149.679 is now available, new definition file for Ad-Aware 8.2.
150.364 is now available, new definition file for Ad-Aware 9.x, 8.3.
New definitions:
====================
Win32.FraudTool.AntivirusClean2011
Win32.FraudTool.BrodinAM
Win32.FraudTool.PrivacyDel
Updated definitions:
====================
MSIL.Trojan.Agent
MSIL.TrojanDownloader.Agent
MSIL.TrojanDropper.Agent
MSIL.TrojanPWS.Agent
MSIL.TrojanPWS.NetPass
MSIL.TrojanSpy.Agent
MSIL.Worm.Autorun
NSIS.TrojanDownloader.Agent
RAR.Trojan.Qhost
Win32.Adware.Adnur
Win32.Adware.BHO
Win32.Adware.EzuLa
Win32.Adware.Gamevance
Win32.Adware.RON
Win32.Adware.SuperJuan
Win32.Adware.Zwangi
Win32.Backdoor.Agent
Win32.Backdoor.Bandok
Win32.Backdoor.Bifrose
Win32.Backdoor.Bredolab
Win32.Backdoor.Cakl
Win32.Backdoor.Gbot
Win32.Backdoor.HttpBot
Win32.Backdoor.Hupigon
Win32.Backdoor.Inject
Win32.Backdoor.Litmus
Win32.Backdoor.Lolbot
Win32.Backdoor.Poison
Win32.Backdoor.Protector
Win32.Backdoor.RBot
Win32.Backdoor.SDBot
Win32.Backdoor.Small
Win32.Backdoor.Turkojan
Win32.Backdoor.Yoddos
Win32.Backdoor.Zzslash
Win32.FraudTool.AKorea
Win32.FraudTool.MacroVirus
Win32.FraudTool.PosbanKorea
Win32.FraudTool.PrivacyBoan
Win32.Hoax.ArchSMS
Win32.Monitor.Ardamax
Win32.Monitor.Perflogger
Win32.P2PWorm.Agent
Win32.P2PWorm.Palevo
Win32.P2PWorm.Small
Win32.Rootkit.Mag
Win32.Trojan.Agent
Win32.Trojan.Agent2
Win32.Trojan.Antavmu
Win32.Trojan.Buzus
Win32.Trojan.Chifrax
Win32.Trojan.Cosmu
Win32.Trojan.Cospet
Win32.Trojan.Diple
Win32.Trojan.FakeAV
Win32.Trojan.Fraudpack
Win32.Trojan.Genome
Win32.Trojan.Hrup
Win32.Trojan.Jorik
Win32.Trojan.Llac
Win32.Trojan.Mahato
Win32.Trojan.Menti
Win32.Trojan.Midgare
Win32.Trojan.Pakes
Win32.Trojan.Pasta
Win32.Trojan.Pincav
Win32.Trojan.Pirminay
Win32.Trojan.Powp
Win32.Trojan.Refroso
Win32.Trojan.Sasfis
Win32.Trojan.Scar
Win32.Trojan.Searches
Win32.Trojan.Siscos
Win32.Trojan.Small
Win32.Trojan.StartPage
Win32.Trojan.Swisyn
Win32.Trojan.Tdss
Win32.Trojan.VB
Win32.Trojan.Vaklik
Win32.Trojan.Vbkrypt
Win32.Trojan.Vilsel
Win32.Trojan.Vkhost
Win32.TrojanClicker.Cycler
Win32.TrojanDDoS.Agent
Win32.TrojanDownloader.Agent
Win32.TrojanDownloader.Apher
Win32.TrojanDownloader.Autoit
Win32.TrojanDownloader.Banload
Win32.TrojanDownloader.CodecPack
Win32.TrojanDownloader.Delf
Win32.TrojanDownloader.Fraudload
Win32.TrojanDownloader.Genome
Win32.TrojanDownloader.Geral
Win32.TrojanDownloader.Homa
Win32.TrojanDownloader.Injecter
Win32.TrojanDownloader.Mufanom
Win32.TrojanDownloader.Nekill
Win32.TrojanDownloader.Pher
Win32.TrojanDownloader.Small
Win32.TrojanDownloader.VB
Win32.TrojanDropper.Agent
Win32.TrojanDropper.Delf
Win32.TrojanDropper.MuDrop
Win32.TrojanDropper.Pakes
Win32.TrojanDropper.VB
Win32.TrojanDropper.Vedio
Win32.TrojanPWS.Bjlog
Win32.TrojanPWS.Kykymber
Win32.TrojanPWS.LdPinch
Win32.TrojanPWS.Nilage
Win32.TrojanPWS.OnlineGames
Win32.TrojanPWS.Qbot
Win32.TrojanPWS.Ruftar
Win32.TrojanRansom.PinkBlocker
Win32.TrojanSpy.Agent
Win32.TrojanSpy.BZub
Win32.TrojanSpy.Banbra
Win32.TrojanSpy.Bancos
Win32.TrojanSpy.Banker
Win32.TrojanSpy.SpyEyes
Win32.TrojanSpy.Zbot
Win32.Worm.Allaple
Win32.Worm.Autorun
Win32.Worm.Ckbface
Win32.Worm.Kido
Win32.Worm.Kolab
Win32.Worm.Koobface
Win32.Worm.Mabezat
Win32.Worm.Mydoom
Win32.Worm.Rokut
Win32.Worm.Sohanad
Win32.Worm.Vbna
MD5 checksum for Ad-Aware core.aawdef is d2f8132478b481ebd8ccaa0136e1e1ba
2011年4月14日星期四
Definition file update for Ad-Aware.
Apple's silent updates
Apple has released MacOS X 10.6.7 with several bugfixes and security-patches. This patch bundle also includes a silent update to Apple‘s built-in Xprotect anti-virus functionality.
Xprotect
With the release of Snow Leopard (Mac OS X 10.6) Apple introduced a basic antivirus protection called „XProtect“. It scans and detect threats when files are downloaded through Safari, Mail, iChat, Firefox and a few more and afterwards executed. The Signature-List is updated via Apples Software Update.
Till now Xprotects database contained signatures for three well-known threats:
- OSX.RSPlug.A: changes local DNS-entries, came through fake video-codecs
- OSX.Iservice: attacks websites (DDoS), came bundled with pirated applications
- OSX.HellRTS: known as HellRaiser, tool which gives the attacker full access ofver the victims system. Version 4.2 public available, version 4.4 sold for 15$ by the creator in underground forums.

Lab Matters - The Ups and Downs of Mitigating Botnets
In this edition of the Lab Matters webcast, malware researcher Tillmann Werner and Ryan Naraine discuss the ongoing battle to control the Conficker/Kido botnet and the need for the computer security industry to consider newer approaches to mitigating the botnet epidemic.
Google Tool Cleans Up Mobile Malware ?Dream?
The Fake Defragmenter Invasion
fix pc errors free download pc errors how to fix runtime error
Ransomware: Fake Federal German Police (BKA) notice
Kaspersky Lab is still monitoring malicious websites involved in the recent Japan spam campaigns.
For those who may have missed the two first blogs, you can read them here and here However, today we discovered than some of the payloads were not the usual Trojan-Downloader.Win32.CodecPack.*.
Instead, the payload is now Ransomware (detected as Trojan-Ransom.Win32.PornoBlocker.jtg), disguising itself as a fake warning message from the German Federal Police. The message pretends that your computer has been blocked because it was found to be hosting child pornography.
Victims are asked to pay a 100 euros fine to unlock the machine.
As if the German police logo wasn’t enough, they also use logo from anti-virus companies such as Kaspersky Lab to look more convincing.
free fix runtime error fix error messages how to fix runtime errors