sci + Virtumonde.sdn ++ Win32.Agent.aach + Win32.Agent.ark ++ Win32.AutoRun.dcw ++ Win32.AutoRun.diq ++ Win32.Delf.aam ++ Win32.Delf.ake ++ Win32.Delf.yj + Win32.Delf.zq + Win32.Exchanger.ch ++ Win32.MSN.Autoruner + Win32.Mutant.yf ++ Win32.Qhost.aei ++ Win32.SDBot.wus + Win32.Small.buy ++ Win32.VB.as ++ Win32.XPACK.Gen + Zlob.Downloader + Zlob.HQCodec
Total: 1152094 fingerprints in 286970 rules for 4336 products
http://www.safer-networking.org/en/home/index.html
Please remember to Re-Immunize after updating!
- Collapse -
avast! 4.x VPS (released: 22.10.2008, version: 081022-0)
Oct 22, 2008 12:16AM PDT
- Collapse -
ClamAV #8468
Oct 22, 2008 12:46AM PDT

Latest ClamAV? stable release is: 0.94
Total number of signatures: 449408
ClamAV Virus Databases:
main.cvd ver. 48 released on 04 Sep 2008 18:51 +0000
daily.cvd ver. 8468 released on 22 Oct 2008 12:35 +0000
+0000

http://www.clamav.net/

- Collapse -
BOClean FILEDATE: 2008-10-22 14:26:23 (UTC)
Oct 22, 2008 1:19AM PDT
EIGHTY-THREE new nasties for a total of 63845 *UNIQUE* infectors (
330,751 variants of these including trojans, worms, bots, hijackers,
downloaders, spam proxies, rootkits, adware, spyware, keyloggers,
"dialers" and other malware in total) covered in today's update for
BOClean 4.27.

Please also note that if you ever miss an update (or several) the update
you collect includes ***ALL*** previous update information. There is no
need to go hunting down other updates. The current one is always complete.
http://www.comodo.com/boclean/trolist.html
- Collapse -
BOClean FILE DATE : 2008-10-22 15:03:59 (UTC)
Oct 22, 2008 1:44AM PDT
FIFTY new nasties for a total of 63,895 **UNIQUE**
infectors (330,821 variants of these including
trojans,worms,bots,hijackers,downloaders,spam proxies, rootkits, adware,
spyware,keyloggers,"dialers" and other malware in total) covered in
today's update for BOClean 4.27.

Please also note that if you ever miss an update (or several) the update
you collect includes **ALL** previous update information. There is no
need to go hunting down other updates. The current one is always complete.
http://www.comodo.com/boclean/trolist.html
- Collapse -
NAV Weekly
Oct 22, 2008 2:18AM PDT
- Collapse -
NAV Daily
Oct 22, 2008 2:20AM PDT
- Collapse -
McAfee Daily #5412
Oct 22, 2008 4:45AM PDT
- Collapse -
F-Prot
Oct 22, 2008 5:36AM PDT

F-PROT Antivirus can as of 22 October 2008 detect a total of 1127783 worms, viruses and other malicious programs with its latest virus signature file.
http://www.f-prot.com/products/currentversions.html

Note: The total detections on the site are the same as what was posted on 26th August 2008, BUT Although we cannot confirm it, it is very likely that the actual program is being updated automatically at regular intervals even though the webpage isn't.

- Collapse -
Malwarebytes' Anti-Malware Version 1.30 (October 22nd, 2008)
Oct 22, 2008 8:05AM PDT
- Collapse -
BitDefender - 10/23/2008 - 01:00
Oct 22, 2008 8:24AM PDT
- Collapse -
a-squared signature update 10/23/2008
Oct 22, 2008 8:48AM PDT