Version: 2008
  • On TV.com: TOP 10 Shows CANCELED Too Soon
Advanced Search
advertisement
advertisement

Forum display:

Spyware, viruses, & security : UPDATES - April 24, 2009

by roddy32 Moderator - 4/24/09 4:31 AM
advertisement
Post 1 of 20

UPDATES - April 24, 2009

by roddy32 Moderator - 4/24/09 4:31 AM

BOClean FILE DATE: 2009-04-24 10:38:35 (UTC)

TWENTY NINE new nasties for a total of 72,625 **UNIQUE**
infectors (343,027 variants of these including
trojans,worms,bots,hijackers,downloaders,spam proxies, rootkits, adware,
spyware,keyloggers,"dialers" and other malware in total) covered in
today's update for BOClean 4.27.

Please also note that if you ever miss an update (or several) the update
you collect includes **ALL** previous update information. There is no
need to go hunting down other updates. The current one is always complete.
http://www.comodo.com/boclean/trolist.html

Post 2 of 20

Additions to TrojanHunter for 04/22/2009

by roddy32 Moderator - 4/24/09 4:40 AM In reply to: UPDATES - April 24, 2009 by roddy32 Moderator

215393 for LiveUpdate only

Agent.3956
Agent.3955
Blocker.100
Bredolab.195
Jevafus.207
PWSteal.OnLineGames.1714
Stuh.108
TrojanDownloader.Agent.3264
TrojanDownloader.FraudLoad.657
TrojanDownloader.FraudLoad.656
TrojanDownloader.FraudLoad.655
TrojanDownloader.FraudLoad.654
TrojanDropper.Agent.1344
TrojanDropper.Agent.1343
TrojanSpy.Zbot.908
http://www.misec.net/forum/board/RulesetUpdates/1240460818

Post 3 of 20

AVG - AVI: 270.12.4/ 2078

by roddy32 Moderator - 4/24/09 5:09 AM In reply to: UPDATES - April 24, 2009 by roddy32 Moderator

Added detection of new variants of trojans Generic_c.AKUR, BackDoor.Hupigon5.DZC, Dialer.WKX, BackDoor.VB.GXT, Dropper.Generic.ALWI, Generic_c.AKUW.
April 24, 2009
http://www.grisoft.com/us.download-update

Post 4 of 20

NOD32 - 4033 (20090424)

by roddy32 Moderator - 4/24/09 5:18 AM In reply to: UPDATES - April 24, 2009 by roddy32 Moderator

2009-04-24 11:04
PDF/Exploit.Pidief.OJN, SWF/Exploit.Agent.AA, Win32/Adware.Coolezweb (3), Win32/Adware.SuperJuan.A (2), Win32/Adware.Virtumonde.NEH, Win32/Adware.Virtumonde.NEI, Win32/Adware.Virtumonde.NEK, Win32/Adware.Virtumonde.NEQ (2), Win32/Adware.Virtumonde.NET (4), Win32/Agent.WPI, Win32/Bagle.RD (2), Win32/FlyStudio.NKD (5), Win32/Kryptik.NO, Win32/Kryptik.NP, Win32/Mebroot.BI (5), Win32/Merond.K (2), Win32/Olmarik.FT (3), Win32/Olmarik.HG, Win32/Olmarik.HO (2), Win32/PSW.Legendmir.NGZ (2), Win32/PSW.OnLineGames.NRD (28), Win32/PSW.OnLineGames.NTZ (11), Win32/PSW.OnLineGames.NYU, Win32/PSW.OnLineGames.NYW, Win32/PSW.OnLineGames.NZG (2), Win32/PSW.OnLineGames.XTT, Win32/SpamTool.Agent.NCI, Win32/Spy.Banker.QQB, Win32/Spy.Zbot.PF, Win32/TrojanDropper.Agent.NYZ, Win32/VB.NZV
http://www.eset.eu/podpora/aktualizacia-4033?lng=en
http://www.eset.eu/support/update-xy1

Post 5 of 20

NOD32 - 4034 (20090424)

by roddy32 Moderator - 4/24/09 10:44 AM In reply to: NOD32 - 4033 (20090424) by roddy32 Moderator

2009-04-24 18:46
ALS/Bursted, ASP/Ace.NAB (2), BAT/Agent.NBR (2), HTML/TrojanDownloader.Agent.OV, HTML/TrojanDownloader.IFrame (2), INF/Autorun, IRC/SdBot (4), JS/Exploit.Agent.AGC (3), JS/Exploit.Pdfka.NIX, PDF/Exploit.Pidief.NML, PDF/Exploit.Pidief.OJO, Win32/Adware.Antivirus2008, Win32/Adware.AntivirusPlus, Win32/Adware.Coolezweb, Win32/Adware.GeneralAV (2), Win32/Adware.InternetAntivirus (12), Win32/Adware.MSAntispyware2009 (5), Win32/Adware.NaviPromo (3), Win32/Adware.PersonalAntivirus (3), Win32/Adware.PrivacyComponents, Win32/Adware.SuperJuan (4), Win32/Adware.SystemSecurity, Win32/Adware.Virtumonde (8), Win32/Adware.Virtumonde.NEQ, Win32/Adware.Virtumonde.NER, Win32/Adware.Virtumonde.NES, Win32/Adware.Virtumonde.NET, Win32/Adware.Virtumonde.NEU (5), Win32/Adware.WinPCDefender (4), Win32/Agent.AEXS, Win32/Agent.NGC, Win32/Agent.NGF (3), Win32/Agent.NWI (4), Win32/Agent.PEQ (2), Win32/Agent.PIC, Win32/Agent.PID, Win32/Agent.PIE (2), Win32/Agent.PIF (2), Win32/AntiAV.AZQ (7), Win32/AutoRun.ABH (2), Win32/AutoRun.FakeAlert.AF, Win32/AutoRun.FakeAlert.M, Win32/AutoRun.FlyStudio.HM, Win32/AutoRun.FlyStudio.HN, Win32/AutoRun.FlyStudio.HO, Win32/BHO.NOF, Win32/BHO.NOG (2), Win32/BHO.NOH (2), Win32/Bogoj.J (5), Win32/Cimag.W (2), Win32/Delf.NNM (92), Win32/Delf.ODU, Win32/Delf.OGU (6), Win32/Delf.OGV (2), Win32/Delf.OGW, Win32/Delf.OGX, Win32/Flyagent.NAG, Win32/Flyagent.NAH, Win32/FlyStudio.NKE, Win32/Injector.BO, Win32/Injector.KT, Win32/Koobface.HN (2), Win32/Koutodoor.E (4), Win32/Koutodoor.F (6), Win32/Kryptik.MY, Win32/Kryptik.NQ, Win32/Kryptik.NR (2), Win32/NetTool.SSPort (2), Win32/Olmarik.FT (38), Win32/Olmarik.HG (3), Win32/Olmarik.HI, Win32/Olmarik.HO (2), Win32/Peerfrag.AD, Win32/PSW.Agent.LQD, Win32/PSW.Legendmir.NFX, Win32/PSW.OnLineGames.NMP (3), Win32/PSW.OnLineGames.NMY (4), Win32/PSW.OnLineGames.ODJ, Win32/Qhost.NJH, Win32/Ransom.G (3), Win32/Redosdru.AD (2), Win32/Small.NFR, Win32/Sohanad.NEB (2), Win32/Sohanad.NEC, Win32/SpamTool.Agent.NCK, Win32/SpamTool.Rlsloup.NAA, Win32/SpamTool.Rlsloup.NAB, Win32/Spy.Agent.PZ, Win32/Spy.Banker.OXC, Win32/Spy.Banker.QEP, Win32/Spy.Delf.NTN (2), Win32/Spy.Webmoner.NBN, Win32/Spy.Zbot.JF (2), Win32/Spy.Zbot.MV, Win32/TrojanClicker.Agent.HCY (2), Win32/TrojanClicker.BHO.NBA, Win32/TrojanClicker.VB.NFM (2), Win32/TrojanDownloader.Bredolab.AA, Win32/TrojanDownloader.FakeAlert.TG, Win32/TrojanDownloader.VB.NXS (2), Win32/TrojanDownloader.Zlob.CZJ, Win32/TrojanDropper.Agent.NUZ, Win32/TrojanDropper.Agent.NYZ, Win32/TrojanDropper.Agent.NZA, Win32/TrojanDropper.Delf.NMW, Win32/TrojanDropper.Delf.NMX, Win32/TrojanDropper.VB.NHK (2), Win32/VB.NZV, Win32/VB.OBI, Win32/Waledac.JO (2)
http://www.eset.eu/podpora/aktualizacia-4034?lng=en
http://www.eset.eu/support/update-xy1

Post 6 of 20

ClamAV #9283

by roddy32 Moderator - 4/24/09 5:25 AM In reply to: UPDATES - April 24, 2009 by roddy32 Moderator

Latest ClamAV™ stable release is: 0.95.1
Total number of signatures: 546245
ClamAV Virus Databases:
main.cvd ver. 50 released on 15 Feb 2009 16:47 :0500
daily.cvd ver. 9283 released on 24 Apr 2009 04:18 :0400
http://www.clamav.net/

Post 7 of 20

AntiVir Version: 7.01.03.104

by roddy32 Moderator - 4/24/09 5:32 AM In reply to: UPDATES - April 24, 2009 by roddy32 Moderator

Version: 7.01.03.104
Date: 24 Apr 2009
Time: 11:35 GMT+1
http://www.avira.com/en/pages/index.php
http://www.avira.com/en/threats/section/vdfhistory/index.html

Post 8 of 20

CounterSpy/VIPRE defs - 04/23/2008 - #5110

by roddy32 Moderator - 4/24/09 5:39 AM In reply to: UPDATES - April 24, 2009 by roddy32 Moderator

• CounterSpy™ 3.1
Definition: 5110 4/23/2009
• CounterSpy™ Enterprise 3.1
Definition: 5110 4/23/2009

• VIPRE™ Antivirus + Antispyware 3.1
Definition: 5110 4/23/2009

• VIPRE™ Enterprise 3.1
Definition: 5110 4/23/2009
http://research.sunbelt-software.com/
http://www.sunbeltsecurity.com/definitions.aspx

Post 9 of 20

CounterSpy/VIPRE defs #5111

by roddy32 Moderator - 4/24/09 10:25 AM In reply to: CounterSpy/VIPRE defs - 04/23/2008 - #5110 by roddy32 Moderator

• VIPRE™ Antivirus + Antispyware 3.1
Definition: 5111 4/24/2009

• VIPRE™ Enterprise 3.1
Definition: 5111 4/24/2009

• CounterSpy™ 3.1
Definition: 5111 4/24/2009
• CounterSpy™ Enterprise 3.1
Definition: 5111 4/24/2009
http://research.sunbelt-software.com/
http://www.sunbeltsecurity.com/definitions.aspx

Post 10 of 20

SUPERAntiSpyware 04/23/2009 #3861

by roddy32 Moderator - 4/24/09 5:48 AM In reply to: UPDATES - April 24, 2009 by roddy32 Moderator

Core Definitions 3861 - 04/23/2009 04:57PM PDT
Trace Definitions 1813 - 04/23/2009 04:58PM PDT
http://www.superantispyware.com/definitions.html

Post 11 of 20

SUPERAntiSpyware #3862

by roddy32 Moderator - 4/24/09 2:08 PM In reply to: SUPERAntiSpyware 04/23/2009 #3861 by roddy32 Moderator

Core Definitions 3862 - 04/24/2009 12:25PM PDT
Trace Definitions 1814 - 04/24/2009 12:25PM PDT
http://www.superantispyware.com/definitions.html

Post 12 of 20

Ad-Aware defs 0148.0017

by roddy32 Moderator - 4/24/09 5:59 AM In reply to: UPDATES - April 24, 2009 by roddy32 Moderator

0148.0017 - April 24, 2009

New definitions:
====================

Win32.Backdoor.Ursus
Win32.FraudTool.ExtraAntivirus
Win32.FraudTool.MalwareDoctor
Win32.FraudTool.VirusAlarm
Win32.FraudTool.VirusMelt
Win32.FraudTool.VirusSweeper
Win32.FraudTool.WiniBlueSoft
Win32.Monitor.Msndetect
Win32.Trojan.Adbpat
Win32.Trojan.Aegrus
Win32.Trojan.Akhir
Win32.Trojan.Aneri
Win32.Trojan.Angel
Win32.Trojan.Angelus
Win32.Trojan.Aniscom
Win32.TrojanDownloader.Dumarin
Win32.TrojanDownloader.Geral
Win32.TrojanRansom.Blocker
Win32.Worm.Baconex

Updated definitions:
====================


List too long to post

MD5 checksum is 72cac70fcde3c4fb06c13ae930755f42
http://www.lavasoft.com/mylavasoft/securitycenter/blog/01480017-is-now-available-for-adaware-anniversary-edition

Post 13 of 20

Windows Defender Signature Update April 23, 2009

by roddy32 Moderator - 4/24/09 6:21 AM In reply to: UPDATES - April 24, 2009 by roddy32 Moderator

Definition Version: 1.57.181.0
Engine Version: 1.1.4602.0


Product Info: Windows Defender

Available via Windows updates or the program updater

NOTE: Users who have not received the update within the program or MU or WU and wish to update manually, go to Microsoft Malware Protection Center Portal website to download the definitions. That is one of the features of their malware protection center portal... to allow manual download of the definitions for users who have trouble in getting the updates due to some reason or for users who administer computers and want to deploy defs updates offline.

Note: that this is not a daily Windows Defender update form the portal.

Windows Defender version: 1.1.1593.0 XP-32 bit system
Windows Defender version: 1.1.1505.0 Vista-32 bit system
Windows Defender version: 1.1.1600.0 Vista SP1

Post 14 of 20

a-squared signature updates

by roddy32 Moderator - 4/24/09 8:07 AM In reply to: UPDATES - April 24, 2009 by roddy32 Moderator

2009-04-24 13:44:
Signature update
Additional signatures
Also many other updates, too numerous to list
http://www.emsisoft.com/a2/changelog/free/
http://www.emsisoft.com/en/support/malware/

Post 15 of 20

another

by roddy32 Moderator - 4/24/09 10:05 AM In reply to: a-squared signature updates by roddy32 Moderator

2009-04-24 17:25:
Signature update
Additional signatures
http://www.emsisoft.com/a2/changelog/free/
http://www.emsisoft.com/en/support/malware/

Forum legend:
Locked Locked thread
Moderator Moderator
CNET staff CNET staff
Samsung staff Samsung staff
Norton Authorized Support team Norton Authorized Support team
AVG staff AVG staff
Windows Outreach team Windows Outreach team
Dell staff Dell staff
Intel staff Intel staff
Powered by Jive Software