Content

DAT Readme

Download the latest anti virus definitions for McAfee® VirusScan®. Ensure your McAfee® product contains the most up-to-date detection and prevention.
http://www.mcafee.com/apps/downloads/security_updates/dat.asp

DAT Version 4490
DAT Release Date 05/12/2005
Threats Detected 126388
New Detections 24
Enhanced Detections 183

Enhanced detections are those that have been modified for this release. Detections are enhanced to cover new variants, optimize performance, and correct incorrect identifications.

Noteworthy threats are those that had an Avert risk assessment of Low-Profiled, Medium, Medium-On-Watch, High, or High-Outbreak at the time of DAT release.

Noteworthy Threats:

Name Corporate Risk Assessment Home Risk Assessment
There are no noteworthy threats in this release

New Detections:

Program (4)
   (1)
    Generic AboutBlank
  Dropper (1)
    Adware-Quickbar.dr
  Joke (2)
    Joke-OpenCloseCD
    Joke-Shutdwn
Trojan (12)
   (1)
    Havedo
  Application extension (2)
    Warspy.dll
    PWS-Gorgs.dll
  Downloader (2)
    Downloader-Silas
    Downloader-AAQ
  Dropper (1)
    MultiDropper-NE
  Generic (2)
    BackDoor-CRW.gen
    Proxy-Agent.k.gen
  Malware Tool (1)
    Downloader-Silas.kit
  Password Stealer (1)
    PWS-Gorgs
  Script (2)
    ZapChast.reg
    VBS/DDoS-Xemyn
Virus (8)
   (1)
    SymbOS/Skulls.bu!sis
  Email (2)
    W32/Sober.q@MM
    W32/Netsky.oM@M
  Generic Internet Relay Chat (1)
    W32/Milol.worm.gen!irc
  Peer To Peer Worm (1)
    W32/Alcan.worm!p2p
  Worm (3)
    W32/Rizon.worm
    W32/Bropia.worm.ar
    W32/Bropia.worm.aq

Enhanced Detections:

Internet Worm (3)
  E-mail (2)
    W32/Sober.e@MM
    W32/Sober.j@MM
  E-mail worm (1)
    W32/Netsky.c@MM
Malware (1)
  Exploit (1)
    Exploit-CodeBase
Program (6)
  Dialer (1)
    Dialer-257
  Downloader (3)
    Adware-Xupiter.dldr
    Adware-Lop.dldr
    Adware-ISTbar.dldr
  Spam (1)
    Adware-Ezula
  Spyware (1)
    Spyware-ActivityLog
Trojan (42)
   (4)
    Generic BackDoor.d
    Generic component
    Phish-BankFraud.eml.b
    Uploader-X!hosts
  Application extension (1)
    Downloader-LG.dll
  Application extension Generi (1)
    BackDoor-AXJ.dll.gen
  Downloader (5)
    Downloader-XB
    Downloader-PS
    Downloader-LG
    Downloader-KZ
    Downloader-PR
  Dropper (3)
    Generic BackDoor.dr
    Uploader-X.dr
    Proxy-Raser.dr
  Exploit (1)
    VBS/Psyme
  Generic (1)
    QLowZones-2.gen
  Heuristic (1)
    New Malware.f
  Internet Relay Chat (1)
    IRC/Flood.c
  Password Stealer (1)
    Generic PWS.l
  Plugin component (1)
    Orifice2K.plugin
  Proxy (2)
    Proxy-FBSR
    Proxy-Piky
  Remote Access (9)
    BackDoor-SN
    BackDoor-CGX
    Netbus.svr
    BackDoor-APX
    BackDoor-ADW
    BackDoor-AWI
    BackDoor-CKA
    BackDoor-CMI
    Generic BackDoor.p
  StartPage (1)
    StartPage-EP
  Win32 (10)
    Generic Delphi
    Generic Downloader.c
    Generic BackDoor.c
    Uploader-X
    Generic StartPage.b
    Generic Downloader.p
    Generic Downloader.k
    Generic QLowZones.a
    Generic BackDoor.u
    DDoS-Boxed
Virus (131)
  Application extension (1)
    W32/Lanieca.dll
  Damaged (2)
    W32/Sober.dam
    W32/Mytob.dam
  Damaged Worm (2)
    W32/Gaobot.worm.dam
    W32/Sdbot.worm.dam
  Dropper (1)
    W32/Sober.dr
  E-mail (6)
    W32/Sober.c@MM
    W32/Sober.d@MM
    W32/Netsky.z@MM
    W32/Sober.p@MM
    W32/Sober.o@MM!M414
    W32/Sober.g@MM
  E-mail worm (3)
    W32/Sober.f@MM
    W32/Sober.b@MM
    W32/Sober.l@MM
  Email (30)
    W32/Mytob.b@MM
    W32/Mytob.a@MM
    W32/Mytob.ao@MM
    W32/Mytob.al@MM
    W32/Mytob.at@MM
    W32/Lanieca@MM
    W32/Lanieca@MM!zip
    W32/Sober.m@MM
    W32/Mytob.p@MM
    W32/Mytob.i@MM
    W32/Mytob.k@MM
    W32/Mytob.r@MM
    W32/Mytob.e@MM
    W32/Mytob.c@MM
    W32/Mytob.m@MM
    W32/Mytob.g@MM
    W32/Mytob.h@MM
    W32/Mytob.j@MM
    W32/Mytob.l@MM
    W32/Mytob.o@MM
    W32/Mytob.n@MM
    W32/Mytob.f@MM
    W32/Mytob.d@MM
    W32/Mytob.t@MM
    W32/Mytob.x@MM
    W32/Mytob.y@MM
    W32/Mytob.aa@MM
    W32/Mytob.ad@MM
    W32/Mytob.aj@MM
    W32/Mytob.z@MM
  Email Generic (2)
    W32/Sober.gen@MM
    W32/Mytob.gen@MM
  Email Worm (1)
    W32/Sober.k@MM
  Generic (1)
    W32/Dumaru.gen
  Generic Worm (22)
    W32/Gaobot.worm.gen.e
    W32/Sdbot.worm.gen.w
    W32/Sdbot.worm.gen.bg
    W32/Gaobot.worm.gen.bj
    W32/Spybot.worm.gen.bj
    W32/Gaobot.worm.gen.j
    W32/Sdbot.worm.gen.n
    W32/Sdbot.worm.gen.l
    W32/Sdbot.worm.gen.j
    W32/Sdbot.worm.gen.h
    W32/Kelvir.worm.gen
    W32/Sdbot.worm.gen.ae
    W32/Gaobot.worm.gen.t
    W32/Gaobot.worm.gen.bc
    W32/Sdbot.worm.gen.bh
    W32/Sdbot.worm.gen.bi
    W32/Sdbot.worm.gen.by
    W32/Sdbot.worm.gen.bj
    W32/Sdbot.worm.gen.bw
    W32/Gaobot.worm.gen.by
    W32/Sdbot.worm.gen.y
    W32/Sdbot.worm.gen.q
  Internet Worm (6)
    W32/Sober.a@MM
    W32/Bropia.worm.g
    W32/Bropia.worm.q
    W32/Kelvir.worm.f
    W32/Bropia.worm.n
    W32/Bropia.worm.aj
  mIRC Worm (1)
    W32/Protoride.worm
  Parasitic (1)
    Gruesome.229
  Win32 (5)
    New Win32.g1
    New Poly Win32
    New Win32
    W32/Generic.d
    Generic!Morphine
  Worm (47)
    W32/Kelvir.worm.al
    W32/Kelvir.worm.ap
    W32/Kelvir.worm.an
    W32/Bropia.worm.al
    W32/Bropia.worm.ak
    W32/Kelvir.worm.ao
    W32/Kelvir.worm.am
    W32/Bropia.worm.am
    W32/Bropia.worm.r
    W32/Bropia.worm.s
    W32/Kelvir.worm.ax
    W32/Bropia.worm.ao
    W32/Bropia.worm.an
    W32/Kelvir.worm.az
    W32/Dedler.worm
    W32/Bropia.worm.f
    W32/Kelvir.worm.ba
    W32/Kelvir.worm.ay
    W32/Kelvir.worm.bg
    W32/Bropia.worm.w
    W32/Bropia.worm.v
    W32/Kelvir.worm.e
    W32/Bropia.worm.u
    W32/Bropia.worm.k
    W32/Bropia.worm.i
    W32/Bropia.worm.l
    W32/Bropia.worm.j
    W32/Bropia.worm.h
    W32/Bropia.worm.o
    W32/Bropia.worm.y
    W32/Kelvir.worm.i
    W32/Mytob.worm!im
    W32/Bropia.worm.p
    W32/Bropia.worm.t
    W32/Kelvir.worm.o
    W32/Bropia.worm.ab
    W32/Bropia.worm.z
    W32/Kelvir.worm.p
    W32/Kelvir.worm.l
    W32/Kelvir.worm.q
    W32/Kelvir.worm.w
    W32/Bropia.worm.ag
    W32/Kelvir.worm.ac
    W32/Kelvir.worm.aj
    W32/Kelvir.worm.ai
    W32/Bropia.worm.ah
    W32/Bropia.worm.ai