Content

DAT Readme

Download the latest anti virus definitions for McAfee® VirusScan®. Ensure your McAfee® product contains the most up-to-date detection and prevention.
http://www.mcafee.com/apps/downloads/security_updates/dat.asp

DAT Version 4458
DAT Release Date 03/30/2005
Threats Detected 120630
New Detections 60
Enhanced Detections 134

Enhanced detections are those that have been modified for this release. Detections are enhanced to cover new variants, optimize performance, and correct incorrect identifications.

Noteworthy threats are those that had an Avert risk assessment of Low-Profiled, Medium, Medium-On-Watch, High, or High-Outbreak at the time of DAT release.

Noteworthy Threats:

Name Corporate Risk Assessment Home Risk Assessment
There are no noteworthy threats in this release

New Detections:

Program (4)
   (2)
    VMag72
    Tool/tinko
  Application extension (1)
    Htool-Lsadump.dll
  Tool (1)
    Htool-Lsadump
Trojan (13)
   (1)
    Swapout
  Downloader (3)
    Downloader-XX
    Downloader-XV
    Downloader-XW
  Dropper (1)
    MultiDropper-MS
  Proxy (2)
    W97M/Proxy-LBP
    Proxy-LBP
  Remote Access (1)
    BackDoor-CPX
  Script (4)
    Bat/dt147
    Bat/badcom
    Bat/addu2
    Generic Downloader.z
  Win32 (1)
    QHosts-28
Virus (43)
   (10)
    HLL.Scorpio
    HLL.6544
    Arrest.27
    HLLT.6988
    Jeru-h.1808a
    Catch.362
    SymbOS/Skulls.h
    HLL.sub.34367
    HLL.16896
    HLL.77760
  Boot dropper (3)
    BtDr.Fidel.b
    BtDr.Music Bug
    BtDr.Anthrax
  Dropper (17)
    VRN.dr
    Medical.dr
    Wormsign.dr
    Mini.dr
    Jeru-h.dr
    Terror.dr
    Schenk.dr
    Markt.dr
    Googie.dr
    Fox.dr
    Zombie/b.dr
    Scramble.dr
    Chad.dr
    Texan.dr
    Hellraiser.dr
    Gidra.dr
    W32/Spongebob.dr
  Dropper multipartite (3)
    Vague.mp.dr
    Pinquin.mp.dr
    Talon.mp.dr
  Dropper Overwriting (1)
    Shhs.ow.dr
  Email (2)
    W32/Sober.n@MM
    W32/Kipis.u@MM
  Generic (1)
    W32/Krynos.gen
  Overwriting (1)
    HLL.ow.4096
  Parasitic (2)
    HLLP.8309
    HLLP.6426
  Win32 (2)
    W32/Polybot.cn
    W32/Polybot.cm
  Worm (1)
    W32/Kelvir.worm.l

Enhanced Detections:

Internet Worm (2)
  E-mail (2)
    W32/Sober.e@MM
    W32/Sober.j@MM
Program (19)
   (2)
    VSource
    VText.9a
  Adware (5)
    Adware-NavHelper
    Adware-Apropos
    Adware-Tubby
    Adware-4Arcade
    Adware-3rdEye
  Dialer (9)
    Dialer-251
    Dialer-233
    Dialer-RAS.dn
    Dialer-220
    Dialer-235
    Dialer-217
    Dialer-225
    Dialer-184
    Dialer-188
  Dropper (2)
    Dialer-RAS.ax.dr
    Dialer-251.dr
  Malware Tool (1)
    VTool/qre
Trojan (34)
   (11)
    VCL.Pump-It
    Radish
    SergSoft
    Generic component
    Phish-PostCard.eml.a
    Phish-BankFraud.eml.d
    Phish-BankFraud.eml.a
    Phish-BankFraud.eml.f
    Phish-BankFraud.eml.e
    Phish-BankFraud.eml.c
    Phish-BankFraud.eml.b
  Application extension (1)
    PWS-Lineage.dll
  Configuration settings (1)
    HackerDefender.ini
  Demonstration (1)
    JS/Exploit-Script.demo
  Downloader (1)
    Downloader-MP
  Exploit (2)
    VBS/Psyme
    Linux/Exploit-SSL
  Password Stealer (2)
    Generic PWS.f
    PWS-Lineage
  PDA Device (1)
    SymbOS/Skulls.a
  Proxy (1)
    Proxy-FBSR
  Remote Access (7)
    BackDoor-SN
    BackDoor-AOP
    BackDoor-CHC
    BackDoor-AZZ
    BackDoor-CLB
    BackDoor-CHP
    BackDoor-ACP
  Server (1)
    BackDoor-AOP.svr
  Win32 (5)
    HackerDefender
    Generic Downloader.s
    Del-470
    QLowZones-2
    Generic Downloader.f
Virus (79)
   (17)
    Sisters
    SME.961
    SME.955
    MPC
    Jeru-h.1808
    Jeru-h2.1808b
    MPC.1022
    MPC.665
    SymbOS/Skulls.f
    SymbOS/Skulls.e
    XRCE.604b
    Catch.370
    SymbOS/Skulls.g
    Xany.132
    SymbOS/Skulls.c
    SymbOS/Skulls!aif
    SymbOS/Skulls.d
  Boot dropper (2)
    BtDr.Purple
    BtDr.PrS
  Companion Dropper (1)
    RPME.cmp.dr
  Damaged (1)
    W32/Sober.dam
  Damaged Worm (1)
    W32/Sdbot.worm.dam
  Dropper (20)
    Univ/a.dr
    Univ/r.dr
    Univ/b.dr
    Univ/f.dr
    Univ/o.dr
    BW.Mayberry.dr
    Vienna.dr
    Auspar.dr
    Armagedon.dr
    Minicorp.dr
    Lesson.dr
    Manzon.dr
    Tiny.dr
    Crow.dr
    Filip.dr
    W32/Pate.dr
    Npox.dr
    7thSon.dr
    Fatal-Illusion.dr
    Dew-Bug.dr
  Dropper Parasitic (1)
    Cluster.cav.dr
  E-mail (3)
    W32/Sober.c@MM
    W32/Sober.d@MM
    W32/Sober.g@MM
  E-mail worm (3)
    W32/Sober.f@MM
    W32/Sober.b@MM
    W32/Sober.l@MM
  Email (6)
    W32/Sober.m@MM
    W32/Kipis.f@MM
    W32/Kipis.p@MM
    W32/Kipis.o@MM
    W32/Kipis.e@MM
    W32/Kipis.d@MM
  Email Generic (2)
    W32/Sober.gen@MM
    W32/Kipis.gen@MM
  Email Worm (1)
    W32/Sober.k@MM
  Generic (1)
    SymbOS/Skulls.gen
  Generic Worm (7)
    W32/Spybot.worm.gen.f
    W32/Gaobot.worm.gen.j
    W32/Sdbot.worm.gen.n
    W32/Sdbot.worm.gen.l
    W32/Sdbot.worm.gen.j
    W32/Sdbot.worm.gen.h
    W32/Sdbot.worm.gen.y
  Internet Worm (4)
    W32/Sober.a@MM
    W32/Kelvir.worm.c
    W32/Kelvir.worm.b
    W32/Kelvir.worm.f
  Win32 (1)
    W32/Generic.m
  Worm (8)
    W32/Kelvir.worm.e
    W32/Kelvir.worm.d
    W32/Kelvir.worm.g
    W32/Kelvir.worm.i
    W32/Kelvir.worm.k
    W32/Kelvir.worm.j
    W32/Kelvir.worm.a
    W32/Helex.worm