Content

DAT Readme

Download the latest anti virus definitions for McAfee® VirusScan®. Ensure your McAfee® product contains the most up-to-date detection and prevention.
http://www.mcafee.com/apps/downloads/security_updates/dat.asp

DAT Version 4419
DAT Release Date 01/12/2005
Threats Detected 112793
New Detections 76
Enhanced Detections 215

Enhanced detections are those that have been modified for this release. Detections are enhanced to cover new variants, optimize performance, and correct incorrect identifications.

Noteworthy threats are those that had an Avert risk assessment of Low-Profiled, Medium, Medium-On-Watch, High, or High-Outbreak at the time of DAT release.

Noteworthy Threats:

Name Corporate Risk Assessment Home Risk Assessment
There are no noteworthy threats in this release

New Detections:

Program (19)
   (14)
    CRH16
    CRH15
    CRH18a
    CRH17b
    CRH17a
    CRH4b
    CRH1b
    CRH14
    CRH13
    CRH12
    CRH11
    CRH10
    CRH2f
    CRH2e
  Joke (2)
    Joke-Descrot
    Joke-Bluedump
  Tool (2)
    Tool-SQLScan
    HTool-TooTired
  Win32 (1)
    Crack-ASquared
Trojan (42)
  Application extension (3)
    Downloader-TV.dll
    PWS-IInf.dll
    BackDoor-CMU.dll
  Damaged (1)
    Downloader-PE.dam
  Downloader (11)
    Downloader-TZ
    Downloader-TX
    Downloader-TU
    Downloader-TS
    Downloader-UA.b
    Downloader-UA.a
    Downloader-TY
    Downloader-TW
    Downloader-TV
    Downloader-TT
    Keylog-Perfect.dldr
  Dropper (2)
    MultiDropper-MC
    MultiDropper-MD
  Dropper Generic (1)
    PWS-Banker.gen.dr
  Exploit (1)
    JS/Exploit-CcErr
  Internet Relay Chat (1)
    IRC/Flood.eq
  Malware Tool (2)
    Nuke-Rhad
    Spam-GZL
  Password Stealer (3)
    PWS-IInf
    PWS-Banker.f
    PWS-Banker.g
  Remote Access (9)
    BackDoor-CMV
    BackDoor-CMU
    BackDoor-CMS
    BackDoor-CMR!plugin
    BackDoor-CMQ
    BackDoor-CMP
    BackDoor-CMW
    BackDoor-CMT
    BackDoor-CMR
  Win32 (7)
    Generic packed
    Generic Downloader.m
    AdClicker-BY
    AdClicker-BX
    Generic PWS.m
    Memtest
    AdwareDropper-C
  Worm (1)
    W32/Danshbot.worm
Virus (15)
  Damaged (1)
    W32/Bagle.bf.dam
  Dropper (2)
    W32/Gremo.a.dr
    W32/Gremo.dr
  E-mail (1)
    W32/Mugly.d@MM
  Generic (1)
    W32/Gremo.gen
  Intended (1)
    W97M/Uka.a.intd
  Internet Relay Chat (1)
    W32/Kilt!irc
  Win32 (3)
    W32/Gremo.a
    W32/Gremo.b
    W32/Gremo.c
  Worm (5)
    W32/Grabot.worm
    W32/Shodi.worm.j
    W32/Myfip.worm.l
    W32/Dipnet.worm
    W32/Anzae.worm.e

Enhanced Detections:

Internet Worm (1)
  VbScript (1)
    VBS/Generic@MM
Malware (1)
  Win32 (1)
    Exploit-Mydoom
Program (10)
   (4)
    CRH1
    CRH4
    CRH9
    CRH8
  Adware (5)
    Adware-RBlast.dldr
    Adware-CommonName
    Adware-Virtumondo
    Adware-IEDriver
    Adware-Virtumundo
  Downloader (1)
    Proxy-OSS.dldr
Trojan (140)
   (6)
    Generic BackDoor.d
    Don't
    AdClicker-AJ
    Generic BackDoor.txt
    AdClicker-BW
    Generic!pwdrar
  Application extension (3)
    PWS-LDPinch.dll
    PWS-Banker.dll
    BackDoor-ASB.c.dll
  Application extension Generi (1)
    Keylog-Jingt.dll.gen
  Configurator (1)
    Orifice2K.cfg
  Demonstration (1)
    Exploit-DcomRpc.b.demo
  Downloader (11)
    Downloader-DC
    Downloader-AE
    Downloader-FR
    Downloader-NI
    Downloader-QG
    Downloader-TG
    Downloader-PH
    Downloader-PS
    Downloader-TQ
    Downloader-KO
    Downloader-GG!chm
  Downloader Generic (1)
    Proxy-FBSR.gen.dldr
  Dropper (5)
    Generic BackDoor.dr
    MultiDropper-IY
    BackDoor-CAY.dr
    BackDoor-ASB.dr
    PWS-Banker.dr
  Exploit (8)
    VBS/Psyme
    Exploit-ByteVerify
    Exploit-MhtRedir.gen
    Exploit-ScriptNull
    Exploit-DcomRpc.b
    JS/Exploit-DragDrop.c
    Exploit-LoadImgAPI
    JS/Exploit-HelpXSite
  Generic (6)
    Keylog.gen
    Exploit-URLSpoof.gen
    BackDoor-ASB.gen
    Proxy-FBSR.gen
    PWS-Bancban.gen.f
    BackDoor-BAC.gen.b
  Malware Tool (53)
    Spam-BBMail
    Spam-Mimer
    Spam-Charlie
    Spam-Banan
    Spam-Mekanin
    Spam-MFraud
    Spam-FMBomb
    Spam-FMail
    Spam-VDX
    Spam-Stone
    Spam-Sabotage
    Spam-Paramail
    Spam-Emboz
    Spam-EmBomb
    Spam-DMB
    Spam-MCSpam
    Spam-BotSin
    Spam-AnonIM
    Spam-AIMSpam
    Spam-Swyque
    Spam-Pocztyl
    Spam-AdvMail
    Spam-Mobikill
    Spam-Scythe
    Spam-ZPSM
    Spam-AnonMail
    Spam-MailIt
    Spam-HRVG
    Spam-Bomber
    Spam-AnonNS
    Spam-NetSend
    Spam-Robis
    Spam-QMailer
    Spam-Hunter
    Spam-AlienBmb
    Spam-HateYou
    Spam-ICQMass
    Spam-Avril
    Spam-ICQ.Mach
    Spam-ICQ.Nexz
    Spam-Shock
    Spam-XYN
    Spam-Sheker
    Spam-Grad
    Spam-Aneg
    Spam-Bombita
    Spam-MBomb
    Spam-Alpha
    Spam-Uhbx
    Spam-Aenima
    Spam-NiMing
    Spam-Blackhawk
    Spam-Slat
  Password (5)
    PWS-Bancos
    PWS-LDPinch
    PWS-Bancban
    HTML/Ebscam
    PWS-Banker.d
  Password Stealer (6)
    Generic PWS.a
    Generic PWS.b
    PWS-Bamer
    PWS-QQRob
    PWS-Banker
    PWS-Lineage
  Proxy (2)
    Proxy-FBSR
    Proxy-Agent.c
  Remote Access (15)
    BackDoor-AXJ
    BackDoor-ABM
    BackDoor-ASB
    Backdoor-TW
    BackDoor-AMQ
    BackDoor-AWQ.b
    BackDoor-BAC
    BackDoor-CGY
    BackDoor-AL
    BackDoor-AWI
    BackDoor-AZZ
    BackDoor-CDC
    BackDoor-BDW
    Generic BackDoor.m
    Generic BackDoor.o
  Script (2)
    Univ.script/99a
    Reg/LowZones
  StartPage (1)
    StartPage-FY
  Win32 (13)
    Generic BackDoor.b
    HackerDefender
    Generic Downloader.c
    Ruscrem
    Keytrap
    Generic Downloader.j
    AdClicker-BM
    Tuoraw.b
    Generic VB.c
    QLowZones-2
    AdClicker-BA
    Generic Downloader.g
    DDoS-Boxed
Virus (63)
  Application extension Worm (1)
    W32/Datom.worm.dll
  Damaged Worm (4)
    W32/Spybot.worm.dam
    W32/Gaobot.worm.dam
    W32/Protoride.worm.dam
    W32/Sdbot.worm.dam
  Dropper (2)
    W32/Pate.dr
    W32/Jeefo.dr
  Dropper Worm (1)
    W32/Dodobot.worm.dr
  E-mail (3)
    W32/Anzae.worm.a
    W32/Mugly.a@MM
    W32/Mugly.b@MM
  E-mail worm (3)
    W32/Generic.a@MM
    W32/Anzae.worm.d
    W32/Anzae.worm.b
  Email (2)
    W32/Torvil@MM
    W32/Tex.a@MM
  Email Generic (1)
    W32/Famus.gen@MM
  Email Worm (1)
    W32/Anzae.worm.c
  Floppy Worm (1)
    W32/Mantibe.worm
  Generic (2)
    W32/Poebot.gen
    W32/Sdbot.gen.r
  Generic Worm (22)
    W32/Spybot.worm.gen.e
    W32/Gaobot.worm.gen.g
    W32/Gaobot.worm.gen.e
    W32/Sdbot.worm.gen.w
    W32/Winur.worm.gen
    W32/Spybot.worm.gen.i
    W32/Spybot.worm.gen.f
    W32/Spybot.worm.gen.a
    W32/Gaobot.worm.gen.l
    W32/Gaobot.worm.gen.j
    W32/Sdbot.worm.gen.n
    W32/Sdbot.worm.gen.l
    W32/Sdbot.worm.gen.j
    W32/Sdbot.worm.gen.h
    W32/Sdbot.worm.gen.k
    W32/Sdbot.worm.gen.i
    W32/Sdbot.worm.gen.x
    W32/Anzae.worm.gen
    W32/Gaobot.worm.gen.t
    W32/Sdbot.worm.gen.y
    W32/Sdbot.worm.gen.t
    W32/Gaobot.worm.gen.h
  Internet Worm (3)
    W32/Sdbot.worm
    W32/Gaobot.worm.ali
    W32/Gaobot.worm.gen.q
  mIRC Worm (1)
    W32/Protoride.worm
  Peer To Peer (2)
    W32/Generic.c!p2p
    W32/Tibick!p2p
  Remote Access (1)
    W32/Backdoor-CFB
  Script (1)
    VBS/Umbriel.b
  Win32 (3)
    W32/Jeefo
    W32/Bagif
    W32/Generic.Delphi
  Worm (9)
    W32/Imbiat.worm
    W32/Gunsan.worm.b
    W32/Gunsan.worm.a
    W32/Gunsan.worm.c
    W32/Dedler.worm
    W32/Myfip.worm.h
    W32/Myfip.worm.k
    W32/Myfip.worm.g
    W32/Kvdbot.worm