Ad-aware Definition File Update [SE1R103] 10.04.06

  • Thread starter Thread starter Randy Knobloch
  • Start date Start date
Thank you Randy.

Definition file Notification - Lavasoft News

SE1R103 10.04.2006

New Definitions:

ABetterInternet.Nail
Adware.DuDu +2
Adware.P2PNetworking
Adware.Quicklinks
Spyware.QuickKeylogger

Updated Definitions:

AdBlaster
Adintelligence.AproposToolbar +4
Adware.DollarRevenue
Adware.DuDu +8
Adware.EnergyPlugin
Adware.Hengbang
Adware.Mediapipe
Adware.Systemprocess
AdwareSheriff
begin2search +2
BroadCastPC
ClearSearch +4
CnsMin +20
Dialer +13
EzuLa +3
Global Netcom Inc +6
ImIServer IEPlugin +2
IROffer +2
istbar
MediaMotor
MegaSearch Toolbar +2
Softomate Toolbar +2
SpyAxe
SpyFerret
SpywareNo
SurfSideKickBHO
Timesink
Trojan +6
Win32.Bagle.B +3
Win32.Harnig.Trojan
Win32.Sober.A +3
Win32.Spybot.worm +2
Win32.Trojan.Agent.cs
Win32.Trojan.Delf
Win32.Trojan.Downloader +38
Win32.Trojan.Mirc +2
Win32.Trojan.Puper.d +4
Win32.Trojan.Spambot +2
Win32.TrojanClicker +7
Win32.TrojanDownloader.Agent
Win32.TrojanDownloader.ConHook +2
Win32.TrojanDownloader.IstBar.hg +3
Win32.TrojanDownloader.Lastad.h +2
Win32.TrojanDownloader.Swizzor.br +22
Win32.Trojandownloader.Zlob +2
Win32.TrojanDropper
Win32.TrojanDropper.Vidro
Win32.TrojanProxy.Small +3
Win32.Trojan-PSW.Lineage +4
Win32.TrojanSpy.Banker
Win32.TrojanSpy.Goldun +2
Virtumonde +2
Zango +2

The MD5 checksum for the defs.ref file is fc893a1f9443a77d18e9f60879a41315
 
Regarding Def Update SE1R103 10.04.2006:

False/positives reported with Internal Build 119 -- 10 instances of istbar
classID 50127dc3-0f36-415e-a6cc-4cb3be910b65

A new file was released as Internal Build 120.

File size reduced from 613722 to 603709:
Total size reduced from 2013699 to 1990340

To check that you have Internal Build 120, launch Ad-Aware SE and click on
Details. This is what you should find:

Definitions File Loaded:
Reference Number : SE1R103 10.04.2006
Internal build : 120
File location : C:\Program Files\Lavasoft\Definitions\defs.ref
File size : 603709 Bytes
Total size : 1990340 Bytes
Signature data size : 1976427 Bytes
Reference data size : 13401 Bytes
Signatures total : 54120
Fingerprints total : 2301
Fingerprints size : 73588 Bytes
Target categories : 15
Target families : 870
--
Corrine
MS MVP, Windows Security


Engel said:
Thank you Randy.

Definition file Notification - Lavasoft News

SE1R103 10.04.2006
{Snip}
 
I too was having a problem with the new update. Thank you Corrine for the
info. Ad-Aware is working great now after updating again. Once again Thanks..
 
What a way to spend my morning "break". I'm glad I did though since it
helped you out.

Regards,


Corrine
MS MVP, Windows Security
 
Hi Corrine

Interestingly this is not the first time for Adaware. A few updates back (
can`t remember which one) Adaware was giving a false positive for Winfixer.
After scanning with Spybot S&D, Ewido and an extensive HJT post to Castle
Cops the conclusion was a negative. Shortly afterwards there was another
update, again with a reduced file size which when run indicated a clean
machine. Certainly the PC involved was never symptomatic of what you would
expect from Winfixer.

Stu
 
Hi Stu

If you check latest updates it seems that Lavasoft
has been working alot with Vundo/Smitfraud infests
and removals.

And this is a "swamp" with tons of registry entries....

Hope that some users can "avoid" to go to a HijackThis forum
and directly run Adaware and remove all junk.

Just to press "Start".

;)

regards
plun
 
Hi Plun

Yes I saw that - thanks for the `heads up` much appreciated. I`ve been
using Adaware for almost 3 years now and have a great deal of confidence in
its ability to do a good job. That is why when it seemingly found Winfixer
it really got my attention -particularly as S&D wasn`t flagging it;

No more HJT- I promise ;

Regards

Stu
 
Hi Stu

Well, for Smitfraud infests it directly seems to "hit the ground"...
It crashes.... (SpywareQuake).

So Lavasoft probably needs more weeks to fix definitions.

regards
plun
 
Back
Top