Content

DAT Readme

Download the latest anti virus definitions for McAfee® VirusScan®. Ensure your McAfee® product contains the most up-to-date detection and prevention.
http://www.mcafee.com/apps/downloads/security_updates/dat.asp

DAT Version 4612
DAT Release Date 10/25/2005
Threats Detected 154648
New Detections 22
Enhanced Detections 185

Enhanced detections are those that have been modified for this release. Detections are enhanced to cover new variants, optimize performance, and correct incorrect identifications.

Noteworthy threats are those that had an Avert risk assessment of Low-Profiled, Medium, Medium-On-Watch, High, or High-Outbreak at the time of DAT release.

Noteworthy Threats:

Name Corporate Risk Assessment Home Risk Assessment
There are no noteworthy threats in this release

New Detections:

Program (2)
  Adware (2)
    Adware-EZTracks
    Adware-DollarRevenue
Trojan (12)
  Demonstration (1)
    Exploit-ScriptNull.demo
  Dialer (1)
    QDial-35
  Downloader (4)
    Downloader-AGL
    Downloader-AGJ
    Downloader-AGM
    Downloader-AGK
  Malware Tool (1)
    Spam-Yaemb
  Proxy (1)
    Proxy-Agent.ac
  Remote Access (1)
    BackDoor-CVG
  StartPage (1)
    StartPage-IK
  Win32 (2)
    AdClicker-DN
    Rinsta
Virus (8)
   (3)
    SymbOS/Cabir.ac
    SymbOS/Cabir.ac!sis
    SymbOS/Cabir!ezboot.ac
  Email (1)
    W32/Mydoom.cb@MM
  Email Generic (1)
    W32/Mytob.gen@MM!7050
  Win32 (1)
    W32/Undertake.4887
  Win9x (1)
    W95/Hazlo.2929a
  Worm (1)
    W32/Jupir.worm

Enhanced Detections:

Internet Worm (1)
  Win32 (1)
    New Worm
Program (8)
  Adware (3)
    Adware-2Search
    Adware-SpySheriff
    Adware-EliteBar.xml
  Generic (2)
    Dialer-RAS.dv.gen
    Adware-Url.gen
  PornDialer (1)
    Dialer-Generic
  Win32 (2)
    Tool-WGet
    WinFixer
Trojan (64)
   (5)
    Generic BackDoor.d
    Generic Keylogger
    Generic.ca
    Generic BackDoor.bb
    Malformed Archive
  - (1)
    AdClicker-AJ
  Application extension (1)
    Downloader-AEC.dll
  Configurator (1)
    BackDoor-CEP.cfg
  Downloader (11)
    Downloader-AEC
    Downloader-XC
    Downloader-ABZ
    Downloader-YO
    Downloader-ABU
    Downloader-ABS
    Downloader-ZN!chm
    Downloader-ZN
    Downloader-ACD
    PWS-LegMir.dldr
    Downloader-LE
  Dropper (7)
    PWS-Legmir.dr
    MultiDropper-BN
    MultiDropper-NO
    BackDoor-CKB.dr
    MultiDropper-OV
    BackDoor-CEP.dr
    MultiDropper-OZ
  Exploit (3)
    Exploit-MhtRedir.gen
    Exploit-ScriptNull
    Exploit-ObscuredHtml
  Generic (6)
    Generic Downloader.gen.be
    PWS-Banker.gen.ba
    PWS-Banker.gen.bb
    PWS-Banker.gen.i
    PWS-Banker.gen.g
    JS/Stealus.gen
  Generic Worm (1)
    W32/Sdbot.worm.gen.bx
  Heuristic (3)
    New Malware.n
    New Malware.j
    New Malware.h
  Password (1)
    PWS-LegMir
  Password Stealer (1)
    PWS-Lineage
  Proxy (1)
    Proxy-Agent.q
  Remote Access (9)
    BackDoor-ABM
    BackDoor-AWQ.b
    BackDoor-CTV
    BackDoor-CKB.sys
    BackDoor-CUQ
    BackDoor-CSL
    BackDoor-CKB
    Generic BackDoor.o
    BackDoor-CEP
  StartPage (2)
    StartPage-F
    StartPage-GU
  Win32 (11)
    HackerDefender.sys
    Generic Downloader.ak
    Generic AdClicker.f
    Generic Downloader.bb
    G6Service
    Generic AdClicker.j
    Generic PWS.o
    Generic Downloader.ab
    Generic Dropper.k
    Generic.k
    DDoS-Boxed
Virus (112)
   (41)
    SymbOS/Cabir.x
    SymbOS/Cabir.ab
    SymbOS/Cabir!ezboot.ab
    SymbOS/Cabir.ab!sis
    SymbOS/Cabir!lasco
    SymbOS/Cabir.v
    SymbOS/Cabir!ezboot.v
    SymbOS/Cabir.y
    SymbOS/Cabir!ezboot.y
    SymbOS/Cabir.z
    SymbOS/Cabir!ezboot.w
    SymbOS/Cabir.w
    SymbOS/Cabir!ezboot.e
    SymbOS/Cabir!ezboot.d
    SymbOS/Cabir!ezboot.c
    SymbOS/Cabir!ezboot
    SymbOS/Cabir!ezboot.x
    SymbOS/Cabir!ezboot.s
    SymbOS/Cabir!ezboot.o
    SymbOS/Cabir!ezboot.k
    SymbOS/Cabir!ezboot.f
    SymbOS/Cabir.k!sis
    SymbOS/Cabir.i!sis
    SymbOS/Cabir.b!sis
    SymbOS/Cabir.g
    SymbOS/Cabir.f
    SymbOS/Cabir.b
    SymbOS/Cabir.a
    SymbOS/Cabir!ezboot.t
    SymbOS/Cabir!ezboot.r
    SymbOS/Cabir.m
    SymbOS/Cabir.k
    SymbOS/Cabir!ezboot.q
    SymbOS/Cabir!ezboot.p
    SymbOS/Cabir!ezboot.n
    SymbOS/Cabir.l!sis
    SymbOS/Cabir.j!sis
    SymbOS/Cabir.h!sis
    SymbOS/Cabir.u
    SymbOS/Cabir.aa
    SymbOS/Cabir!ezboot.aa
  Damaged Worm (1)
    W32/Sdbot.worm.dam
  Dropper (2)
    SymbOS/Cabir.dr
    SymbOS/Cabir.dr!skulls
  E-mail (5)
    W32/Mydoom.be@MM
    W32/Mydoom.bb@MM
    W32/Mydoom.bc@MM
    W32/Mydoom.bd@MM
    W32/Mydoom.bg@MM
  E-mail worm (1)
    W32/Mydoom.av@MM
  Email (6)
    W32/Bagz.m@MM
    W32/Mydoom.aa@MM
    W32/Bagz.k@MM
    W32/Bagz.r@MM
    W32/Bagz.q@MM
    W32/Mydoom.at@MM
  Email Generic (17)
    W32/Mytob.gen@MM!1870
    W32/Mytob.gen@MM!615f
    W32/Mytob.gen@MM!7796
    W32/Mytob.gen@MM!7af7
    W32/Mytob.gen@MM!49d0
    W32/Mytob.gen@MM!2f1b
    W32/Mytob.gen@MM
    W32/Savage.gen@MM
    W32/Mytob.gen@MM!2c2b
    W32/Mytob.gen@MM!7cb8
    W32/Mytob.gen@MM!5479
    W32/Mytob.gen@MM!53be
    W32/Mytob.gen@MM!1f1a
    W32/Mytob.gen@MM!35d3
    W32/Mytob.gen@MM!98a
    W32/Mytob.gen@MM!663a
    W32/Bagz.gen@MM
  Generic (3)
    W32/Randex.gen
    SymbOS/Cabir.gen!sis
    SymbOS/Cabir.gen
  Generic Worm (12)
    W32/Sdbot.worm.gen.bg
    W32/Opanki.worm.gen
    W32/Sdbot.worm.gen.n
    W32/Sdbot.worm.gen.l
    W32/Sdbot.worm.gen.x
    W32/Sdbot.worm.gen.bs
    W32/Sdbot.worm.gen.bh
    W32/Sdbot.worm.gen.bi
    W32/Sdbot.worm.gen.by
    W32/Sdbot.worm.gen.bj
    W32/Sdbot.worm.gen.ac
    W32/Sdbot.worm.gen.t
  PDA Device (14)
    SymbOS/Cabir.e
    SymbOS/Cabir.c
    SymbOS/Cabir.h
    SymbOS/Cabir.d
    SymbOS/Cabir.t
    SymbOS/Cabir.r
    SymbOS/Cabir.p
    SymbOS/Cabir.n
    SymbOS/Cabir.l
    SymbOS/Cabir.s
    SymbOS/Cabir.q
    SymbOS/Cabir.o
    SymbOS/Cabir.i
    SymbOS/Cabir.j
  Win32 (8)
    W32/Randex.a
    W32/Randex.b
    W32/Randex.d
    W32/Randex.f
    W32/Bagle
    W32/Generic.j
    W32/Mydoom
    W32/Mydoom.ao
  Win9x (1)
    W95/Hazlo.2929
  Worm (1)
    W32/Opanki.worm