logo       

Update (daily: 482): msg#00006

security.virus.clamav.virusdb

Subject: Update (daily: 482)

ClamAV database updated (2004.09.08 16:43 GMT): daily.cvd, viruses.db2
Version: 482
Signatures total: 23963

Submission: 5475-web
Sender: Rey Geroleo
Virus: W32.Gaga (Symantec)
Alias: W32/Gaga.Worm (McAfee), Worm/Gaga (Hbedv), W32/Gaga-A (Sophos),
Win32.HLLW.Gago.20480 (Drweb), Win32.Gaga.A (Bitdefender)
Added: Worm.Gaga

Submission: 5480-web
Sender: Russ Phillips
Virus: false Worm.Blaster.A
Added: n/a. Not false. It contains malware fragment. Broken executable.

Submission: 5500-web
Sender: Fester
Virus: PS-MPC-based
Alias: PS-MPC090B (Sophos), PS-MPC.0693.DX.Gen (Bitdefender), MPC #1a virus
(Hbedv), VirusConstructor.based (Drweb)
Added: No. MPC#1a detected after extracting from a PK00PK Zip archive.
Note: In devel-20040908 added rule for "PK00PK" Zip archives.

Submission: 5507-web
Sender: hybridesoldier
Virus: dicon.240 (Avast)
Alias: Trojan.Flooder.Dicon.A (Bitdefender), FDOS.Floods (Drweb)
Added: Trojan.Flooder.Dicon.A

Submission: 5509-web
Sender: Bakhyt Maukeyev
Virus: MIME/PartialExploit (RAV)
Added: No. Splitting file into a few messages doesn't mean exploiting.

Submission: 5513-web
Sender: Mario Pascucci
Virus: W32.Gaobot.AJD (Symantec)
Alias: Win32.HLLW.Agobot (Drweb), Backdoor.Agobot.3.Gen (Bitdefender)
Added: Worm.Gaobot.100

Submission: 5514-web
Sender: Moritz Behner
Virus: false unknown
Added: No. ClamAV isn't detecting anything in that, so not false.

Submission: 5515-web
Sender: Simon Fishley
Virus: unknown
Added: No. Probably a broken binary.

Submission: 5517-web
Sender: Tony Sholtis
Virus: W32.redsec.flux.b (Kaspersky)
Alias: BackDoor.Flux (Drweb), Troj/Winflux-A (Sophos)
Added: Trojan.Flux-2
Note: It has been already detected (as Trojan.Flux-1) by devel versions of
ClamAV.

Submission: 5519-web
Sender: Christian
Virus: TrojanDownloader.Win32.Wintrim.bb (Kaspersky)
Alias: Trojan.Wintrim (Drweb)
Added: Trojan.Downloader.Wintrim.BB-2

Submission: 5520-web
Sender: Pablo
Virus: TrojanSpy.Win32.Small.az (Kaspersky)
Alias: Troj/Bizex-E (Sophos), TR/Small.AZ.1 (Hbedv)
Added: Trojan.Spy.Small.AZ

Submission: n/a
Sender: n/a
Virus: Worm.NewWife
Added: Worm.Nyxem.C
Note: Name change from Worm.NewWife to Worm.Nyxem.C

Submission: 5521-web
Sender: Gabor Funk
Virus: Nyxem.d (McAfee, F-prot)
Added: Worm.Nyxem.D

Submission: 5531-web
Sender: Vanja Cvelbar
Virus: Agobot.30
Alias: W32/Agobot-MP (Sophos), Backdoor.Agobot.Gen (Bitdefender)
Added: Worm.Gaobot.101

Submission: 5532-web
Sender: Vanja Cvelbar
Virus: irc/backdoor.sdbot (AVG)
Alias: W32/Rbot-Fam (Sophos), Win32.HLLW.MyBot.based (Drweb),
Backdoor.SDBot.Gen (Bitdefender)
Added: Trojan.SdBot.Gen-133

Submission: 5533-web
Sender: Daniel Merc
Virus: Backdoor.Rbot.gen (Kaspersky)
Alias: Worm/Rbot.LG (Hbedv), Backdoor.SDBot.Gen (Bitdefender)
Added: Backdoor.SDBot.Gen-134

--
Tomasz Papszun SysAdm @ TP S.A. Lodz, Poland | And it's only
tomek@xxxxxxxxxxxx http://www.lodz.tpsa.pl/iso/ | ones and zeros.
tomek@xxxxxxxxxx http://www.ClamAV.net/ A GPL virus scanner


-------------------------------------------------------
This SF.Net email is sponsored by BEA Weblogic Workshop
FREE Java Enterprise J2EE developer tools!
Get your free copy of BEA WebLogic Workshop 8.1 today.
http://ads.osdn.com/?ad_id=5047&alloc_id=10808&op=click


<Prev in Thread] Current Thread [Next in Thread>
Google Custom Search

News | FAQ | advertise