Lavasoft Malware Labs Blog
0083.0000 15.05.2008
MD5 for the core.aawdef: 07cede484019c2b72639dc5b2f1db76a
MD5 for the defs.ref file: 29e8293641d137f886433b276f7dcd8e
0082.0000 15.05.2008
MD5 for the core.aawdef file: 7f4c780ba907a6527e3fd893cf3fcba8
MD5 for the defs.ref file: 194eef8d1f03c9a0629410347189c62c
False Positive Fixes for:
Adware.Agent
Win32.Backdoor.RBot
Win32.Backdoor.Cakl
Win32.TrojanSpy.Delf
0081.0000 is now available, new definition file for Ad-Aware 2007.
New definitions:
====================
-
Updated definitions:
====================
Adware.PlayMP3Z
Minor fixes.
MD5 checksum for core.aawdef is 5433ab79c0573f97ac95315db0c52af1
MD5 checksum for defs.ref is 3dd05d9e8d5a436dd35f85abddd47aa4
0080.0000 is now available, new definition file for Ad-Aware 2007.
New definitions:
====================
ShopperReports
Win32.Backdoor.EasyClick
Win32.Backdoor.Espion
Win32.Backdoor.EvilGoat
Win32.Backdoor.Evilsock
Win32.Backdoor.GateCrasher
Win32.Backdoor.HackTack
Win32.Backdoor.Hankydor
Win32.Backdoor.MindControl
Win32.Backdoor.Netdemon
Win32.Backdoor.Pizza
Win32.Backdoor.Protux
Win32.Backdoor.Ramzdor
Win32.Backdoor.rat
Win32.Backdoor.Remhack
Win32.Backdoor.Remod
Win32.Backdoor.Sheldor
Win32.Backdoor.Shipper
Win32.Backdoor.Shutall
Win32.Backdoor.SpySender
Win32.Backdoor.Stang
Win32.Backdoor.Starcross
Win32.Backdoor.TTY
Win32.Backdoor.Ulrbot
Win32.Backdoor.Xtra
Win32.Monitor.123Keylog
Win32.Monitor.Acespy
Win32.Monitor.AllInOne
Win32.Monitor.DeskScout
Win32.Monitor.EBlaster
Win32.Monitor.Elfrah
Win32.Monitor.FTPkeylogger
Win32.Monitor.Hooker
Win32.Monitor.ICQSpy
Win32.Monitor.InvisiKeylog
Win32.Monitor.KeyboardGuardian
Win32.Monitor.KeyBoardLogger
Win32.Monitor.KeyloggerSpy
Win32.Monitor.KeyLogPro
Win32.Monitor.Keymon
Win32.Monitor.MonitorSniffer
Win32.Monitor.MSNSpy
Win32.Monitor.PowerSpy
Win32.Monitor.SmartKeyStrokeRec
Win32.Monitor.SpyArsenal
Win32.Monitor.SpyKeylogger
Win32.Monitor.SpyPal
Win32.Monitor.WinSpy
Win32.Monitor.Wiretap
Win32.PNEA.Hotbar
Win32.Trojan.Apolipse
Win32.Trojan.Batman
Win32.Trojan.Belnow
Win32.Trojan.Broomops
Win32.Trojan.Coldlimit
Win32.Trojan.Dire
Win32.Trojan.DiskFlood
Win32.Trojan.Efno
Win32.Trojan.Fruitcake
Win32.Trojan.Fuhd
Win32.Trojan.Gentee
Win32.Trojan.Insteax
Win32.Trojan.Inteter
Win32.Trojan.Keypanic
Win32.Trojan.Noupdate
Win32.Trojan.RAMeater
Win32.Trojan.RASFlooder
Win32.Trojan.Spabot
Win32.Trojan.Spitfier
Win32.TrojanClicker.Densmail
Win32.TrojanClicker.Dnclick
Win32.TrojanClicker.Glocker
Win32.TrojanDownloader.Aboma
Win32.TrojanDownloader.Aicore
Win32.TrojanDownloader.Cmjdown
Win32.Trojan-Dropper.exeStealther
Win32.TrojanNotifier.VB
Win32.TrojanProxy.SafeMail
Win32.Trojan-PWS.Furitron
Win32.Trojan-PWS.GES
Win32.Trojan-PWS.Phreaker
Win32.Trojan-PWS.Platan
Win32.Trojan-PWS.Sagic
Win32.Trojan-PWS.ZombSmall
Win32.Trojan-PWS.Zytric
Win32.TrojanSpy.Gologger
Win32.Worm.Dasher
Win32.Worm.Fearso
Win32.Worm.Fintas
Win32.Worm.Padobot
Win32.Worm.Wast
Updated definitions:
====================
Adware.180Solutions.SeekmoSearchAssistant
Adware.Adband
Adware.Agent
Adware.BHO(generic)
Adware.CasinoClient
Adware.NaviPromo
Adware.Rond
Adware.SmartShopper
Adware.TryMedia
AdwareAlert
AdwareBot
AntiSpyware
AntispywareBot
Backdoor.Visel
ClientMan
FakeAlert
iSearch Toolbar
Malware Bell
MalwareBot
MyWebSearch
PurityScan
ShopNav Hijacker
Spyware.QuickKeylogger
SpywareRemover
SpywareStop
WhenU
Win32.AdWare.Cinmus
Win32.Adware.Insider
Win32.Backdoor.Agent
Win32.Backdoor.Agobot
Win32.Backdoor.Armageddon
Win32.Backdoor.Assasin
Win32.Backdoor.Bifrose
Win32.Backdoor.BO2k
Win32.Backdoor.Connection
Win32.Backdoor.ControlTotal
Win32.Backdoor.CrackDown
Win32.Backdoor.Delf
Win32.Backdoor.HacDef
Win32.Backdoor.Hupigon
Win32.Backdoor.IRCBot
Win32.Backdoor.IrcContact
Win32.Backdoor.IRCZapchast
Win32.Backdoor.Iroffer
Win32.Backdoor.Kbot
Win32.Backdoor.Lecna
Win32.Backdoor.MiniCommander
Win32.Backdoor.Nepoe
Win32.Backdoor.NetDevil
Win32.Backdoor.Nethief
Win32.Backdoor.PcClient
Win32.Backdoor.Poison
Win32.Backdoor.PopWin
Win32.Backdoor.RBot
Win32.Backdoor.Reload
Win32.Backdoor.Rukap
Win32.Backdoor.SDBot
Win32.Backdoor.Shark
Win32.Backdoor.Small
Win32.Backdoor.Snowdoor
Win32.Backdoor.Turkojan
Win32.Backdoor.Udps
Win32.Backdoor.VanBot
Win32.Backdoor.VB
Win32.Backdoor.WinShell
Win32.Backdoor.Vipdataend
Win32.Backdoor.Virkel
Win32.Backdoor.WootBot
Win32.Backdoor.Y3KRat
Win32.Dialer.GBDialer
Win32.Dialer.Trojan
Win32.FakeCodec.MegaX
Win32.Generic.PWS
Win32.Generic.Worm
Win32.Monitor.ActMon
Win32.P2PWorm.Tanked
Win32.P2PWorm.VB
Win32.Rootkit.Agent
Win32.Sasser
Win32.SpamTool.Agent
Win32.Trojan.Agent
Win32.Trojan.Articles
Win32.Trojan.AutoIT
Win32.Trojan.BHO
Win32.Trojan.Buzus
Win32.Trojan.Crypt
Win32.Trojan.Delf
Win32.Trojan.Downloader
Win32.Trojan.Favadd
Win32.Trojan.Hider
Win32.Trojan.Inject
Win32.Trojan.Keylogger
Win32.Trojan.Kirek
Win32.Trojan.Midgare
Win32.Trojan.Mifeng
Win32.Trojan.Monder
Win32.Trojan.Obfuscated
Win32.Trojan.Pakes
Win32.Trojan.Qhost
Win32.Trojan.Scapur
Win32.Trojan.Small
Win32.Trojan.Spy
Win32.Trojan.Srizbi
Win32.Trojan.StartPage
Win32.Trojan.Tibs
Win32.Trojan.Vaklik
Win32.Trojan.Vapsup
Win32.Trojan.VB
Win32.TrojanClicker
Win32.TrojanClicker.Pamere
Win32.TrojanClicker.Small
Win32.TrojanClicker.VB
Win32.TrojanDownloader.Agent
Win32.TrojanDownloader.Alphabet
Win32.TrojanDownloader.Autoit
Win32.TrojanDownloader.Banload
Win32.TrojanDownloader.Cntr
Win32.TrojanDownloader.Cryptic
Win32.TrojanDownloader.Dadobra
Win32.TrojanDownloader.Delf
Win32.TrojanDownloader.FraudLoad
Win32.TrojanDownloader.FraudTool
Win32.TrojanDownloader.Gida
Win32.TrojanDownloader.Hmir
Win32.TrojanDownloader.Homles
Win32.TrojanDownloader.Mutant
Win32.TrojanDownloader.QQHelper
Win32.TrojanDownloader.Small
Win32.TrojanDownloader.Tibs
Win32.TrojanDownloader.Tiny
Win32.TrojanDownloader.VB
Win32.TrojanDownloader.Vivia
Win32.Trojandownloader.Zlob
Win32.TrojanDropper
Win32.Trojan-Dropper.ExeBundle
Win32.TrojanDropper.Pincher
Win32.TrojanDropper.Small
Win32.TrojanProxy.Agent.dl
Win32.TrojanProxy.Slaper
Win32.TrojanProxy.Xorpix
Win32.Trojan-PSW.Delf
Win32.Trojan-PSW.Nilage
Win32.Trojan-PSW.QQRob
Win32.TrojanPWS.LdPinch
Win32.TrojanPWS.Lmir
Win32.TrojanPWS.Magania
Win32.Trojan-PWS.Mapler
Win32.TrojanPWS.Maran
Win32.TrojanPWS.OnlineGames
Win32.TrojanPWS.Papras
Win32.TrojanPWS.QQPass
Win32.Trojan-PWS.RavenPass
Win32.TrojanSpy.Banker
Win32.TrojanSpy.Keylogger
Win32.TrojanSpy.Pophot
Win32.TrojanSpy.Zbot
Win32.Virus.Virut
Win32.Worm.Ainjo
Win32.Worm.Anilogo
Win32.Worm.Autorun
Win32.Worm.Bobic
Win32.Worm.Dedler
Win32.Worm.Downloader
Win32.Worm.Finaldo
Win32.Worm.Kolab
Win32.Worm.Leebad
Win32.Worm.MTX
Win32.Worm.Petik
Win32.Worm.Roron
Win32.Worm.Rous
Win32.Worm.Runfer
Win32.Worm.Socks
Win32.Worm.Tibick
Win32.Worm.Warezov
Win32.Worm.Vesser
Win32.Worm.Zhelatin
WinAD
Virtumonde
VirusHeat
Zango
MD5 checksum for core.aawdef is 48761085213b183a66366800fad6fe06
MD5 checksum for defs.ref is 0f9fc5ce75957b77eec673824ce773a4
0079.0000 is now available, new definition file for Ad-Aware 2007.
New definitions:
====================
AntiMalwareGuard
AntiVirus 2008
Personal PC Spy
RegistryGreat
Toolbar.MySearch
Win32.Backdoor.BDS.Bot
Win32.Backdoor.RShot
Win32.Backdoor.Ruledor
Win32.Backdoor.Ruler
Win32.Backdoor.RUX
Win32.Backdoor.Rws
Win32.Backdoor.Snid
Win32.Backdoor.SniperNet
Win32.Backdoor.Softwar
Win32.Backdoor.Telserv
Win32.Backdoor.Tendoolf
Win32.Backdoor.Tetick
Win32.Backdoor.Tofsee
Win32.Backdoor.Wingate-based
Win32.Backdoor.Winker
Win32.Backdoor.Winrat
Win32.FakeCodec.MegaX
Win32.Monitor.ActivityLogger
Win32.Monitor.ActMon
Win32.Monitor.Amplusnet
Win32.Monitor.DataDocKeyLogger
Win32.Monitor.FreeKeylogger
Win32.Monitor.GhostKeyLogger
Win32.Monitor.KeyLoggerPro
Win32.Monitor.PowerLogger
Win32.Monitor.SpyBuddy
Win32.Monitor.Spytector
Win32.Monitor.WebMailSpy
Win32.SpamTool.Mailbot
Win32.Trojan.Glitch
Win32.Trojan.Hider
Win32.Trojan.Kirek
Win32.Trojan.Milt
Win32.Trojan.Monder
Win32.Trojan.Podnuha
Win32.Trojan.Regrun
Win32.TrojanDownloader.Pusrac
Win32.Trojan-PWS.Gamec
Win32.Trojan-PWS.Ganhame
Win32.Trojan-PWS.Stealer
Win32.TrojanSpy.Avenger
Win32.TrojanSpy.Camspy
Win32.TrojanSpy.EmailSpyPro
Win32.TrojanSpy.Montp
Win32.TrojanSpy.MSNKeylog
Win32.Worm.Mabezat
Win32.Worm.Zokrim
Vomba
XPShield
Updated definitions:
====================
Adware.Agent
Adware.BHO(generic)
Adware.CasinoClient
Adware.E404
Adware.Ejik
Adware.MyToolbar
Adware.NaviPromo
Adware.Sweetbar
Adware.VapSup
Adware.ZenoSearch
AdwareAlert
AdwareBot
Alexa
AntispySpider
AntiSpyStorm
AntiSpyware
AntispywareBot
AntiSpywareShield
AntivirusPCSuite
AntiVirusPro
AntivirusProtection
Ardamax Keylogger
Awola
BlazingTools Perfect Keylogger
Dialer
EliteKeylogger
EvidenceEraser
FakeAlert
Hacktool.Flooder
IEDefender
IRCWorm.Generic
KeySpy
Lop
MalwareBot
MalwareBurn
MalwareCore
MalwareWipe
Perflogger
PersonalDesktopSpy
PrivacyControl
PurityScan
ShopNav Hijacker
Spyagent
SpyArsenal FamilyKeylogger
SpyArsenal HomeKeylogger
SpyAway
Spyware.ActualSpy
Spyware.AdvancedKeyLogger
SpywareDestructor
SpywareRemover
SpywareSheriff
SpywareStop
Ultimate Defender
Win32.AdWare.Boran
Win32.Backdoor.Agent
Win32.Backdoor.Agobot
Win32.Backdoor.Banito
Win32.Backdoor.Bifrose
Win32.Backdoor.BlackHole
Win32.Backdoor.Cakl
Win32.Backdoor.Ceckno
Win32.Backdoor.CiaDoor
Win32.Backdoor.CyberSpy
Win32.Backdoor.Delf
Win32.Backdoor.Doly
Win32.Backdoor.DsBot
Win32.Backdoor.Emogen
Win32.Backdoor.FireFly
Win32.Backdoor.Fuetel
Win32.Backdoor.HacDef
Win32.Backdoor.Hupigon
Win32.Backdoor.IRCBot
Win32.Backdoor.IRCZapchast
Win32.Backdoor.Iroffer
Win32.Backdoor.Nuclear
Win32.Backdoor.Nucleroot
Win32.Backdoor.PopWin
Win32.Backdoor.Prorat
Win32.Backdoor.RBot
Win32.Backdoor.Rbot.gen
Win32.Backdoor.Rukap
Win32.Backdoor.SDBot
Win32.Backdoor.Sinowal
Win32.Backdoor.Small
Win32.Backdoor.Spartadoor
Win32.Backdoor.Specrem
Win32.Backdoor.VanBot
Win32.Backdoor.VB
Win32.Backdoor.WootBot
Win32.Dialer.Trojan
Win32.Dluca.TrojanDownloader
Win32.Generic.PWS
Win32.Generic.Worm
Win32.Mydoom.A
Win32.Rootkit.Agent
Win32.Sasser
Win32.SpamTool.Agent
Win32.Trojan.AddUser
Win32.Trojan.Agent
Win32.Trojan.BHO
Win32.Trojan.Buzus
Win32.Trojan.Crypt
Win32.Trojan.Delf
Win32.Trojan.Delwin
Win32.Trojan.Dialer.iy
Win32.Trojan.Disabler
win32.Trojan.Dnschanger
Win32.Trojan.Downloader
Win32.Trojan.IFramer
Win32.Trojan.Inject
Win32.Trojan.JunkPoly
Win32.Trojan.Keylogger
Win32.Trojan.KillAV
Win32.Trojan.Klone
Win32.Trojan.Midgare
Win32.Trojan.Obfuscated
Win32.Trojan.Pakes
Win32.Trojan.PopUpper
Win32.Trojan.Qhost
Win32.Trojan.Radi
Win32.Trojan.Shutdowner
Win32.Trojan.Slefdel
Win32.Trojan.Small
Win32.Trojan.Soul
Win32.Trojan.Spy
Win32.Trojan.Srizbi
Win32.Trojan.StartPage
Win32.Trojan.Tibs
Win32.Trojan.Vaklik
Win32.Trojan.Vapsup
Win32.Trojan.VB
Win32.TrojanClicker
Win32.TrojanClicker.Costrat
Win32.TrojanClicker.Small
Win32.TrojanClicker.VB
Win32.TrojanDownloader.Adload
Win32.TrojanDownloader.Agent
Win32.TrojanDownloader.Bagle
Win32.TrojanDownloader.Banload
Win32.TrojanDownloader.BHO
Win32.TrojanDownloader.Cntr
Win32.TrojanDownloader.Cryptic
Win32.TrojanDownloader.Dadobra
Win32.TrojanDownloader.Delf
Win32.TrojanDownloader.Exchanger
Win32.TrojanDownloader.Flux
Win32.TrojanDownloader.FraudLoad
Win32.TrojanDownloader.FraudTool
Win32.TrojanDownloader.Gida
Win32.TrojanDownloader.Homles
Win32.TrojanDownloader.Injecter
Win32.TrojanDownloader.Losabel
Win32.TrojanDownloader.Murlo
Win32.TrojanDownloader.Mutant
Win32.TrojanDownloader.Nurech
Win32.TrojanDownloader.Obfuscated
Win32.TrojanDownloader.Peregar
Win32.TrojanDownloader.QQHelper
Win32.TrojanDownloader.Small
Win32.TrojanDownloader.Tibs
Win32.TrojanDownloader.Tiny
Win32.TrojanDownloader.VB
Win32.TrojanDownloader.Wimad
Win32.Trojandownloader.Zlob
Win32.TrojanDropper
Win32.Trojan-Dropper.Delf
Win32.TrojanDropper.Flystud
Win32.Trojan-Dropper.Joiner
Win32.TrojanDropper.Microjoin
Win32.Trojan-Dropper.MuDrop
Win32.TrojanDropper.MultiJoiner
Win32.TrojanDropper.Small
Win32.TrojanDropper.VB
Win32.TrojanDropper.Yabinder
Win32.TrojanProxy.Agent.dl
Win32.TrojanProxy.Fackemo
Win32.TrojanProxy.Horst
Win32.TrojanProxy.Pixoliz
Win32.TrojanProxy.Ranky
Win32.TrojanProxy.Saturn
Win32.TrojanProxy.Slaper
Win32.TrojanProxy.Small
Win32.TrojanProxy.Xmiler
Win32.TrojanProxy.Xorpix
Win32.Trojan-PSW.Delf
Win32.Trojan-PSW.Nilage
Win32.Trojan-PSW.QQRob
Win32.TrojanPWS.Hooker
Win32.TrojanPWS.OnlineGames
Win32.TrojanPWS.Papras
Win32.Trojan-PWS.PdPinch
Win32.TrojanPWS.QQPass
Win32.TrojanPWS.SharaQQ
Win32.TrojanPWS.Small
Win32.TrojanPWS.Steam
Win32.TrojanPWS.VB
Win32.TrojanPWS.WebMoner
Win32.TrojanPWS.WOW
Win32.TrojanSpy.Banbra
Win32.TrojanSpy.Banker
Win32.TrojanSpy.BZub
Win32.TrojanSpy.Delf
Win32.TrojanSpy.Flux
Win32.TrojanSpy.Goldun
Win32.TrojanSpy.Keylogger
Win32.TrojanSpy.Peed
Win32.TrojanSpy.Pophot
Win32.TrojanSpy.VB
Win32.TrojanSpy.Zbot
Win32.Worm.Agent
Win32.Worm.Allaple
Win32.Worm.AllocUp
Win32.Worm.Anilogo
Win32.Worm.Autorun
Win32.Worm.Bagle
Win32.Worm.Brontok
Win32.Worm.Delf
Win32.Worm.Downloader
Win32.Worm.Fujack
Win32.Worm.Klez
Win32.Worm.Kolab
Win32.Worm.LockSky
Win32.Worm.Mixor
Win32.Worm.Mytob
Win32.Worm.Otwycal
Win32.Worm.Runfer
Win32.Worm.RunOnce
Win32.Worm.SDBot
Win32.Worm.Socks
Win32.Worm.Warezov
Win32.Worm.VB
Win32.Worm.Viking
Win32.Worm.Zhelatin
WiniFixer
WinPerformance
Winreanimator
Virtumonde
VirusProtectPro
VirusRanger
MD5 checksum for core.aawdef: f7788f4b64e9051b37237e4d127c80bc
MD5 checksum for defs.ref: 1d48aea0633f103b20573fc72e84e2d8
0078.0000 is now available, new definition file for Ad-Aware 2007.
Minor fix release.
MD5 checksum is 7b2fedd91fa04ae24b58febf637736f5 for core.aawdef
MD5 checksum is 35120e131a387fced911d43fd5be4485 for defs.ref
A clone of XpAntiVirus has recently been released, named as WinAntiVirus PRO. Those who have been around may remember WinAntiVirus PRO 2006 & 2007.
There are tons of rogue applications out there right now, most use unique names. It was just a matter of time before there started to be name collisions either on purpose or by mistake.
Finally a message to all fake anti-spyware/virus producers:
Do some research before you release new products; you might end up in court with your competitors because of name theft.
The Foundation for Information Policy Research have published two excellent documents regarding technical aspects and legal concerns surrounding the Phorm "Webwise" system. Dr Richard Clayton and Nicholas Bohm's documents and an open letter to the Home Office can be found at the link below.
http://www.fipr.org/press/080423phorm.html
New definitions:
====================
Win32.Backdoor.Blhouse
Win32.Backdoor.BlueAdept
Win32.Backdoor.Blueang
Win32.Backdoor.Bot-gen
Win32.Backdoor.BTNGdoor
Win32.Backdoor.Canvas
Win32.Backdoor.CBlade
Win32.Backdoor.CFour
Win32.Backdoor.Charge
Win32.Backdoor.ChinDoor
Win32.Backdoor.Click
Win32.Backdoor.Cocoazul
Win32.Backdoor.Connection
Win32.Backdoor.CookieMonster
Win32.Backdoor.CorruptedLite
Win32.Backdoor.Crat
Win32.Backdoor.Cyberat
Win32.Backdoor.CyberSpy
Win32.Backdoor.DaCryptic
Win32.Backdoor.Dagger
Win32.Backdoor.Daodan
Win32.Backdoor.DarkNova
Win32.Backdoor.DarkPortal
Win32.Backdoor.DarkScan
Win32.Backdoor.DarkSky
Win32.Backdoor.DataSpy
Win32.Backdoor.David
Win32.Backdoor.DcBot
Win32.Backdoor.DCI
Win32.Backdoor.DeltaSource
Win32.Backdoor.Ders
Win32.Backdoor.Dipti
Win32.Backdoor.Doadan
Win32.Backdoor.GrayBird
Win32.Backdoor.Grisch
Win32.Backdoor.Iroffer
Win32.Backdoor.NetTrash
Win32.Backdoor.Olinger
Win32.Backdoor.Polka
Win32.Backdoor.WRT
Win32.FakeCodec.PopCodec
Win32.Flooder.Buwah
Win32.TrojanDownloader.Adroar
Win32.TrojanDownloader.Keenval
Win32.TrojanDownloader.RVP
Win32.Worm.Agist
Win32.Worm.AllocUp
Win32.Worm.Antiax
Win32.Worm.Azaco
Win32.Worm.Dabber
Win32.Worm.Deberia
Win32.Worm.DmSetup
Win32.Worm.Enviar
Win32.Worm.Fagled
Win32.Worm.Fanker
Win32.Worm.Frethem
Win32.Worm.Gift
Win32.Worm.Goround
Win32.Worm.Icecubes
Win32.Worm.InfoJack
Win32.Worm.Lacrow
Win32.Worm.Leebad
Win32.Worm.Miniman
Win32.Worm.Morbex
Win32.Worm.Muma
Win32.Worm.Netav
Win32.Worm.Otwycal
Win32.Worm.Puron
Win32.Worm.Sharpei
Win32.Worm.Sidex
Win32.Worm.Symten
Win32.Worm.SysClock
Win32.Worm.Taripox
Win32.Worm.Urick
Win32.Worm.Wabbin
Win32.Worm.Wlymak
Win32.Worm.Zircon
Updated definitions:
====================
ABetterInternet.Aurora
Adware.Agent
Adware.BHO(generic)
Adware.CasClient
Adware.FindSpy
Adware.Look2Me
Adware.Maxifiles
Adware.Mirar
Adware.MyWay
Adware.Sahat
Adware.SuperJuan
Adware.TotalVelocity
Adware.VapSup
Adware.ZenoSearch
AdwareAlert
AdwareBot
AntiSpyware
AntispywareBot
Backdoor.Coldfusion
Backdoor.HackDefender
BargainBuddy
ClearSearch
CometSystems
CommonName
Cydoor
Elitum.ElitebarBHO
EzuLa
FakeAlert
Hijacker.IEHost
MalwareBot
MediaMotor
PurityScan
SCKeyLog Trojan
SpywareRemover
SpywareStop
SurfSideKick
Toolbar.iWon
UCmore
UltimateFixer
Win32.Adware.Insider
Win32.Backdoor.Agent
Win32.Backdoor.Agobot
Win32.Backdoor.AimBot
Win32.Backdoor.AIMVision
Win32.Backdoor.Allaple
Win32.Backdoor.Apdoor
Win32.Backdoor.Assasin
Win32.Backdoor.Asylum
Win32.Backdoor.Atomic
Win32.Backdoor.Autocrat
Win32.Backdoor.Bifrose
Win32.Backdoor.Blaire
Win32.Backdoor.BlueFire
Win32.Backdoor.BO2k
Win32.Backdoor.Botcmd
Win32.Backdoor.Botex
Win32.Backdoor.Breach
Win32.Backdoor.Breplibot
Win32.Backdoor.Cakl
Win32.Backdoor.Clindestine
Win32.Backdoor.CmjSpy
Win32.Backdoor.Codbot
Win32.Backdoor.Coldfusion
Win32.Backdoor.ControlTotal
Win32.Backdoor.Coredoor
Win32.Backdoor.CrackerDoor
Win32.Backdoor.Dalton
Win32.Backdoor.DarkFtp
Win32.Backdoor.DarkMoon
Win32.Backdoor.DataRape
Win32.Backdoor.DeepThroat
Win32.Backdoor.Delf
Win32.Backdoor.Devildor
Win32.Backdoor.EggDrop
Win32.Backdoor.EvilBot
Win32.Backdoor.Gobot
Win32.Backdoor.Haxdoor
Win32.Backdoor.IRCBot
Win32.Backdoor.IrcContact
Win32.Backdoor.IRCZapchast
Win32.Backdoor.Ketch
Win32.Backdoor.Latinus
Win32.Backdoor.LittleWitch
Win32.Backdoor.mIRC-based
Win32.Backdoor.Nanspy
Win32.Backdoor.Nepoe
Win32.Backdoor.Netbus
Win32.Backdoor.NetDevil
Win32.Backdoor.Optix
Win32.Backdoor.Pakes
Win32.Backdoor.PcClient
Win32.Backdoor.Poebot
Win32.Backdoor.Poison
Win32.Backdoor.RA
Win32.Backdoor.RBot
Win32.Backdoor.Rbot.gen
Win32.Backdoor.Robobot
Win32.Backdoor.SDBot
Win32.Backdoor.Sinowal
Win32.Backdoor.Small
Win32.Backdoor.Sobet
Win32.Backdoor.Specrem
Win32.Backdoor.TDS
Win32.Backdoor.TDS.SE
Win32.Backdoor.Turkojan
Win32.Backdoor.UltimateRAT
Win32.Backdoor.VanBot
Win32.Backdoor.VB
Win32.Backdoor.WinterLove
Win32.Backdoor.Wisdoor
Win32.Backdoor.WootBot
Win32.Dialer.GBDialer
Win32.Dialer.Trojan
Win32.Dluca.TrojanDownloader
Win32.EmailFlooder.Delf
Win32.Generic.PWS
Win32.Generic.Worm
Win32.Hoax.Renos
Win32.IRC.Flood
Win32.Mydoom.A
Win32.P2PWorm.SdDrop
Win32.P2PWorm.Tanked
Win32.Padobot
Win32.Rootkit.Agent
Win32.Sasser
Win32.SMSFlooder.Bomber
Win32.Sober.A
Win32.SpamTool.Agent
Win32.Spoofer.Gogle
Win32.Spybot.worm
Win32.Trojan.Agent
Win32.Trojan.BHO
Win32.Trojan.Buzus
Win32.Trojan.Crypt
Win32.Trojan.Delf
win32.Trojan.Dnschanger
Win32.Trojan.Downloader
Win32.Trojan.Inject
Win32.Trojan.Krepper
Win32.Trojan.Obfuscated
Win32.Trojan.Packed
Win32.Trojan.Pakes
Win32.Trojan.Qhost
Win32.Trojan.Small
Win32.Trojan.Spy
Win32.Trojan.Srizbi
Win32.Trojan.Starter
Win32.Trojan.StartPage
Win32.Trojan.Tibs
Win32.Trojan.Trash
Win32.TrojanClicker
Win32.TrojanClicker.Adpower
Win32.TrojanClicker.Delf
Win32.TrojanClicker.VB
Win32.TrojanDownloader.Adload
Win32.TrojanDownloader.Agent
Win32.TrojanDownloader.Banload
Win32.TrojanDownloader.BHO
Win32.TrojanDownloader.Bojo
Win32.TrojanDownloader.ConHook
Win32.TrojanDownloader.Cryptic
Win32.TrojanDownloader.Dadobra
Win32.TrojanDownloader.Delf
Win32.TrojanDownloader.FraudLoad
Win32.TrojanDownloader.ISTBar
Win32.TrojanDownloader.Lemmy
Win32.TrojanDownloader.Mutant
Win32.TrojanDownloader.Peregar
Win32.TrojanDownloader.Quyl
Win32.TrojanDownloader.Small
Win32.TrojanDownloader.Swizzor.br
Win32.TrojanDownloader.Tibs
Win32.TrojanDownloader.Tiny
Win32.TrojanDownloader.VB
Win32.TrojanDownloader.Winlagons
Win32.Trojandownloader.Zlob
Win32.TrojanDropper
Win32.Trojan-Dropper.Delf
Win32.Trojan-Dropper.ExeBundle
Win32.Trojan-Dropper.Joiner
Win32.TrojanDropper.Juntador
Win32.TrojanDropper.MultiJoiner
Win32.TrojanDropper.ParaDrop
Win32.TrojanDropper.Small
Win32.TrojanDropper.VB
Win32.TrojanDropper.Vidro
Win32.TrojanProxy.Agent.dl
Win32.TrojanProxy.Bobax
Win32.TrojanProxy.Cimuz
Win32.TrojanProxy.Daemonize
Win32.TrojanProxy.Small
Win32.Trojan-PSW.Delf
Win32.Trojan-PWS.Gip
Win32.TrojanPWS.LdPinch
Win32.TrojanPWS.Lmir
Win32.TrojanPWS.Magania
Win32.TrojanPWS.OnlineGames
Win32.TrojanPWS.Papras
Win32.TrojanPWS.QQPass
Win32.TrojanPWS.VB
Win32.TrojanPWS.WOW
Win32.TrojanSpy.Banker
Win32.TrojanSpy.Delf
Win32.TrojanSpy.Keylogger
Win32.TrojanSpy.Peed
Win32.TrojanSpy.Zbot
Win32.Winshow
Win32.Worm.Allaple
Win32.Worm.Anar
Win32.Worm.Anset
Win32.Worm.Antilogo
Win32.Worm.Autorun
Win32.Worm.Bagle
Win32.Worm.Bobic
Win32.Worm.Brontok
Win32.Worm.CodBot
Win32.Worm.Doombot
Win32.Worm.Doomjuice
Win32.Worm.Downloader
Win32.Worm.Fizzer
Win32.Worm.Gaobot
Win32.Worm.Gibe
Win32.Worm.Klez
Win32.Worm.Lentin
Win32.Worm.LovGate
Win32.Worm.Merkur
Win32.Worm.Mimail
Win32.Worm.MyPics
Win32.Worm.Mytob
Win32.Worm.Netsky
Win32.Worm.Newapt
Win32.Worm.Newpic
Win32.Worm.Nihilit
Win32.Worm.Nohoper
Win32.Worm.PeerBot
Win32.Worm.Rbot
Win32.Worm.SDBot
Win32.Worm.Shorm
Win32.Worm.Skudex
Win32.Worm.Socks
Win32.Worm.Tanatos
Win32.Worm.Tibick
Win32.Worm.Totilix
Win32.Worm.Updater
Win32.Worm.Warezov
Win32.Worm.VB
Win32.Worm.Xanax
Win32.Worm.Zafi
Win32.Worm.Zhelatin
WinFixer
VirtualBouncer
Virtumonde
MD5 checksum for core.aawdef is 175a2a16b9d12ddfc42d09cf1b14bb35
MD5 checksum for defs.ref is 7d6473fe3cbaf602ca571058532c6013



