Content

DAT Readme

Download the latest anti virus definitions for McAfee® VirusScan®. Ensure your McAfee® product contains the most up-to-date detection and prevention.
http://www.mcafee.com/apps/downloads/security_updates/dat.asp

DAT Version 4602
DAT Release Date 10/11/2005
Threats Detected 152261
New Detections 28
Enhanced Detections 127

Enhanced detections are those that have been modified for this release. Detections are enhanced to cover new variants, optimize performance, and correct incorrect identifications.

Noteworthy threats are those that had an Avert risk assessment of Low-Profiled, Medium, Medium-On-Watch, High, or High-Outbreak at the time of DAT release.

Noteworthy Threats:

Name Corporate Risk Assessment Home Risk Assessment
There are no noteworthy threats in this release

New Detections:

Program (10)
  Adware (2)
    Adware-STIEBar
    Adware-MetaSearch
  Cookie (1)
    Cookie-AdwareDelete
  Dropper (2)
    Adware-STIEBar.dr
    Adware-MetaSearch.dr
  Joke (1)
    Joke-Intelligence
  Keylogger (1)
    Keylog-SpyCapture
  Registry (2)
    Delfin
    IEPlugin
  Spyware (1)
    Spyware-Softprobe
Trojan (15)
   (2)
    Zap-336
    Malformed Archive
  Downloader (3)
    Downloader-AGA
    Downloader-AFY
    Downloader-AFX
  Dropper (2)
    MultiDropper-OP
    StartPage-EC.dr
  Exploit (1)
    Exploit-DVBBS
  Generic Server (1)
    BackDoor-CUC.svr.gen
  Password Stealer (1)
    PWS-Steam
  StartPage (1)
    StartPage-IF
  Tool (1)
    HTool-Sharoot
  Win32 (3)
    Generic StartPage.n
    Generic MSVC.d
    Generic Dropper.p
Virus (3)
  Parasitic (1)
    W32/HLLP.Zakk.c
  Win32 (1)
    W32/Valla.d
  Worm (1)
    W32/Autokx.worm

Enhanced Detections:

Internet Worm (1)
  E-mail (1)
    W32/Bagle.gen@MM
Program (57)
   (1)
    IMIServ
  - (3)
    Iroffer
    IMIServ.download
    YourSiteBar
  Adware (32)
    Adware-SaveNow
    Adware-TopMoxie
    Adware-180SA
    Adware-Cydoor
    Adware-Look2Me
    Adware-HotBar
    Adware-HelpExpress
    Adware-SafeSurf
    Adware-BB
    Adware-BHO.gen
    Adware-SearchAid
    Adware-Virtumondo
    Adware-Apropos
    Adware-180SA.lnk
    Adware-Lop
    Adware-Adroar
    Adware-Altnet
    Adware-Adpower
    Adware-NaviPromo
    Adware-SearchFast
    Adware-ActivShop
    Adware-FlashTrack
    Adware-KeenValue
    Adware-SaveNow.lnk
    Adware-PalToolbar
    Adware-WinAd
    Adware-Instafinder
    Adware-ShopNav
    Adware-IMIServ
    Adware-TopRebates
    Adware-DealHelper
    Adware-abetterintrnt
  Application extension (3)
    IMIServ.dll
    Adware-Findemnow.dll
    Adware-SafeSurf.dll
  Downloader (3)
    Adware-IstBar.dldr
    Adware-abetterintrnt.dldr
    Adware-Look2Me.dldr
  Dropper (4)
    Adware-Lop.dr
    Adware-SafeSurf.dr
    Adware-Findemnow.dr
    Adware-abetterintrnt.dr
  Generic (2)
    Adware-Url.gen
    Dialer-RAS.dd.gen
  PornDialer (1)
    Dialer-Generic
  Registry (5)
    DelfInMediaViewer
    Reg-DetectKeys25
    Reg-DetectKeys1
    RxToolBar
    Reg-DetectKeys17
  Server (1)
    IMIServ.svr
  Spyware (1)
    Spyware-AceSpy
  Win32 (1)
    Favadd
Trojan (35)
   (2)
    Generic.ca
    QHosts-17!hosts
  Application extension (2)
    IRC-Subot.dll
    PWS-Lineage.dll
  Configuration settings (1)
    HackerDefender.ini
  Downloader (2)
    Proxy-Mitglieder
    Downloader-ACV
  Dropper (1)
    W32/Sober.r.dr
  Exploit (1)
    Exploit-ObscuredHtml
  Generic (3)
    Exploit-URLSpoof.gen
    PWS-Banker.gen.j
    PWS-Banker.gen.g
  Heuristic (2)
    New Malware.n
    New Malware.u
  Password Stealer (4)
    PWS-QQDrag
    Generic PWS.f
    PWS-QQRob
    PWS-Lineage
  Proxy (1)
    Proxy-Agent.a
  Remote Access (7)
    BackDoor-CDC
    Generic BackDoor.l
    BackDoor-CSX
    BackDoor-CKM
    BackDoor-CKA
    BackDoor-CMI
    Generic BackDoor.k
  StartPage (3)
    StartPage-HP
    StartPage-CV
    StartPage-DU
  Tool (1)
    Hacktool-ShadowAdmin
  Win32 (5)
    HackerDefender
    Generic Downloader.ak
    Generic Downloader.y
    Generic Dropper.i
    Generic Downloader.ab
Virus (34)
  AutoLisp (1)
    ALS/Bursted
  Damaged Worm (1)
    W32/Sdbot.worm.dam
  E-mail worm (3)
    W32/Zafi.f@MM
    W32/Zafi.d@MM
    W32/Zafi.c@MM
  Email (3)
    W32/Zafi.e@MM
    W32/Zafi.a@MM
    W32/Zafi.b@MM
  Email Generic (1)
    W32/Mytob.gen@MM
  File Infector (2)
    W32/Valla.b
    W32/Valla.a
  Generic (1)
    W32/Zafi.gen
  Generic Worm (15)
    W32/Gaobot.worm.gen.g
    W32/Sdbot.worm.gen.w
    W32/Sdbot.worm.gen.au
    W32/Opanki.worm.gen
    W32/Sdbot.worm.gen.ar
    W32/Sdbot.worm.gen.n
    W32/Sdbot.worm.gen.l
    W32/Sdbot.worm.gen.j
    W32/Sdbot.worm.gen.ag
    W32/Sdbot.worm.gen.bd
    W32/Sdbot.worm.gen.bh
    W32/Sdbot.worm.gen.bj
    W32/Sdbot.worm.gen.y
    W32/Sdbot.worm.gen.ac
    W32/Sdbot.worm.gen.t
  Parasitic (2)
    W32/HLLP.Zakk.b
    W32/HLLP.Zakk.a
  Win32 (2)
    W32/Valla.c
    W32/Generic.Delphi.c
  Worm (3)
    W32/MoFei.worm
    W32/Opanki.worm
    W32/Opanki.worm nn