Content

DAT Readme

Download the latest anti virus definitions for McAfee® VirusScan®. Ensure your McAfee® product contains the most up-to-date detection and prevention.
http://www.mcafee.com/apps/downloads/security_updates/dat.asp

DAT Version 4595
DAT Release Date 10/03/2005
Threats Detected 151643
New Detections 29
Enhanced Detections 150

Enhanced detections are those that have been modified for this release. Detections are enhanced to cover new variants, optimize performance, and correct incorrect identifications.

Noteworthy threats are those that had an Avert risk assessment of Low-Profiled, Medium, Medium-On-Watch, High, or High-Outbreak at the time of DAT release.

Noteworthy Threats:

Name Corporate Risk Assessment Home Risk Assessment
There are no noteworthy threats in this release

New Detections:

Program (12)
  Application extension (1)
    Adware-SurfSideKick3.dll
  Cookie (11)
    Cookie-RealTracker
    Cookie-Kmpads
    Cookie-GoldenPalace
    Cookie-FindWebsite
    Cookie-ClickandTrack
    Cookie-888
    Cookie-MyGeek
    Cookie-InternetFuel
    Cookie-GlobalSearch
    Cookie-Dotcomtoolbar
    Cookie-AdDynamix
Trojan (7)
  Heuristic (1)
    New Malware.u
  Macro (2)
    X97M/Darra.b
    X97M/Darra.a
  Malware Tool (2)
    NTRootKit-Q
    NTRootKit-Q.sys
  Password Stealer (1)
    PWS-Banker.an
  Remote Access (1)
    BackDoor-Roxp
Virus (10)
   (3)
    OC/c
    Jeru.1808.n
    Tern3
  Dropper (1)
    Grotto.dr
  Email (2)
    W32/Rontokbro.a@MM
    W32/Rontokbro.b@MM
  Email Generic (2)
    W32/Rontokbro.gen@MM
    W32/Mytob.gen@MM!3715
  Win32 (2)
    W32/Bagle.dd
    W32/Botter

Enhanced Detections:

Internet Worm (1)
  E-mail (1)
    W32/Mytob.bk@MM
Program (17)
  - (1)
    IMIServer.download
  Adware (6)
    Adware-PromulGate
    Downloader-GoldCas
    Adware-SearchAid
    Adware-SmartPops
    Adware-SurfSideKick
    Adware-abetterintrnt
  Application extension (1)
    Adware-SurfSideKick.dll
  Dialer (2)
    Dialer-Generic.e
    Dialer-202
  Downloader (2)
    Adware-abetterintrnt.dldr
    IMIServer.dldr
  PornDialer (1)
    Dialer-Generic
  Spyware (1)
    Spyware-eBlaster
  Win32 (3)
    DTReg
    WinFixer
    RemAdm-XNet
Trojan (47)
   (3)
    Generic BackDoor.bb
    Phish-BankFraud.eml.a
    Generic.g
  Application extension (2)
    Keylog-Diablo.dll
    PWS-Banker.dll
  Client (1)
    Keylog-Diablo.cli
  Configurator (2)
    Keylog-Diablo.cfg
    BackDoor-CEP.cfg
  Dialer (1)
    QDial-34
  Downloader (4)
    Generic Downloader.gen.be
    W32/Bagle.cj
    Downloader-AFN
    Downloader-ABU
  Downloader Generic (1)
    W32/Bagle.dldr
  Dropper (3)
    Keylog-Diablo.dr
    BackDoor-CEP.dr
    MultiDropper-LT
  Dropper Generic (1)
    PWS-Banker.gen.dr
  Exploit (2)
    Exploit-ObscuredHtml
    JS/Exploit-HelpXSite
  Generic (4)
    Generic Downloader.gen.bf
    PWS-Banker.gen.ba
    PWS-Banker.gen.bb
    PWS-Banker.gen.h
  Heuristic (2)
    New Malware.p
    New Malware.t
  Keylogger (1)
    Keylog-Diablo.rmv
  Password Stealer (1)
    PWS-AOLPhish
  Proxy (2)
    Proxy-FBSR
    Proxy-Agent.a
  Remote Access (3)
    BackDoor-AWQ.b
    BackDoor-AVW
    BackDoor-CEP
  Spyware (1)
    Keylog-Diablo
  Win32 (13)
    Generic BackDoor.b
    Generic Delphi
    Generic Downloader.aj
    Generic VB.b
    Generic FDoS.b
    Generic Downloader.bb
    Generic BackDoor.bd
    Generic BackDoor.ba
    Generic PWS.o
    Generic QLowZones.a
    Generic BackDoor.u
    Generic Downloader.ab
    DDoS-Boxed
Virus (85)
  Downloader (4)
    W32/Bagle.ci
    W32/Bagle.ck
    W32/Bagle.cl
    W32/Bagle.cn
  Dropper Email (1)
    W32/Mytob.dr@MM
  E-mail (9)
    W32/Mytob.be@MM
    W32/Mytob.bi@MM
    W32/Mytob.bj@MM
    W32/Mytob.bo@MM
    W32/Mytob.bl@MM
    W32/Mytob.br@MM
    W32/Mytob.bf@MM
    W32/Mytob.cg@MM
    W32/Mytob.ch@MM
  Email (34)
    W32/Bagle.cd@MM
    W32/Mytob.b@MM
    W32/Mytob.a@MM
    W32/Mytob.ev@MM
    W32/Mytob.at@MM
    W32/Mytob.av@MM
    W32/Mytob.au@MM
    W32/Mytob.bg@MM
    W32/Mytob.bx@MM
    W32/Mytob.cd@MM
    W32/Mytob.bn@MM
    W32/Mytob.dh@MM
    W32/Mytob.r@MM
    W32/Mytob.e@MM
    W32/Mytob.c@MM
    W32/Mytob.g@MM
    W32/Mytob.bt@MM
    W32/Mytob.bp@MM
    W32/Mytob.ct@MM
    W32/Mytob.cf@MM
    W32/Mytob.dd@MM
    W32/Mytob.ca@MM
    W32/Mytob.n@MM
    W32/Mytob.f@MM
    W32/Mytob.d@MM
    W32/Mytob.cs@MM
    W32/Mytob.dk@MM
    W32/Mytob.dz@MM
    W32/Mytob.eb@MM
    W32/Mytob.ds@MM
    W32/Mytob.ea@MM
    W32/Mytob.ej@MM
    W32/Mytob.es@MM
    W32/Mytob.eq@MM
  Email Generic (7)
    W32/Mytob.gen@MM
    W32/Mytob.gen@MM!55e5
    W32/Mytob.gen@MM!e82
    W32/Mytob.gen@MM!15d
    W32/Mytob.gen@MM!2adb
    W32/Mytob.gen@MM!59e8
    W32/Mytob.gen@MM!72a5
  Generic Worm (18)
    W32/Sdbot.worm.gen.br
    W32/Sdbot.worm.gen.w
    W32/Sdbot.worm.gen.au
    W32/Sdbot.worm.gen.bg
    W32/Spybot.worm.gen.bj
    W32/Sdbot.worm.gen.ar
    W32/Sdbot.worm.gen.h
    W32/Sdbot.worm.gen.i
    W32/Sdbot.worm.gen.bk
    W32/Spybot.worm.gen.by
    W32/Sdbot.worm.gen.bd
    W32/Sdbot.worm.gen.bh
    W32/Sdbot.worm.gen.bi
    W32/Sdbot.worm.gen.by
    W32/Sdbot.worm.gen.bj
    W32/Sdbot.worm.gen.bw
    W32/Sdbot.worm.gen.ac
    W32/Gaobot.worm.gen.s
  Heuristic (2)
    New BackDoor1b
    New BackDoor1
  Universal (1)
    Univ/a
  Win32 (6)
    W32/Bagle.cp
    W32/Bagle.cq
    W32/Bagle.co
    W32/Bagle.cm
    W32/Bagle.dc
    W32/Generic.Delphi.b
  Worm (3)
    W32/Dedler.worm
    W32/Drefir.worm
    W32/Mytob.worm!im