Lavasoft Malware Labs blog

0146.0018 is now available for Ad-Aware Anniversary Edition.

by Pekka on March 2nd, 2009 in Definition File Updates.

Fraudulent SMS domains!

by Albin on February 27th, 2009 in Researcher Comments, Security Alert.

Lavasoft Malware Labs recently had a closer look on an IP range full of hoax sites. Reverse IP on 78.129.142.235 will reveal around 200 fraudulent domains which are hosted in United Arab Emirates.  Most of the sites hosted under 78.129.142.235 will use and take advantage of already existing products from the security industry and other popular software. The examples below display their way to make illegal domains look reliable.

hxxp://7zip-2009.info
hxxp://Directx-full.info
hxxp://Icq-full.info
hxxp://Messengerplus-2009.info
hxxp://Safari-full.info
hxxp://Winrar-2009.com
hxxp://Www-kaspersky.info

New Rogue: SpywareFighter

by LS Anders on February 26th, 2009 in Rogues, Security Alerts.

Today a new rogue was discovered called Spyware Fighter.  It is following the normal patterns with false detections and trying to scare the user into buying a license to clean them.

 

Further it has the classic user friendly home page available under a few similar named domains.

 

SpywareFighter was added to detection in release 0146.0017.

0146.0017 is now available for Ad-Aware Anniversary Edition.

by LS Anders on February 26th, 2009 in Definition File Updates.

0146.0017 is now available, new definition file for Ad-Aware Anniversary Edition.

New definitions:
====================
PrivacyComponents
SpywareFighter

Updated definitions:
====================
InternetAntivirusPro
XLG Security Center

MD5 checksum for core.aawdef is 3affd2aa71307b1bfe8d620271355bbd

0146.0016 is now available for Ad-Aware Anniversary Edition.

by LS Anders on February 26th, 2009 in Definition File Updates.

0146.0016 is now available, new definition file for Ad-Aware Anniversary Edition.

New definitions:
====================
Adware.Advision
Win32.Flooder.ArpPack
Win32.Flooder.Bomber
Win32.Flooder.ICQ
Win32.Flooder.Misoka
Win32.Flooder.MPCLagger
Win32.Flooder.Teamspeak
Win32.Monitor.EZRecKb
Win32.Monitor.IMonitorPC
Win32.Monitor.PCPolice

Updated definitions:
====================
404search
ABetterInternet.Aurora
AdRotator
Adware.AdAgent

0146.0015 is now available for Ad-Aware Anniversary Edition.

by LS Anders on February 24th, 2009 in Definition File Updates.

0146.0015 is now available, new definition file for Ad-Aware Anniversary Edition.

0146.0014 is now available for Ad-Aware Anniversary Edition.

by LS Anders on February 23rd, 2009 in Definition File Updates.

0146.0014 is now available, new definition file for Ad-Aware Anniversary Edition.

0146.0013 is now available for Ad-Aware Anniversary Edition.

by LS Anders on February 20th, 2009 in Definition File Updates.

0146.0013 is now available, new definition file for Ad-Aware Anniversary Edition.

Removed false detections.

0146.0012 is now available for Ad-Aware Anniversary Edition.

by LS Anders on February 19th, 2009 in Definition File Updates.

0146.0012 is now available, new definition file for Ad-Aware Anniversary Edition.

2 New rogue Anti-Virus software

by LS Anders on February 16th, 2009 in Rogues.

Some new rogue anti-virus programs to be aware of...First out is XPVirusProtection with a standard looking website.

Homepage

0146.0011 is now available, new definition file for Ad-Aware AE

by Albin on February 16th, 2009 in Definition File Updates.

0146.0010 is now available, new definition file for Ad-Aware AE

by Albin on February 15th, 2009 in Definition File Updates.

© 2009 Lavasoft. All rights reserved.