Content

DAT Readme

Download the latest anti virus definitions for McAfee® VirusScan®. Ensure your McAfee® product contains the most up-to-date detection and prevention.
http://www.mcafee.com/apps/downloads/security_updates/dat.asp

DAT Version 4496
DAT Release Date 05/20/2005
Threats Detected 127584
New Detections 15
Enhanced Detections 116

Enhanced detections are those that have been modified for this release. Detections are enhanced to cover new variants, optimize performance, and correct incorrect identifications.

Noteworthy threats are those that had an Avert risk assessment of Low-Profiled, Medium, Medium-On-Watch, High, or High-Outbreak at the time of DAT release.

Noteworthy Threats:

Name Corporate Risk Assessment Home Risk Assessment
There are no noteworthy threats in this release

New Detections:

Program (5)
  Adware (1)
    Adware-SearchMore
  Dialer (1)
    Dialer-265
  Dropper (2)
    Adware-HotBar.dr
    NavHelper.dr
  Joke (1)
    Joke-Elite
Trojan (8)
   (1)
    QHosts-32
  Application extension (1)
    IRC/Flood.dll
  Demonstration (1)
    Exploit-MF05-42.demo
  Downloader (2)
    Downloader-AAW
    Downloader-AAX
  Dropper (1)
    BackDoor-AWQ.b.dr
  Win32 (2)
    Del-476
    PGPcoder
Virus (2)
  Damaged Worm (1)
    W32/Kelvir.worm.dam
  Worm (1)
    W32/Combra.worm

Enhanced Detections:

Program (19)
  Adware (10)
    Adware-TopMoxie
    Adware-RBlast.dldr
    Adware-HotBar
    Adware-SAHAgent
    Adware-PromulGate
    Adware-Aureate
    Adware-Lop
    Adware-Ndware
    Adware-SmartPops
    Adware-BkdSpace
  Application extension (1)
    Adware-PromulGate.dll
  Downloader (2)
    Adware-Lop.dldr
    Adware-SAHAgent.dldr
  Dropper (4)
    Adware-SAHAgent.dr
    Adware-BkdSpace.dr
    Adware-Beginto.dr
    Spyware-WebHancer.dr
  Plugin component (1)
    Tool-Xscan.plugin
  Remote Access (1)
    ServU-Daemon
Trojan (55)
   (2)
    Generic BackDoor.d
    RemoteAdmin!reg
  Application extension (6)
    PWS-Legmir.dll
    BackDoor-AWQ.dll
    Puper.dll
    BackDoor-CRX.dll
    BackDoor-CKB.dll
    PWS-Banker.dll
  Client (1)
    BackDoor-AHJ.cli
  Configurator (1)
    Downloader-GG.cfg
  Downloader (3)
    Downloader-DC
    Downloader-AAI
    Downloader-ZI
  Downloader Generic (1)
    Proxy-FBSR.gen.dldr
  Dropper (3)
    PWS-LegMir.dr
    BackDoor-CKB.dr
    PWS-Banker.dr.a
  Exploit (1)
    Exploit-DcomRpc
  File Deletion (1)
    Del-467
  Generic (5)
    Proxy-FBSR.gen
    PWS-Banker.gen.ba
    PWS-Banker.gen.p
    PWS-Banker.gen.i
    PWS-Banker.gen.h
  Internet Relay Chat (1)
    IRC-Contact
  Keylogger (1)
    KeyLog-Radar
  Password (1)
    BackDoor-AQO
  Password Stealer (3)
    Generic PWS.a
    PWS-Banker
    PWS-Dremn
  Proxy (2)
    Proxy-FBSR
    Proxy-Piky
  Remote Access (12)
    BackDoor-AXJ
    BackDoor-ABM
    Backdoor-TW
    BackDoor-AWQ.b
    BackDoor-AVW
    BackDoor-CGX
    BackDoor-ANC
    BackDoor-AHJ
    BackDoor-CRX
    Generic BackDoor.l
    BackDoor-CEO
    BackDoor-CKB
  StartPage (1)
    StartPage-GX
  Win32 (10)
    Generic Delphi
    Generic BackDoor.g
    Puper
    Generic Downloader.k
    Generic QLowZones.a
    Generic Downloader.ab
    AdClicker-BQ
    Generic VB.c
    DDoS-Boxed
    Generic Downloader.e
Virus (42)
  Damaged (1)
    W32/Mytob.dam
  Damaged Worm (1)
    W32/Sdbot.worm.dam
  Email (20)
    W32/Mytob.ao@MM
    W32/Mytob.al@MM
    W32/Mytob.aw@MM
    W32/Mytob.ba@MM
    W32/Mytob.p@MM
    W32/Mytob.i@MM
    W32/Mytob.k@MM
    W32/Mytob.r@MM
    W32/Mytob.m@MM
    W32/Mytob.h@MM
    W32/Mytob.j@MM
    W32/Mytob.l@MM
    W32/Mytob.o@MM
    W32/Mytob.t@MM
    W32/Mytob.x@MM
    W32/Mytob.y@MM
    W32/Mytob.aa@MM
    W32/Mytob.ad@MM
    W32/Mytob.aj@MM
    W32/Mytob.z@MM
  Email Generic (1)
    W32/Mytob.gen@MM
  Generic Worm (13)
    W32/Sdbot.worm.gen.w
    W32/Spybot.worm.gen.f
    W32/Sdbot.worm.gen.bg
    W32/Gaobot.worm.gen.bj
    W32/Spybot.worm.gen.bj
    W32/Sdbot.worm.gen.j
    W32/Sdbot.worm.gen.h
    W32/Spybot.worm.gen.j
    W32/Sdbot.worm.gen.bh
    W32/Sdbot.worm.gen.by
    W32/Sdbot.worm.gen.bj
    W32/Sdbot.worm.gen.y
    W32/Sdbot.worm.gen.q
  Internet Worm (2)
    W32/Kelvir.worm.c
    W32/Kelvir.worm.b
  Worm (4)
    W32/Kelvir.worm.d
    W32/Kelvir.worm.j
    W32/Kelvir.worm.r
    W32/Kelvir.worm.ak