Content

DAT Readme

Download the latest anti virus definitions for McAfee® VirusScan®. Ensure your McAfee® product contains the most up-to-date detection and prevention.
http://www.mcafee.com/apps/downloads/security_updates/dat.asp

DAT Version 4461
DAT Release Date 04/04/2005
Threats Detected 121204
New Detections 26
Enhanced Detections 105

Enhanced detections are those that have been modified for this release. Detections are enhanced to cover new variants, optimize performance, and correct incorrect identifications.

Noteworthy threats are those that had an Avert risk assessment of Low-Profiled, Medium, Medium-On-Watch, High, or High-Outbreak at the time of DAT release.

Noteworthy Threats:

Name Corporate Risk Assessment Home Risk Assessment
There are no noteworthy threats in this release

New Detections:

Program (3)
  Application extension (1)
    Dialer-258.dll
  Dialer (1)
    Dialer-257
  Tool (1)
    Tool-NirCmd
Trojan (8)
   (1)
    Del-474
  Downloader (1)
    Downloader-YG
  Dropper (1)
    MultiDropper-MU
  Proxy (1)
    Proxy-Prodoom
  Remote Access (2)
    BackDoor-CQC
    BackDoor-CQB
  Win32 (2)
    Ascetic
    Generic BackDoor.u
Virus (15)
  Boot (2)
    Stoned.x
    Bubj
  Boot dropper (4)
    BtDr.Pop
    BtDr.PK
    BtDr.Black Tide
    BtDr.Bootkill
  Generic (2)
    W32/Scaline.gen
    W32/Mytob.gen
  Win32 (4)
    W32/Polybot.co
    W32/Keins
    W32/Bagle
    W32/Antimca
  Worm (3)
    W32/Kelvir.worm.o
    W32/Kelvir.worm.n
    W32/Bropia.worm.ab

Enhanced Detections:

Internet Worm (2)
  E-mail (2)
    W32/Sober.e@MM
    W32/Sober.j@MM
Program (20)
   (1)
    Dialer.lnk
  - (2)
    Reboot-E
    Dialer-RAS.a.gen
  Dialer (1)
    Dialer-RAS.az
  Downloader (1)
    Dialer-RAS.az.dldr
  Dropper (1)
    Dialer-RAS.ax.dr
  Generic (14)
    Dialer-RAS.bk.gen
    Dialer-RAS.be.gen
    Dialer-RAS.bm.gen
    Dialer-RAS.bf.gen.b
    Dialer-RAS.ay.gen
    Dialer-RAS.b.gen
    Dialer-RAS.ba.gen
    Dialer-RAS.bc.gen
    Dialer-RAS.bf.gen
    Dialer-RAS.bg.gen
    Dialer-RAS.bn.gen
    Dialer-RAS.bl.gen
    Dialer-RAS.bj.gen
    Dialer-RAS.bh.gen
Trojan (22)
  Application extension Droppe (1)
    StartPage-DU.dll.dr
  Dropper (3)
    Serv-U.dr
    IRC/Flood.ao.dr
    PWS-Goldun.dr
  Generic (2)
    PWS-Banker.gen.i
    FDoS-Spabot.gen
  Internet Relay Chat (1)
    IRC-Contact
  Keylogger (1)
    Keylog-Ybad
  mIRC client (1)
    IRC/Flood.ao.mirc
  Password (1)
    PWS-LDPinch
  Password Stealer (1)
    PWS-Lineage
  ProcKill (1)
    ProcKill-AK
  Proxy (2)
    Proxy-FBSR
    Proxy-Agent.c
  Remote Access (3)
    BackDoor-AMQ
    BackDoor-COC
    BackDoor-CKA
  StartPage (1)
    StartPage-FY
  Trojan (1)
    Multidropper
  Win32 (3)
    Generic Downloader.c
    DDoS-Boxed
    Generic Downloader.h
Virus (61)
  Boot (1)
    Brain
  Boot dropper (5)
    BtDr.Pow
    BtDr.Pingpong
    BtDr.Parity
    BtDr.Joshi
    BtDr.Brain
  Damaged (1)
    W32/Sober.dam
  Dropper (1)
    W32/Bube.dr
  Dropper multipartite (1)
    Nutcracker.mp.dr
  E-mail (5)
    W32/Sober.c@MM
    W32/Sober.d@MM
    W32/Bagle.bf@MM
    W32/Bagle.ad@MM
    W32/Sober.g@MM
  E-mail worm (7)
    W32/Sober.f@MM
    W32/Sober.b@MM
    W32/Bagle.q@MM
    W32/Bagle.t@MM
    W32/Bagle.r@MM
    W32/Bagle.s@MM
    W32/Sober.l@MM
  Email (2)
    W32/Sober.m@MM
    W32/Bagle.ar@MM
  Email Worm (1)
    W32/Sober.k@MM
  Generic Worm (2)
    W32/Spybot.worm.gen.f
    W32/Kelvir.worm.gen
  Internet Worm (6)
    W32/Sober.a@MM
    W32/Bropia.worm.g
    W32/Bropia.worm.q
    W32/Kelvir.worm.c
    W32/Kelvir.worm.b
    W32/Bropia.worm.n
  Script (1)
    Univ.script/99a
  Win32 (2)
    Generic!Morphine
    W32/Generic.m
  Worm (26)
    W32/Ska@M
    HLLW.5920
    W32/Bropia.worm.r
    W32/Bropia.worm.s
    W32/Myfip.worm
    W32/Bropia.worm.f
    W32/Bropia.worm.w
    W32/Bropia.worm.v
    W32/Crog.worm
    W32/Bropia.worm.u
    W32/Kelvir.worm.d
    W32/Bropia.worm.k
    W32/Bropia.worm.i
    W32/Bropia.worm.l
    W32/Bropia.worm.j
    W32/Bropia.worm.h
    W32/Bropia.worm.o
    W32/Kelvir.worm.g
    W32/Bropia.worm.y
    W32/Kelvir.worm.k
    W32/Kelvir.worm.j
    W32/Bropia.worm.p
    W32/Kelvir.worm.a
    W32/Bropia.worm.t
    W32/Bropia.worm.z
    W32/Kelvir.worm.m