Lavasoft Malware Labs Blog
149.453 is now available, new definition file for Ad-Aware 8.2.
150.138 is now available, new definition file for Ad-Aware 8.3.
New definitions:
====================
PIF.Trojan.Starter
VBS.EmailWorm.KakWorm
VBS.EmailWorm.Proud
VBS.EmailWorm.WhiteHome
Updated definitions:
====================
FunWeb
JS.Trojan.Agent
JS.Trojan.IFrame
JS.Trojan.Redirector
JS.TrojanClicker.Agent
JS.TrojanClicker.IFrame
JS.TrojanDownloader.Agent
JS.TrojanDownloader.Gumblar
Mozilla have published an update for their Firefox browser that fixes a critical security issue that could potentially allow remote code execution.
Users are strongly recommended to update to the latest version. To update manually, select 'Check for Updates' from the Help menu then clicking on "CHeck for Updates"
More information about the updates is available here.
Fast turnaround on the fix, Mozilla - well done.
149.452 is now available, new definition file for Ad-Aware 8.2.
150.137 is now available, new definition file for Ad-Aware 8.3.
New definitions:
====================
Win32.Toolbar.Iminent
Updated definitions:
====================
BAT.Trojan.KillWin
FunWeb
JS.Trojan.Agent
JS.Trojan.Cardst
JS.Trojan.IFrame
JS.Trojan.Popupper
JS.Trojan.Redirector
JS.Trojan.Seeker
JS.TrojanClicker.Agent
JS.TrojanClicker.IFrame
JS.TrojanClicker.Linker
JS.TrojanDownloader.Agent
149.451 is now available, new definition file for Ad-Aware 8.2.
150.136 is now available, new definition file for Ad-Aware 8.3.
New definitions:
====================
Acad.Worm.HighLight
Win32.TrojanClicker.Wistler
Updated definitions:
====================
JS.Exploit.Agent
JS.Exploit.Pdfka
MSIL.TrojanPWS.Agent
MSIL.TrojanSpy.KeyLogger
MSIL.TrojanSpy.Zbot
Win32.Adware.ShopAtHome
Win32.Backdoor.Papras
Win32.Backdoor.VB
Win32.Exploit.IMG-ANI
Win32.Exploit.PHPbb
From the Mozilla blog:
Issue:
Mozilla is aware of a critical vulnerability affecting Firefox 3.5 and Firefox 3.6 users. We have received reports from several security research firms that exploit code leveraging this vulnerability has been detected in the wild.
149.450 is now available, new definition file for Ad-Aware 8.2.
150.135 is now available, new definition file for Ad-Aware 8.3.
New definitions:
====================
Updated definitions:
====================
BAT.Trojan.DelFiles
FunWeb
JS.Trojan.Agent
MSIL.Trojan.Agent
MSIL.Trojan.Inject
MSIL.TrojanDownloader.Tiny
MSIL.TrojanDropper.StubRC
MSIL.TrojanPWS.Agent
NSIS.Trojan.StartPage
NSIS.TrojanDownloader.Fraudload
VBS.TrojanDownloader.Agent
Win32.Adware.Gamevance
149.449 is now available, new definition file for Ad-Aware 8.2.
150.134 is now available, new definition file for Ad-Aware 8.3.
New definitions:
====================
Updated definitions:
====================
FunWeb
JS.Trojan.Agent
JS.Trojan.Redirector
MSIL.Backdoor.Agent
MSIL.Trojan.Agent
NSIS.Trojan.Voter
NSIS.TrojanDownloader.Fraudload
Win32.Adware.AdMedia
Win32.Adware.Adnur
Win32.Adware.Agent
Win32.Adware.BHO
Win32.Adware.Cinmus
Win32.Adware.NewWeb
149.448 is now available, new definition file for Ad-Aware 8.2.
150.133 is now available, new definition file for Ad-Aware 8.3.
New definitions:
====================
Win32.Trojan.Ramnit
Win32.Trojan.Rebhip
Win32.Trojan.SpyRat
Updated definitions:
====================
BAT.Trojan.Agent
BAT.Trojan.KilLAV
BAT.Trojan.KillWin
BAT.Trojan.Small
FunWeb
JS.Trojan.Agent
JS.Trojan.StartPage
JS.TrojanClicker.Agent
JS.TrojanDownloader.Iframe
MSIL.Backdoor.Agent
As stated by Help Net Security a new Firefox plugin, "Firesheep", can be used for "sniffing" HTTP sessions that are unencrypted. The plugin can be used for hijacking online services, such as social networks - and other online services that require a login. The Firesheep plugin makes it thereby possible for perpetrators to impersonate users by simply hijacking their sessions at services such as Facebook, WordPress,Twitter, Google, Flickr, Amazon.com etc.
149.447 is now available, new definition file for Ad-Aware 8.2.
150.132 is now available, new definition file for Ad-Aware 8.3.
New definitions:
====================
Updated definitions:
====================
MSIL.TrojanSpy.Zbot
Win32.Adware.Zwangi
Win32.Backdoor.Agent
Win32.Backdoor.Bifrose
Win32.Backdoor.Clampi
Win32.Backdoor.Hupigon
Win32.Backdoor.RBot
Win32.Backdoor.SDBot
Win32.Backdoor.Sinowal
Win32.Backdoor.TDSS
Win32.Hoax.Agent
Win32.P2PWorm.Bacteraloh
Windows is an attractive platform for the malware writers, in part, because of the sheer number of users. As Microsoft creep towards making their offerings more secure, applications are increasingly becoming the focus for vulnerability exploitation.
Like Windows, Adobe products are a default software choice for most users. The bad guys know this and realise that its profitable to scrutinise their applications for exploitable vulnerabilities and create malware to take advantage of the fact.




