SecuriteInfo.com signature update for securiteinfo.hdb (Professional, Gold and Reseller edition) Reference : https://www.securiteinfo.com/clamav-antivirus/published-updates/ ### Generic signatures added/modified : SecuriteInfo.com.Iframe-13 SecuriteInfo.com.Iframe-142 SecuriteInfo.com.Iframe-1859 SecuriteInfo.com.Iframe.Gen-125 SecuriteInfo.com.Iframe.Gen-5 SecuriteInfo.com.JS.Obfus-1596 SecuriteInfo.com.JS.Obfus-161 SecuriteInfo.com.JS.Obfus-2641 SecuriteInfo.com.JS.Obfus-2662 SecuriteInfo.com.JS.Obfus-460 SecuriteInfo.com.JS.Obfus-463 SecuriteInfo.com.JS.Obfus-511 SecuriteInfo.com.JS.Obfus-913 SecuriteInfo.com.VBS.Downloader-10 YARA.SecuriteInfo_Suspicious_Phishing_6 SecuriteInfo.com.Generic2_c.ABVU SecuriteInfo.com.Injector.DNX SecuriteInfo.com.PUA.Keniu-1 SecuriteInfo.com.Trojan.Packed.26819-1 SecuriteInfo.com.Variant.Dropper.354 SecuriteInfo.com.Win32.Evo-gen.14779927 ### Generic signatures removed due to Clamav detection ### Generic signatures removed due to internal optimisation ### Signatures removed due to generic signatures : SecuriteInfo.com.Trojan-Spy.Agent.17543.16446 SecuriteInfo.com.Variant.Dropper.354.13879.18060 SecuriteInfo.com.Variant.Midie.181833.65541323 SecuriteInfo.com.W64.ABmRisk.ZGAL-2606.8995.32291 SecuriteInfo.com.Win32.Evo-gen.14779927 SecuriteInfo.com.PSW.Agent.AAGO.23879.32423 SecuriteInfo.com.PSW.Agent.AEMO.25438.2318 SecuriteInfo.com.PSW.Agent.AEST.28205.27204.29443 SecuriteInfo.com.PSW.Agent.AFEU.32369.31089.12346 SecuriteInfo.com.PSW.Agent.AIKH.13148.7546.24195 SecuriteInfo.com.PSW.Agent.AIKH.14603.8761.27812 SecuriteInfo.com.PSW.Agent.AIKH.16165.25987.15859 SecuriteInfo.com.PSW.Agent.AIKH.19629.17378.1419 SecuriteInfo.com.PSW.Agent.AIKH.482.24273 SecuriteInfo.com.PSW.Agent.AIKH.6266.18148.32460 SecuriteInfo.com.PSW.Agent.AIQZ.20983.22269 SecuriteInfo.com.PSW.Agent.AOTZ.22122.9509.18586 SecuriteInfo.com.PSW.Agent.BCWG.26861.16472.30963 SecuriteInfo.com.PSW.Agent.BKFH.28171.16217.17672 SecuriteInfo.com.PSW.Agent.BKFH.7500.8774.17037 ### Signatures removed due to Clamav detection : SecuriteInfo.com.HTML.Framer.3893.6043 SecuriteInfo.com.HTML.Iframe-AZ.5609.4311 SecuriteInfo.com.Iframe.Malware.10998057.13680.12278 SecuriteInfo.com.JS.ADODB-BN.26763833 SecuriteInfo.com.JS.ADODB-BN.28534489 SecuriteInfo.com.JS.ADODB-BN.55443999 SecuriteInfo.com.JS.ADODB-BN.69851567 SecuriteInfo.com.JS.ADODB-BN.84435452 SecuriteInfo.com.JS.ADODB-BN.85636432 SecuriteInfo.com.JS.ADODB-BN.86435967 SecuriteInfo.com.JS.ADODB-BN.95836494 SecuriteInfo.com.Script.SNH-gen.14157.7079 SecuriteInfo.com.Trojan.DownLoad.926.16324.3560 SecuriteInfo.com.Trojan.Iframe.XX.12252.11880 SecuriteInfo.com.Trojan.Iframe.XX.26450.28151 SecuriteInfo.com.Trojan.Script.42453.516.4386 SecuriteInfo.com.VBS.Psyme.205.6114.16652 SecuriteInfo.com.XPL.Gen.L.90_109.18307.7213 SecuriteInfo.com.XPL.Gen.L.90_109.23216.12112 ### Signatures removed due to internal optimization : SecuriteInfo.com.HTML.Agent-HA.20187.29188 SecuriteInfo.com.HTML.Framer.3893.6043 SecuriteInfo.com.HTML.Iframe-AZ.5609.4311 SecuriteInfo.com.HTML.Iframe-BH.16374188 SecuriteInfo.com.HTML.Iframe-BH.23990.20508 SecuriteInfo.com.HTML.Iframe-BH.32931214 SecuriteInfo.com.HTML.Iframe-BH.46323527 SecuriteInfo.com.HTML.Iframe-BLR.5011.4697 SecuriteInfo.com.HTML.Mht-AX.15615.20433 SecuriteInfo.com.HTML.PhishingMS-BIX.97193125 SecuriteInfo.com.Iframe.Malware.10998057.13680.12278 SecuriteInfo.com.JS.ADODB-BN.26763833 SecuriteInfo.com.JS.ADODB-BN.28534489 SecuriteInfo.com.JS.ADODB-BN.55443999 SecuriteInfo.com.JS.ADODB-BN.69851567 SecuriteInfo.com.JS.ADODB-BN.84435452 SecuriteInfo.com.JS.ADODB-BN.85636432 SecuriteInfo.com.JS.ADODB-BN.86435967 SecuriteInfo.com.JS.ADODB-BN.95836494 SecuriteInfo.com.JS.Decode-BKU.1810.8909 SecuriteInfo.com.JS.Decode-BKU.48927643 SecuriteInfo.com.JS.Decode-BKU.65155137 SecuriteInfo.com.JS.Decode-BKU.82459911 SecuriteInfo.com.JS.Iframe-ABB.27251972 SecuriteInfo.com.JS.Iframe-ABB.3426.12457 SecuriteInfo.com.JS.Iframe-ABB.87388636 SecuriteInfo.com.JS.Iframe-ABB.97656928 SecuriteInfo.com.JS.Redirector-BIW.15129.10059 SecuriteInfo.com.JS.Redirector-BIW.27646.19780 SecuriteInfo.com.JS.Starter.169.11200.9455 SecuriteInfo.com.JS.Starter.169.1375.28454 SecuriteInfo.com.JS.Starter.169.1485.315 SecuriteInfo.com.JS.Starter.169.1642.4904 SecuriteInfo.com.JS.Starter.169.17700.14815 SecuriteInfo.com.JS.Starter.169.18540.916 SecuriteInfo.com.JS.Starter.169.31508.8609 SecuriteInfo.com.JS.Starter.169.31906.18927 SecuriteInfo.com.JS.Starter.169.3652.17258 SecuriteInfo.com.JS.Starter.169.3670.7956 SecuriteInfo.com.JS.Starter.169.3683.18882 SecuriteInfo.com.JS.Starter.169.4878.8787 SecuriteInfo.com.JS.Starter.169.5139.7595 SecuriteInfo.com.JS.Starter.169.9196.19356 SecuriteInfo.com.Other.Malware-gen.38285427 SecuriteInfo.com.Other.Malware-gen.55816277 SecuriteInfo.com.Other.Malware-gen.63445691 SecuriteInfo.com.Other.Malware-gen.88277751 SecuriteInfo.com.Other.Malware-gen.92367486 SecuriteInfo.com.Trojan.DownLoad.926.16324.3560 SecuriteInfo.com.Trojan.GenericFCA.5538.2686.13621 SecuriteInfo.com.Trojan.GenericKD.80378903.11258.22917 SecuriteInfo.com.Trojan.GenericKD.80379600.8078.6351 SecuriteInfo.com.Trojan.Iframe.XX.12252.11880 SecuriteInfo.com.Trojan.Iframe.XX.26450.28151 SecuriteInfo.com.Trojan.Script.42453.516.4386 SecuriteInfo.com.Trojan.Script.727176.10112.7648 SecuriteInfo.com.Trojan.Script.727176.23231.30531 SecuriteInfo.com.Trojan.Script.727176.24649.20965 SecuriteInfo.com.XPL.Gen.L.90_109.18307.7213 SecuriteInfo.com.XPL.Gen.L.90_109.23216.12112 ### Signatures added : SecuriteInfo.com.Android.Banker.Mamont.259.origin.17593.17299 SecuriteInfo.com.Android.Banker.NGate.38.13885.17062 SecuriteInfo.com.Android.Banker.NGate.38.26485.23246 SecuriteInfo.com.Android.Banker.NGate.38.26749.19680 SecuriteInfo.com.CMD.Heur.BZC.YAX.Nioc.1.0B7AF608.19521.14521 SecuriteInfo.com.Exploit.CVE-2017-11882.123.6922.21617 SecuriteInfo.com.FileRepMalware.45635353 SecuriteInfo.com.FileRepMalware.53191519 SecuriteInfo.com.FileRepMalware.89131995 SecuriteInfo.com.Gen.Variant.Application.ScaMSI.LGM.Blind.3.5712.27498 SecuriteInfo.com.Heur.9568.27273 SecuriteInfo.com.Java.Trojan.GenericGB.29966.11785.3577 SecuriteInfo.com.Other.Malware-gen.12638781 SecuriteInfo.com.Other.Malware-gen.57743747 SecuriteInfo.com.Other.Malware-gen.68763455 SecuriteInfo.com.Other.Malware-gen.78372383 SecuriteInfo.com.Other.Malware-gen.94586474 SecuriteInfo.com.Trojan.AutoIt.1745.20532.4959 SecuriteInfo.com.Trojan.AutoIt.1745.5571.11751 SecuriteInfo.com.Trojan.AutoIt.1745.8291.14777 SecuriteInfo.com.Trojan.NSIS.Makoob.ut.26138.8038 SecuriteInfo.com.Trojan.Packed2.51179.16889.5075 SecuriteInfo.com.Trojan.Packed2.51179.25251.30886 SecuriteInfo.com.Trojan.Packed2.51179.31666.25256 SecuriteInfo.com.Trojan.Packed2.51179.7649.27869 SecuriteInfo.com.Trojan.Packed2.51226.20003.6086 SecuriteInfo.com.Trojan.Siggen32.12811.17588.26645 SecuriteInfo.com.Win64.MalwareX-gen.17849435 SecuriteInfo.com.Win64.MalwareX-gen.28633389 SecuriteInfo.com.Win64.MalwareX-gen.28633389 SecuriteInfo.com.Win64.MalwareX-gen.56712967 SecuriteInfo.com.Win64.MalwareX-gen.61634659 SecuriteInfo.com.Win64.MalwareX-gen.69938181 SecuriteInfo.com.BackDoor.ReverseShell.23.964.31230 SecuriteInfo.com.BackDoor.Spy.4077.25663839 SecuriteInfo.com.BackDoor.Spy.4077.92927531 SecuriteInfo.com.Dump.Generic.Malware.Pf.2DFBF7A7.33861429 SecuriteInfo.com.Dump.Generic.Malware.Pf.96830333.66661949 SecuriteInfo.com.ELF.Mirai-COW.26836764 SecuriteInfo.com.ELF.Mirai-COW.57865118 SecuriteInfo.com.ELF.Mirai-COW.71681555 SecuriteInfo.com.ELF.Mirai-CSC.62969879 SecuriteInfo.com.ELF.Mirai-VT.75422672 SecuriteInfo.com.FileRepMalware.31723985 SecuriteInfo.com.FileRepMalware.86275574 SecuriteInfo.com.Generic.Dacic.11262.EE90D86C.77914727 SecuriteInfo.com.Linux.Bot.11241.15183 SecuriteInfo.com.Linux.Bot.27052.1320 SecuriteInfo.com.Linux.Bot.28595.31022 SecuriteInfo.com.Linux.DDoS.2637.23789.1541 SecuriteInfo.com.Linux.DDoS.2637.28539.13366 SecuriteInfo.com.Linux.DDoS.2637.30587.16596 SecuriteInfo.com.Linux.DDoS.2637.31348.25180 SecuriteInfo.com.Linux.DDoS.2637.8834.13161 SecuriteInfo.com.Linux.Flood.667.1804.11293 SecuriteInfo.com.Linux.Flood.667.22130.25774 SecuriteInfo.com.Linux.Flood.667.26691.21257 SecuriteInfo.com.Linux.Flood.667.28773.14468 SecuriteInfo.com.Linux.Flood.667.29898.26353 SecuriteInfo.com.Linux.Mirai.10456.23407.24911 SecuriteInfo.com.Linux.Mirai.10456.27838.17296 SecuriteInfo.com.Linux.Rekoobe.50.29770.12859 SecuriteInfo.com.Linux.Siggen.13049.3019.28615 SecuriteInfo.com.Other.Malware-gen.16459274 SecuriteInfo.com.Other.Malware-gen.38348499 SecuriteInfo.com.Other.Malware-gen.66136426 SecuriteInfo.com.Trojan.DownLoader49.52340.87673932 SecuriteInfo.com.Trojan.Heur.GM.0144440000.43927933 SecuriteInfo.com.Trojan.Inject6.61560.20279.26567 SecuriteInfo.com.Trojan.Inject6.61560.27789.5774 SecuriteInfo.com.Trojan.Inoci.17.31141.2729 SecuriteInfo.com.Trojan.Inoci.17.78243349 SecuriteInfo.com.Trojan.Linux.Gafgyt.16517.31540 SecuriteInfo.com.Trojan.Linux.Gafgyt.9052.25115 SecuriteInfo.com.Trojan.Linux.Multiverze.28357.7978 SecuriteInfo.com.Trojan.Linux.Multiverze.30177.31713 SecuriteInfo.com.Trojan.Loader.3207.69689536 SecuriteInfo.com.Trojan.MSIL.Basic.8.Gen.11737464 SecuriteInfo.com.Trojan.MSIL.Basic.8.Gen.21379639 SecuriteInfo.com.Trojan.MSIL.CryptoObfuscator.12057.24903 SecuriteInfo.com.Trojan.MulDrop38.29002.22328.16260 SecuriteInfo.com.Trojan.NtRootKit.20627.10284.18246 SecuriteInfo.com.Trojan.PackedNET.3268.7072.18383 SecuriteInfo.com.Trojan.PackedNET.3271.14499.5824 SecuriteInfo.com.Trojan.PackedNET.3274.21236.26849 SecuriteInfo.com.Trojan.PackedNET.3585.32371.9473 SecuriteInfo.com.Trojan.PackedNET.3588.20807.15496 SecuriteInfo.com.Trojan.PWS.Stealer.45576.24843977 SecuriteInfo.com.Trojan.PWS.Vidar.498.77235522 SecuriteInfo.com.Trojan.Remcos.1029.13671.16913 SecuriteInfo.com.Trojan.Remcos.1029.3937.31920 SecuriteInfo.com.Trojan.Remcos.1029.85582838 SecuriteInfo.com.Trojan.Remcos.1029.99128676 SecuriteInfo.com.Trojan.Siggen12.36402.327.25555 SecuriteInfo.com.Trojan.Siggen32.46611.10432.342 SecuriteInfo.com.Trojan.Siggen32.46611.543.29409 SecuriteInfo.com.Trojan.Siggen32.58684.359.1340 SecuriteInfo.com.Variant.Ransom.Loki.19186.87929468 SecuriteInfo.com.Variant.Tedy.216507.84283713 SecuriteInfo.com.Variant.Worm.Phorpiex.30.36314422 SecuriteInfo.com.Variant.Yogi.5690.52925246 SecuriteInfo.com.W32.Trojan.GHK.gen.Eldorado.27159.9188 SecuriteInfo.com.Win32.MalwareX-gen.52337478 SecuriteInfo.com.Win32.SuspectCrc.3087.1865 SecuriteInfo.com.Win64.Evo-gen.24699211 SecuriteInfo.com.Win64.Evo-gen.94556151 SecuriteInfo.com.Win64.Evo-gen.97554642 SecuriteInfo.com.Win64.MalwareX-gen.18736568 SecuriteInfo.com.Win64.MalwareX-gen.38453247 SecuriteInfo.com.Win64.MalwareX-gen.54881574 SecuriteInfo.com.Win64.MalwareX-gen.67257859 SecuriteInfo.com.Win64.MalwareX-gen.72473871 SecuriteInfo.com.Win64.MalwareX-gen.85576274 ### Total for each file provided by SecuriteInfo.com : 33410 spam_marketing.ndb 625305 securiteinfo.hdb 3543180 securiteinfoold.hdb 78085 javascript.ndb 106480 securiteinfohtml.hdb 172760 securiteinfoascii.hdb 134600 securiteinfoandroid.hdb 10200 securiteinfopdf.hdb 28242 securiteinfo.mdb 126 securiteinfo0hour.hdb 83 securiteinfo.pdb 19 securiteinfo.wdb 698 securiteinfo-pua-app-and-vulnerabilities.ndb 4733188 total New Sigs: 134 Dropped Sigs: 109