SecuriteInfo.com signature update for securiteinfo.hdb (Professional, Gold and Reseller edition) Reference : https://www.securiteinfo.com/clamav-antivirus/published-updates/ ### Generic signatures added/modified : SecuriteInfo.com.JS.Obfus-161 SecuriteInfo.com.JS.Obfus-460 SecuriteInfo.com.JS.Obfus-463 SecuriteInfo.com.JS.Obfus-511 SecuriteInfo.com.JS.Obfus-524 SecuriteInfo.com.JS.Obfus-525 SecuriteInfo.com.PHP.Shell-46 SecuriteInfo.com.PUA.JS.Obfus-5 SecuriteInfo.com.VBS.Downloader-2 SecuriteInfo.com.VBS.EmbeddedEXE-4 YARA.SecuriteInfo_Suspicious_Phishing_2 ### Generic signatures removed due to Clamav detection ### Generic signatures removed due to internal optimisation ### Signatures removed due to generic signatures : SecuriteInfo.com.AdLibrary.Generisk.15758 SecuriteInfo.com.AdLibrary.Generisk.26083 SecuriteInfo.com.AdLibrary.Generisk.30883 SecuriteInfo.com.Android.Adwo.Ae1acAdWare.21699.19300 SecuriteInfo.com.ANDROID.Agent.drrc.14285 SecuriteInfo.com.Android.Agent-DVL.17111.27460 SecuriteInfo.com.Android.Agent-RFK.9548.2921 SecuriteInfo.com.Android.Encoder.10.23690.31949 SecuriteInfo.com.Android.Encoder.10.25511.27683 SecuriteInfo.com.Android.Encoder.10.26185.30310 SecuriteInfo.com.Android.Encoder.10.31277.10651 SecuriteInfo.com.Android.Fakeangry.Ac.11161 SecuriteInfo.com.Android.G2P.FS.E0709EADB370.6868 SecuriteInfo.com.Android.Generic.Z.2E696Ctr.15407 SecuriteInfo.com.Android.Generic.Z.2E696Ctr.2103 SecuriteInfo.com.Android.Generic.Z.2E696Ctr.5017 SecuriteInfo.com.Android.MulDrop.35.5530.21923 SecuriteInfo.com.AndroidOS.Fakengry.11862.10865 SecuriteInfo.com.AndroidOS.Fakengry.16704.2311 SecuriteInfo.com.AndroidOS.Fakengry.19867.20529 SecuriteInfo.com.AndroidOS.Fakengry.22749.27190 SecuriteInfo.com.AndroidOS.Fakengry.27314.50 SecuriteInfo.com.AndroidOS.Fakengry.28631.20303 SecuriteInfo.com.AndroidOS.Fakengry.6661.18392 SecuriteInfo.com.Android.SmsSend.11745.27379.7504 SecuriteInfo.com.Android.SmsSend.1212.8672.12932 SecuriteInfo.com.Android.SmsSend.1302.31628.24335 SecuriteInfo.com.Android.SmsSend.1313.12387.25192 SecuriteInfo.com.Android.SmsSend.1374.16973.22064 SecuriteInfo.com.Android.SmsSend.1813.9570.21505 SecuriteInfo.com.Android.SmsSend.1900.23947.29870 SecuriteInfo.com.Android.SmsSend.1987.32086.14461 SecuriteInfo.com.Android.SmsSend.1994.19816.29472 SecuriteInfo.com.Android.SmsSend.8008.9754.32609 SecuriteInfo.com.Android.SmsSend.811.11227.14077 SecuriteInfo.com.Android.SmsSend.826.16911.28785 SecuriteInfo.com.Android.SmsSend.827.19964.28910 SecuriteInfo.com.Android.SmsSend.8348.960.14225 SecuriteInfo.com.Android.SmsSend.9957.24479.26578 SecuriteInfo.com.Android.Xiny.190.origin.22695.16086 SecuriteInfo.com.Android.Xiny.48.1658.19514 SecuriteInfo.com.Android.Xiny.48.2678.32714 SecuriteInfo.com.Java.Downloader.348.2095.1729 SecuriteInfo.com.Java.Downloader.348.9867.9148 SecuriteInfo.com.Java.Downloader.436.26398.29094 SecuriteInfo.com.Java.Downloader.436.6961.11894 SecuriteInfo.com.Java.Trojan.GenericGB.21606.4135.11928 SecuriteInfo.com.Mal.Gen.14964.17411 SecuriteInfo.com.Mal.Gen.19926.22344 SecuriteInfo.com.Mal.Gen.24280.24649 SecuriteInfo.com.PUA.AndroidOS.KingRoot.25167.13801 SecuriteInfo.com.PUA.AndroidOS.LckyPtchr.AMTB.10396 SecuriteInfo.com.Trojan0055299a1.9612.25169 SecuriteInfo.com.Trojan.Android.Apptrack.dzuzdn.10527.10265 SecuriteInfo.com.Trojan.Android.Apptrack.dzuzdn.12198.15538 SecuriteInfo.com.Trojan.Android.Apptrack.dzuzdn.24456.27267 ### Signatures removed due to Clamav detection : SecuriteInfo.com.Trojan.AutoIt.1410.18657.2222 SecuriteInfo.com.HTML.Framer.25159.13217 SecuriteInfo.com.HTML.Framer.3893.6043 SecuriteInfo.com.Iframe.Malware.10998057.13680.12278 SecuriteInfo.com.JS.HiddenLink.A.7786.21591 SecuriteInfo.com.Mal.Iframe-F.9027.16384 SecuriteInfo.com.Trojan.Script.42453.516.4386 SecuriteInfo.com.XPL.Gen.L.90_109.18307.7213 SecuriteInfo.com.XPL.Gen.L.90_109.23216.12112 SecuriteInfo.com.Adware.Downware.20415.22396.29376 SecuriteInfo.com.BackDoor.AgentTeslaNET.37.10354.25482 SecuriteInfo.com.BackDoor.AgentTeslaNET.37.13658.16569 SecuriteInfo.com.BackDoor.AgentTeslaNET.37.17585.14990 SecuriteInfo.com.BackDoor.AgentTeslaNET.37.29285.697 SecuriteInfo.com.BackDoor.AgentTeslaNET.37.30843.28574 SecuriteInfo.com.Trojan.AutoIt.1413.10304.4945 SecuriteInfo.com.Trojan.AutoIt.1413.27657.17426 SecuriteInfo.com.Trojan.DownLoader47.10101.7361.28427 SecuriteInfo.com.Trojan.DownLoader47.10167.14962.2702 SecuriteInfo.com.Trojan.DownLoader47.10202.30172.23650 SecuriteInfo.com.Trojan.GenericKD.73563676.15729.32579 SecuriteInfo.com.Trojan.GenericKD.73564387.28784.20081 SecuriteInfo.com.TrojanLoader.MSIL.DaVinci.Heur.18937.29118 SecuriteInfo.com.TrojanLoader.MSIL.DaVinci.Heur.2956.3158 SecuriteInfo.com.Trojan.MSIL.Crypt.25795.12791 SecuriteInfo.com.Trojan.Packed2.47317.11957.1174 SecuriteInfo.com.Trojan.PasswordStealer.GenericKD.1045.8362.20080 SecuriteInfo.com.Win32.Evo-gen.14211.13275 SecuriteInfo.com.Win32.Evo-gen.6037.7750 SecuriteInfo.com.Win32.MalwareX-gen.13617.1549 SecuriteInfo.com.Win32.MalwareX-gen.21994.23704 SecuriteInfo.com.Win32.MalwareX-gen.22385.22747 SecuriteInfo.com.Win32.MalwareX-gen.24228.25969 SecuriteInfo.com.Win32.MalwareX-gen.25347.1651 SecuriteInfo.com.Win32.MalwareX-gen.26350.14020 SecuriteInfo.com.Win32.MalwareX-gen.4818.28227 SecuriteInfo.com.Win32.MalwareX-gen.5210.19392 SecuriteInfo.com.Win32.MalwareX-gen.6601.3097 SecuriteInfo.com.Heur.10873.20035 SecuriteInfo.com.Heur.10935.31643 SecuriteInfo.com.Heur.1142.3438 SecuriteInfo.com.Heur.11619.4149 SecuriteInfo.com.Heur.11674.28327 SecuriteInfo.com.Heur.11943.19079 SecuriteInfo.com.Heur.149.19165 SecuriteInfo.com.Heur.18002.17905 SecuriteInfo.com.Heur.19789.12459 SecuriteInfo.com.Heur.19843.26720 SecuriteInfo.com.Heur.20263.20500 SecuriteInfo.com.Heur.2150.17571 SecuriteInfo.com.Heur.22698.13376 SecuriteInfo.com.Heur.24581.22706 SecuriteInfo.com.Heur.2591.4344 SecuriteInfo.com.Heur.2659.23651 SecuriteInfo.com.Heur.26874.28113 SecuriteInfo.com.Heur.2900.4645 SecuriteInfo.com.Heur.29133.19876 SecuriteInfo.com.Heur.30721.14624 SecuriteInfo.com.Heur.31141.25002 SecuriteInfo.com.Heur.31708.25775 SecuriteInfo.com.Heur.31729.12924 SecuriteInfo.com.Heur.3181.2607 SecuriteInfo.com.Heur.5075.14070 SecuriteInfo.com.Heur.8586.13054 SecuriteInfo.com.Heur.9927.24049 SecuriteInfo.com.JS.Psyme-AI.12288.1240 SecuriteInfo.com.JS.Psyme-AI.17801.1643 SecuriteInfo.com.JS.Psyme-AI.2157.29947 SecuriteInfo.com.JS.Psyme-AI.26583.3296 SecuriteInfo.com.JS.Psyme-AI.29347.15681 SecuriteInfo.com.JS.Psyme-AI.4717.11748 SecuriteInfo.com.JS.Psyme-AI.5280.22937 SecuriteInfo.com.JS.Psyme-AI.6572.24472 SecuriteInfo.com.JS.Psyme-AI.9779.15602 ### Signatures removed due to internal optimization : SecuriteInfo.com.Exploit.ADODB.Stream.DD.12210.26649 SecuriteInfo.com.Heur.10186.12946 SecuriteInfo.com.Heur.12863.3826 SecuriteInfo.com.Heur.15496.28564 SecuriteInfo.com.Heur.2087.17097 SecuriteInfo.com.Heur.24179.9852 SecuriteInfo.com.Heur.24781.10530 SecuriteInfo.com.Heur.25047.2611 SecuriteInfo.com.Heur.25292.20420 SecuriteInfo.com.Heur.26282.20261 SecuriteInfo.com.Heur.26383.7014 SecuriteInfo.com.Heur.27228.18912 SecuriteInfo.com.Heur.28985.15845 SecuriteInfo.com.Heur.29459.20275 SecuriteInfo.com.Heur.32180.12349 SecuriteInfo.com.Heur.3534.27763 SecuriteInfo.com.Heur.6553.20193 SecuriteInfo.com.JS.Decode-BKU.23073.31246 SecuriteInfo.com.JS.Dropper-CF.15936.6099 SecuriteInfo.com.JS.Exploit.1040.15214 SecuriteInfo.com.JS.Illredir-BY.26595.10276 SecuriteInfo.com.JS.Phishing.472.2337.22300 SecuriteInfo.com.JS.Phishing.472.30003.7153 SecuriteInfo.com.JS.Redirector.based.3.6994.24385 SecuriteInfo.com.JS.Siggen5.44642.26343.6161 SecuriteInfo.com.JS.Siggen5.44642.4255.23249 SecuriteInfo.com.PHP.BackDoor.CZ.26251.28702 SecuriteInfo.com.TR.Dldr.Psyme.BJ.1.9440.16129.9848 SecuriteInfo.com.Trojan.Agent.JS.AV.25075.17155 SecuriteInfo.com.Trojan.Script.62504.12673.25605 SecuriteInfo.com.Trojan.Script.727176.12581.7975 SecuriteInfo.com.VBS.Dropper.13504.21813 ### Signatures added : SecuriteInfo.com.Exploit.Siggen3.49667.28252.31212 SecuriteInfo.com.EXPL_RODIV.A.14074 SecuriteInfo.com.FileRepMalware.27012.2844 SecuriteInfo.com.FileRepMalware.6077.3851 SecuriteInfo.com.HTML.Iframe-BN.1657.2316 SecuriteInfo.com.IMG.Phish.14843.289 SecuriteInfo.com.Other.Malware-gen.6685.13427 SecuriteInfo.com.SCRIPT.WORM.Virus.16544.23285 SecuriteInfo.com.Trojan.Downloader.JS.UA.26471.28371 SecuriteInfo.com.Trojan.Iframe.MC.30082.1535 SecuriteInfo.com.Trojan.JS.Iframe.DHK.8499.23625 SecuriteInfo.com.Trojan.Packed2.46244.15144.32760 SecuriteInfo.com.Trojan-Spy.Agent.12486.10710 SecuriteInfo.com.Variant.Marsilia.141587.9761.20560 SecuriteInfo.com.Win32.Evo-gen.14047.7533 SecuriteInfo.com.Win32.Evo-gen.14047.7533 SecuriteInfo.com.Win32.Evo-gen.23063.4156 SecuriteInfo.com.Win32.Expiro.153.4018.8606 SecuriteInfo.com.Win32.Expiro.153.55.22078 SecuriteInfo.com.Win32.Expiro.153.5578.18424 SecuriteInfo.com.Win32.Malware-gen.1876.14003 SecuriteInfo.com.Win32.Sality.19411.7284 SecuriteInfo.com.Win32.Trojan.PSE.1S437JY.116.30619 SecuriteInfo.com.Win32.TrojanX-gen.31444.7421 ### Total for each file provided by SecuriteInfo.com : 37070 spam_marketing.ndb 227011 securiteinfo.hdb 4168727 securiteinfoold.hdb 53318 javascript.ndb 103690 securiteinfohtml.hdb 151950 securiteinfoascii.hdb 124336 securiteinfoandroid.hdb 9250 securiteinfopdf.hdb 20031 securiteinfo.mdb 148 securiteinfo0hour.hdb 14 securiteinfo.pdb 2 securiteinfo.wdb 4895547 total New Sigs: 42 Dropped Sigs: 162