Content

DAT Readme

Download the latest anti virus definitions for McAfee® VirusScan®. Ensure your McAfee® product contains the most up-to-date detection and prevention.
http://www.mcafee.com/apps/downloads/security_updates/dat.asp

DAT Version 4597
DAT Release Date 10/05/2005
Threats Detected 151887
New Detections 18
Enhanced Detections 153

Enhanced detections are those that have been modified for this release. Detections are enhanced to cover new variants, optimize performance, and correct incorrect identifications.

Noteworthy threats are those that had an Avert risk assessment of Low-Profiled, Medium, Medium-On-Watch, High, or High-Outbreak at the time of DAT release.

Noteworthy Threats:

Name Corporate Risk Assessment Home Risk Assessment
There are no noteworthy threats in this release

New Detections:

Program (10)
   (1)
    Isearch.lnk
  Adware (2)
    Adware-SaveNow.lnk
    Adware-PalToolbar
  Configuration settings (1)
    Adware-EliteBar.ini
  Cookie (2)
    Cookie-VirusHunter
    Cookie-SpyAvenger
  Downloader (1)
    Adware-DDM.dldr
  Tool (3)
    Tool-Dish
    Tool-HelpXSite
    Tool-NTPacker
Trojan (7)
   (2)
    SymbOS/Multidropper.l!sis
    Generic Downloader.ao
  Downloader (1)
    Downloader-AFQ
  Dropper (1)
    MultiDropper-OL
  Remote Access (1)
    BackDoor-CUX
  StartPage (1)
    StartPage-IC
  Win32 (1)
    Spy-LzioMed
Virus (1)
  Email (1)
    W32/Mytob.fu@MM

Enhanced Detections:

Program (17)
  Adware (10)
    Adware-SRNG
    Adware-SearchAid
    Adware-DDM
    Adware-Apropos
    Adware-IEDriver
    Adware-Lop
    Adware-Dashbar
    Adware-Tubby
    Adware-CasClient
    Adware-TopRebates
  Downloader (1)
    Adware-Apropos.dldr
  Dropper (4)
    Adware-SafeSurf.dr
    Adware-SurfSideKick.dr
    Adware-CasClient.dr
    Adware-Isearch.dr
  Generic (1)
    Adware-Url.gen
  Win32 (1)
    TrueActive
Trojan (55)
   (15)
    Generic BackDoor.d
    QHosts-5
    SymbOS/Multidropper.a!sis
    SymbOS/Multidropper.e!sis
    SymbOS/Multidropper.c!sis
    SymbOS/Multidropper.g!sis
    Generic.ca
    SymbOS/Multidropper.b!sis
    SymbOS/Multidropper.f!sis
    SymbOS/Multidropper.d!sis
    SymbOS/Multidropper.k!sis
    SymbOS/Multidropper.j!sis
    SymbOS/Multidropper.i!sis
    SymbOS/Multidropper.h!sis
    Generic BackDoor.bb
  - (1)
    AdClicker-AJ
  Adware (1)
    AdClicker-DI
  Application extension (2)
    AdClicker-BA.dll
    Spy-Agent.k.dll
  Configuration settings (1)
    PWS-RemotePassSteal.ini
  Dialer (1)
    QDial-34
  Downloader (6)
    Downloader-UP
    Downloader-XC
    PWS-Banker.dldr
    Downloader-ACH
    Downloader-LE
    Downloader-ACV
  Dropper (2)
    Generic BackDoor.dr
    PWS-Gamania.dr
  Exploit (3)
    VBS/Psyme
    Exploit-MSJet
    Exploit-Virtools
  Generic (3)
    Generic Downloader.gen.bd
    PWS-Banker.gen.bb
    PWS-Banker.gen.i
  Heuristic (2)
    New Malware.n
    New Malware.u
  Password Stealer (2)
    PWS-QQRob
    PWS-RemotePassSteal
  Proxy (1)
    Proxy-Agent.a
  Remote Access (5)
    BackDoor-AWQ.b
    BackDoor-BCG
    BackDoor-CSL
    BackDoor-AWQ.b!chm
    BackDoor-CMI
  Source code (1)
    Exploit-Virtools.src
  Win32 (9)
    Generic BackDoor.b
    HackerDefender
    Generic Downloader.bb
    Generic PWS.o
    Generic Dropper.i
    Generic Downloader.ab
    Generic BackDoor.w
    DDoS-Boxed
    Generic AdClicker.d
Virus (81)
  Damaged (1)
    W32/Mytob.dam
  Damaged Worm (1)
    W32/Sdbot.worm.dam
  Email (52)
    W32/Mytob.ao@MM
    W32/Mytob.al@MM
    W32/Mytob.ew@MM
    W32/Mytob.fa@MM
    W32/Mytob.ft@MM
    W32/Mytob.fs@MM
    W32/Mytob.aw@MM
    W32/Mytob.fr@MM
    W32/Mytob.ba@MM
    W32/Mytob.bc@MM
    W32/Mytob.bb@MM
    W32/Mytob.bd@MM
    W32/Mytob.bu@MM
    W32/Mytob.bq@MM
    W32/Mytob.by@MM
    W32/Mytob.cq@MM
    W32/Mytob.ck@MM
    W32/Mytob.cw@MM
    W32/Mytob.p@MM
    W32/Mytob.i@MM
    W32/Mytob.k@MM
    W32/Mytob.r@MM
    W32/Mytob.m@MM
    W32/Mytob.bs@MM
    W32/Mytob.de@MM
    W32/Mytob.cb@MM
    W32/Mytob.do@MM
    W32/Mytob.dl@MM
    W32/Mytob.h@MM
    W32/Mytob.j@MM
    W32/Mytob.l@MM
    W32/Mytob.o@MM
    W32/Mytob.t@MM
    W32/Mytob.x@MM
    W32/Mytob.y@MM
    W32/Mytob.cr@MM
    W32/Mytob.cl@MM
    W32/Mytob.ci@MM
    W32/Mytob.cx@MM
    W32/Mytob.cy@MM
    W32/Mytob.dn@MM
    W32/Mytob.ei@MM
    W32/Mytob.aa@MM
    W32/Mytob.ad@MM
    W32/Mytob.dw@MM
    W32/Mytob.dv@MM
    W32/Mytob.du@MM
    W32/Mytob.aj@MM
    W32/Mytob.z@MM
    W32/Mytob.eg@MM
    W32/Mytob.em@MM
    W32/Mytob.en@MM
  Email Generic (1)
    W32/Mytob.gen@MM
  Generic (1)
    Generic Downloader.gen.be
  Generic Worm (21)
    W32/Bozori.worm.gen
    W32/Sdbot.worm.gen.br
    W32/Sdbot.worm.gen.au
    W32/Sdbot.worm.gen.bg
    W32/Gaobot.worm.gen.bj
    W32/Sdbot.worm.gen.l
    W32/Sdbot.worm.gen.bl
    W32/Sdbot.worm.gen.bk
    W32/Sdbot.worm.gen.bs
    W32/Sdbot.worm.gen.bz
    W32/Sdbot.worm.gen.bp
    W32/Sdbot.worm.gen.bo
    W32/Sdbot.worm.gen.bq
    W32/Sdbot.worm.gen.bd
    W32/Sdbot.worm.gen.bh
    W32/Sdbot.worm.gen.bi
    W32/Sdbot.worm.gen.by
    W32/Sdbot.worm.gen.bj
    W32/Gaobot.worm.gen.bh
    W32/Gaobot.worm.gen.bi
    W32/Sdbot.worm.gen.ac
  Internet Worm (1)
    W32/Bozori.worm.b
  Win32 (1)
    W32/Generic.Delphi.a
  Worm (2)
    W32/Bozori.worm.c
    W32/Bozori.worm.a!CME-540