SecuriteInfo.com signature update for securiteinfo.hdb (Professional, Gold and Reseller edition) Reference : https://www.securiteinfo.com/clamav-antivirus/published-updates/ ### Generic signatures added/modified : SecuriteInfo.com.HTML-8403 SecuriteInfo.com.HTML.Phish-279 SecuriteInfo.com.Iframe.Gen-125 SecuriteInfo.com.JS.Agent-2710 SecuriteInfo.com.JS.Obfus-1596 SecuriteInfo.com.JS.Obfus-161 SecuriteInfo.com.JS.Obfus-460 SecuriteInfo.com.JS.Obfus-463 SecuriteInfo.com.JS.Obfus-511 SecuriteInfo.com.JS.Obfus-524 SecuriteInfo.com.JS.Obfus-525 SecuriteInfo.com.JS.Obfus-661 SecuriteInfo.com.PHP.Shell-46 SecuriteInfo.com.PUA.JS.Obfus-5 SecuriteInfo.com.VBS.Downloader-2 SecuriteInfo.com.VBS.EmbeddedEXE-4 SecuriteInfo.com.BScope.TrojanPSW.Azorult SecuriteInfo.com.W32.Troj_Obfusc.Z.gen.Eldorado ### Generic signatures removed due to Clamav detection SecuriteInfo.com.HTML-11891 SecuriteInfo.com.HTML-11893 SecuriteInfo.com.HTML-11894 SecuriteInfo.com.HTML-11895 SecuriteInfo.com.HTML-11896 SecuriteInfo.com.HTML-11899 SecuriteInfo.com.HTML-11900 SecuriteInfo.com.HTML-11901 SecuriteInfo.com.HTML-11905 SecuriteInfo.com.HTML-11906 SecuriteInfo.com.HTML-11908 SecuriteInfo.com.HTML-11909 SecuriteInfo.com.HTML-11912 SecuriteInfo.com.HTML-11913 SecuriteInfo.com.HTML-11914 SecuriteInfo.com.HTML-11915 SecuriteInfo.com.HTML-11916 SecuriteInfo.com.HTML-11917 SecuriteInfo.com.HTML-11918 SecuriteInfo.com.HTML-11919 SecuriteInfo.com.HTML-11920 SecuriteInfo.com.HTML-11921 SecuriteInfo.com.HTML-11922 SecuriteInfo.com.HTML-11923 SecuriteInfo.com.HTML-11924 SecuriteInfo.com.HTML-11925 SecuriteInfo.com.HTML-11927 SecuriteInfo.com.HTML-11928 SecuriteInfo.com.HTML-11930 SecuriteInfo.com.HTML-11932 SecuriteInfo.com.HTML-11933 SecuriteInfo.com.HTML-11935 SecuriteInfo.com.HTML-11936 SecuriteInfo.com.HTML-11938 SecuriteInfo.com.HTML-11939 SecuriteInfo.com.HTML-11940 SecuriteInfo.com.HTML-11942 SecuriteInfo.com.HTML-11943 SecuriteInfo.com.HTML-11944 SecuriteInfo.com.HTML-11946 SecuriteInfo.com.HTML-11947 SecuriteInfo.com.HTML-11948 SecuriteInfo.com.HTML-11949 SecuriteInfo.com.HTML-11950 SecuriteInfo.com.HTML-11951 SecuriteInfo.com.HTML-11954 SecuriteInfo.com.HTML-11955 SecuriteInfo.com.HTML-11956 SecuriteInfo.com.HTML-11957 SecuriteInfo.com.HTML-11961 SecuriteInfo.com.HTML-11962 SecuriteInfo.com.HTML-11963 SecuriteInfo.com.HTML-11965 SecuriteInfo.com.HTML-11968 SecuriteInfo.com.HTML-11969 SecuriteInfo.com.HTML-11970 SecuriteInfo.com.HTML-11971 SecuriteInfo.com.HTML-11972 SecuriteInfo.com.HTML-11973 SecuriteInfo.com.HTML-11977 SecuriteInfo.com.HTML-11979 SecuriteInfo.com.HTML-11980 SecuriteInfo.com.HTML-11982 SecuriteInfo.com.HTML-11983 SecuriteInfo.com.HTML-11984 SecuriteInfo.com.HTML-11985 SecuriteInfo.com.HTML-11986 SecuriteInfo.com.HTML-11989 SecuriteInfo.com.HTML-11990 SecuriteInfo.com.HTML-11991 SecuriteInfo.com.HTML-11993 SecuriteInfo.com.HTML-12179 SecuriteInfo.com.HTML-12386 SecuriteInfo.com.HTML-12387 SecuriteInfo.com.HTML-12388 SecuriteInfo.com.HTML-12389 SecuriteInfo.com.HTML-12402 SecuriteInfo.com.HTML-12560 SecuriteInfo.com.HTML-12884 SecuriteInfo.com.HTML-13021 SecuriteInfo.com.HTML-13045 SecuriteInfo.com.HTML-13046 SecuriteInfo.com.HTML-13123 SecuriteInfo.com.HTML-13257 SecuriteInfo.com.HTML-13344 SecuriteInfo.com.HTML-13562 SecuriteInfo.com.HTML-13871 SecuriteInfo.com.HTML-1425 SecuriteInfo.com.HTML-14430 SecuriteInfo.com.HTML-14466 SecuriteInfo.com.HTML-14736 SecuriteInfo.com.HTML-15719 SecuriteInfo.com.HTML-16340 SecuriteInfo.com.HTML-16579 SecuriteInfo.com.HTML-16622 SecuriteInfo.com.HTML-16746 SecuriteInfo.com.HTML-16762 SecuriteInfo.com.HTML-16770 SecuriteInfo.com.HTML-17013 SecuriteInfo.com.HTML-17035 ### Generic signatures removed due to internal optimisation ### Signatures removed due to generic signatures : SecuriteInfo.com.Exploit.ADODB.Stream.DD.12210.26649 SecuriteInfo.com.HTML.Framer.25159.13217 SecuriteInfo.com.HTML.Framer.3893.6043 SecuriteInfo.com.HTML.Phishing-DEF.21490.20588 SecuriteInfo.com.Iframe.Malware.10998057.13680.12278 SecuriteInfo.com.JS.Decode-BKU.11076.22717 SecuriteInfo.com.JS.Decode-BKU.17833.5156 SecuriteInfo.com.JS.Decode-BKU.18060.22449 SecuriteInfo.com.JS.Decode-BKU.19142.8351 SecuriteInfo.com.JS.Decode-BKU.20409.31019 SecuriteInfo.com.JS.Decode-BKU.23923.31758 SecuriteInfo.com.JS.Decode-BKU.26946.1650 SecuriteInfo.com.JS.Decode-BKU.28296.28495 SecuriteInfo.com.JS.Decode-BKU.29004.27587 SecuriteInfo.com.JS.Decode-BKU.31790.3813 SecuriteInfo.com.JS.Decode-BKU.32299.51 SecuriteInfo.com.JS.Decode-BKU.4152.24456 SecuriteInfo.com.JS.Decode-BKU.4465.18081 SecuriteInfo.com.JS.Decode-BKU.7752.16057 SecuriteInfo.com.JS.Dropper-CF.10067.17963 SecuriteInfo.com.JS.Dropper-CF.11329.30438 SecuriteInfo.com.JS.Dropper-CF.16924.16920 SecuriteInfo.com.JS.Dropper-CF.17145.22711 SecuriteInfo.com.JS.Dropper-CF.179.22929 SecuriteInfo.com.JS.Dropper-CF.21660.18083 SecuriteInfo.com.JS.Dropper-CF.27204.27946 SecuriteInfo.com.JS.Dropper-CF.28694.2723 SecuriteInfo.com.JS.Dropper-CF.29266.5458 SecuriteInfo.com.JS.Dropper-CF.32163.21768 SecuriteInfo.com.JS.Dropper-CF.5720.15672 SecuriteInfo.com.JS.Dropper-CF.7481.22378 SecuriteInfo.com.JS.Dropper-CF.8320.24669 SecuriteInfo.com.JS.Dropper-CF.9062.10164 SecuriteInfo.com.JS.Exploit.1040.15214 SecuriteInfo.com.JS.HiddenLink.A.7786.21591 SecuriteInfo.com.JS.Illredir-BY.10535.15126 SecuriteInfo.com.JS.Illredir-BY.11453.30154 SecuriteInfo.com.JS.Illredir-BY.12534.13084 SecuriteInfo.com.JS.Illredir-BY.13663.21677 SecuriteInfo.com.JS.Illredir-BY.14881.12373 SecuriteInfo.com.JS.Illredir-BY.15502.3833 SecuriteInfo.com.JS.Illredir-BY.15765.12843 SecuriteInfo.com.JS.Illredir-BY.15879.18192 SecuriteInfo.com.JS.Illredir-BY.18059.434 SecuriteInfo.com.JS.Illredir-BY.26868.22011 SecuriteInfo.com.JS.Illredir-BY.30523.26530 SecuriteInfo.com.JS.Illredir-BY.32209.29490 SecuriteInfo.com.JS.Illredir-BY.6217.20691 SecuriteInfo.com.JS.Illredir-BY.7071.26375 SecuriteInfo.com.JS.Redirector.based.3.6994.24385 SecuriteInfo.com.JS.Siggen5.44642.26343.6161 SecuriteInfo.com.JS.Siggen5.44642.4255.23249 SecuriteInfo.com.Mal.Iframe-F.9027.16384 SecuriteInfo.com.PHP.BackDoor.CZ.26251.28702 SecuriteInfo.com.SCRIPT.Virus.28716.23339 SecuriteInfo.com.TR.Dldr.Psyme.BJ.1.9440.16129.9848 SecuriteInfo.com.Trojan.Agent.JS.AV.25075.17155 SecuriteInfo.com.Trojan.Script.42453.516.4386 SecuriteInfo.com.Trojan.Script.62504.12673.25605 SecuriteInfo.com.Trojan.Script.727176.11570.32605 SecuriteInfo.com.Trojan.Script.727176.13055.15794 SecuriteInfo.com.Trojan.Script.727176.13360.6262 SecuriteInfo.com.Trojan.Script.727176.1401.21186 SecuriteInfo.com.Trojan.Script.727176.20592.8444 SecuriteInfo.com.Trojan.Script.727176.22314.30801 SecuriteInfo.com.Trojan.Script.727176.24808.9716 SecuriteInfo.com.Trojan.Script.727176.2639.7005 SecuriteInfo.com.Trojan.Script.727176.26700.31673 SecuriteInfo.com.Trojan.Script.727176.29241.26820 SecuriteInfo.com.Trojan.Script.727176.32572.7220 SecuriteInfo.com.Trojan.Script.727176.6200.12235 SecuriteInfo.com.Trojan.Script.727176.6383.19482 SecuriteInfo.com.Trojan.Script.727176.9083.27291 SecuriteInfo.com.VBS.Dropper.13504.21813 SecuriteInfo.com.XPL.Gen.L.90_109.18307.7213 SecuriteInfo.com.XPL.Gen.L.90_109.23216.12112 SecuriteInfo.com.Program.Unwanted.5511.25914.4952 SecuriteInfo.com.Variant.Jaik.190811.8922.25464 SecuriteInfo.com.Win32.Malware-gen.15212.27873 ### Signatures removed due to Clamav detection : SecuriteInfo.com.Trojan.PackedENT.123.13651.29759 SecuriteInfo.com.Trojan.PackedENT.162.26281.15536 SecuriteInfo.com.Trojan.PackedNET.1084.10488.23499 SecuriteInfo.com.Trojan.PackedNET.1259.28085.22626 SecuriteInfo.com.Trojan.PackedNET.1277.11157.6304 SecuriteInfo.com.Trojan.PackedNET.1611.14376.12588 SecuriteInfo.com.Trojan.PackedNET.1611.17222.21560 SecuriteInfo.com.Trojan.PackedNET.1611.31818.29568 SecuriteInfo.com.Trojan.PackedNET.1611.9923.3323 SecuriteInfo.com.Trojan.PackedNET.1656.12901.16701 SecuriteInfo.com.Trojan.PackedNET.1656.16813.20437 SecuriteInfo.com.Trojan.PackedNET.1822.15038.32560 SecuriteInfo.com.Trojan.PackedNET.2248.26990.31407 SecuriteInfo.com.Trojan.PackedNET.2523.32514.29628 SecuriteInfo.com.Trojan.PackedNET.276.12655.11264 SecuriteInfo.com.Trojan.PackedNET.276.12934.13875 SecuriteInfo.com.Trojan.PackedNET.276.1483.28283 SecuriteInfo.com.Trojan.PackedNET.276.20157.6411 SecuriteInfo.com.Trojan.PackedNET.276.24297.6860 SecuriteInfo.com.Trojan.PackedNET.276.28937.12872 SecuriteInfo.com.Trojan.PackedNET.276.29025.21933 SecuriteInfo.com.Trojan.PackedNET.276.29653.24515 SecuriteInfo.com.Trojan.PackedNET.276.31616.16147 SecuriteInfo.com.Trojan.PackedNET.402.28595.3915 SecuriteInfo.com.Trojan.PackedNET.405.30543.8752 ### Signatures removed due to internal optimization : ### Signatures added : SecuriteInfo.com.BackDoor.Meterpreter.152.13747.17787 SecuriteInfo.com.BackDoor.Meterpreter.152.14257.19734 SecuriteInfo.com.BackDoor.Meterpreter.152.16398.14982 SecuriteInfo.com.BackDoor.Meterpreter.152.21329.13790 SecuriteInfo.com.BackDoor.Meterpreter.152.24216.4156 SecuriteInfo.com.BackDoor.Meterpreter.152.25176.22545 SecuriteInfo.com.BackDoor.Meterpreter.152.2945.13756 SecuriteInfo.com.BackDoor.Meterpreter.152.30158.28100 SecuriteInfo.com.BackDoor.Meterpreter.152.4242.5562 SecuriteInfo.com.BackDoor.Meterpreter.152.6324.27767 SecuriteInfo.com.BackDoor.Meterpreter.152.9318.16556 SecuriteInfo.com.BackDoor.Meterpreter.152.9763.28688 SecuriteInfo.com.Exploit.CVE-2017-11882.123.16697.4775 SecuriteInfo.com.EXPL_RODIV.A.14074 SecuriteInfo.com.FileRepMalware.15644.20868 SecuriteInfo.com.FileRepMalware.17637.13138 SecuriteInfo.com.FileRepMalware.19899.20900 SecuriteInfo.com.FileRepMalware.29202.25932 SecuriteInfo.com.FileRepMalware.5984.14841 SecuriteInfo.com.Generic.JS.Doenerium.D.FDF2D899.26018.24572 SecuriteInfo.com.Heur.BZC.YAX.Boxter.151.DB318F8C.11891.3272 SecuriteInfo.com.HTML.Iframe-BN.1657.2316 SecuriteInfo.com.JS.Packed.118.15876.2049 SecuriteInfo.com.NSIS.InjectorX-gen.28155.4628 SecuriteInfo.com.Other.Malware-gen.6685.13427 SecuriteInfo.com.Program.RemoteAdminNET.1.22990.5900 SecuriteInfo.com.Program.RemoteAdminNET.1.25328.23944 SecuriteInfo.com.SCRIPT.WORM.Virus.16544.23285 SecuriteInfo.com.Trojan.AutoIt.1450.24351.28106 SecuriteInfo.com.Trojan.Downloader.JS.UA.26471.28371 SecuriteInfo.com.Trojan-Dropper.Win32.Injector.13592.8111 SecuriteInfo.com.Trojan.GenericKD.73917315.29186.20730 SecuriteInfo.com.Trojan.Iframe.MC.30082.1535 SecuriteInfo.com.Trojan.JS.Iframe.DHK.8499.23625 SecuriteInfo.com.Trojan.PackedNET.3043.26927.18953 SecuriteInfo.com.Trojan.Shellcode.21.Gen.28174.24881 SecuriteInfo.com.Trojan.Shellcode.21.Gen.5923.16492 SecuriteInfo.com.Trojan.TR.AD.Nekark.iausi.11757.14965 SecuriteInfo.com.Virus.Win32.Virut.10896.32693 SecuriteInfo.com.Virus.Win32.Virut.6974.5458 SecuriteInfo.com.Win32.BankerX-gen.14291.30913 SecuriteInfo.com.Win32.Evo-gen.14047.7533 SecuriteInfo.com.Win32.Evo-gen.14047.7533 SecuriteInfo.com.Win32.InjectorX-gen.285.5699 SecuriteInfo.com.Win32.Malware-gen.15903.30133 SecuriteInfo.com.Win32.Malware-gen.24882.623 SecuriteInfo.com.Win32.Malware-gen.9974.10421 SecuriteInfo.com.Win32.MalwareX-gen.12775.16754 SecuriteInfo.com.BAT.AVKill.49.28151.1385 SecuriteInfo.com.BV.AddUser-G.14577.14773 SecuriteInfo.com.BV.Agent-AAX.17482.3754 SecuriteInfo.com.Generic.BatLdObf.A.D08BD171.32499.23769 SecuriteInfo.com.Joke.SwapMouse.8.9375.17529 SecuriteInfo.com.Other.Malware-gen.25187.16416 SecuriteInfo.com.Other.Malware-gen.3976.2923 SecuriteInfo.com.Script.SNH-gen.12798.10229 SecuriteInfo.com.Script.SNH-gen.17114.23943 SecuriteInfo.com.Script.SNH-gen.18753.6959 SecuriteInfo.com.Script.SNH-gen.23020.2467 SecuriteInfo.com.Script.SNH-gen.2390.21109 SecuriteInfo.com.Script.SNH-gen.24731.26672 SecuriteInfo.com.Script.SNH-gen.25063.14959 SecuriteInfo.com.Script.SNH-gen.2533.129 SecuriteInfo.com.Script.SNH-gen.4956.19477 SecuriteInfo.com.Script.SNH-gen.7634.20361 SecuriteInfo.com.Script.SNH-gen.8003.24215 SecuriteInfo.com.Script.SNH-gen.8686.10339 SecuriteInfo.com.Trojan-Downloader.VBS.Agent.14981.525 SecuriteInfo.com.Trojan.PWS.Stealer.39092.17187.18771 ### Total for each file provided by SecuriteInfo.com : 37825 spam_marketing.ndb 217861 securiteinfo.hdb 4145583 securiteinfoold.hdb 53832 javascript.ndb 103969 securiteinfohtml.hdb 152046 securiteinfoascii.hdb 126374 securiteinfoandroid.hdb 10345 securiteinfopdf.hdb 20689 securiteinfo.mdb 78 securiteinfo0hour.hdb 17 securiteinfo.pdb 2 securiteinfo.wdb 4868621 total New Sigs: 87 Dropped Sigs: 204