Content

DAT Readme

Download the latest anti virus definitions for McAfee® VirusScan®. Ensure your McAfee® product contains the most up-to-date detection and prevention.
http://www.mcafee.com/apps/downloads/security_updates/dat.asp

DAT Version 4617
DAT Release Date 11/01/2005
Threats Detected 155369
New Detections 17
Enhanced Detections 154

Enhanced detections are those that have been modified for this release. Detections are enhanced to cover new variants, optimize performance, and correct incorrect identifications.

Noteworthy threats are those that had an Avert risk assessment of Low-Profiled, Medium, Medium-On-Watch, High, or High-Outbreak at the time of DAT release.

Noteworthy Threats:

Name Corporate Risk Assessment Home Risk Assessment
There are no noteworthy threats in this release

New Detections:

Program (2)
  Dialer (1)
    Dialer-283
  Dropper (1)
    Dialer-Generic.dr!chm
Trojan (12)
  Downloader (6)
    W32/Bagle.dk
    Downloader-AQY
    Downloader-AQX
    Downloader-AGW
    Downloader-AQV
    Downloader-AQU
  Exploit (1)
    Linux/Exploit-fstring
  Generic (1)
    Downloader-AQV.gen
  Proxy (1)
    Proxy-Horst
  Tool (1)
    Tool-WPAKill
  Win32 (2)
    Generic Keylogger.d
    APSTrojan.tz
Virus (3)
  Application extension (1)
    W32/Bagle.dk.dll
  Email (1)
    W32/Mytob.gt@MM
  Worm (1)
    W32/Yurist.worm

Enhanced Detections:

Internet Worm (3)
  E-mail (1)
    W32/Mytob.bk@MM
  mIRC Worm (1)
    New IRC
  VbScript (1)
    VBS/Generic@MM
Program (4)
  Generic (1)
    ServU-Daemon.gen
  Registry (2)
    Reg-DetectNames4
    Reg-DetectKeys6
  Win32 (1)
    AdwareDropper-H
Trojan (56)
   (6)
    Generic BackDoor.d
    Generic component
    Generic.ca
    Generic PWS.u
    Generic BackDoor.bb
    Malformed Archive
  Application extension (2)
    Puper.dll
    Spyre.dll
  Downloader (5)
    W32/Bagle.cj
    Downloader-ABU
    Downloader-ACR
    PWS-LegMir.dldr
    Downloader-ACV
  Dropper (2)
    PWS-Legmir.dr
    MultiDropper-BN
  Dropper Worm (1)
    W32/Sdbot.worm.dr
  Exploit (2)
    VBS/Psyme
    Exploit-ObscuredHtml
  Generic (9)
    Generic Downloader.gen.bd
    Generic Downloader.gen.be
    Oleloa.gen
    PWS-Banker.gen.ba
    PWS-Banker.gen.bb
    PWS-Banker.gen.l
    PWS-Banker.gen.i
    PWS-Banker.gen.h
    ServU-Daemon.gen.ba
  Heuristic (1)
    New Malware.j
  Internet Relay Chat (2)
    IRC/Flood.c
    IRC/Flood.eq
  Password (2)
    PWS-LegMir
    PWS-LDPinch
  Password Stealer (1)
    PWS-Banker.ad
  Remote Access (10)
    IRC/Flood.c.dr
    BackDoor-ARR
    BackDoor-AWQ.b
    BackDoor-ALC
    BackDoor-AQC
    BackDoor-CKB.sys
    BackDoor-CUQ
    BackDoor-CVK
    Generic BackDoor.k
    BackDoor-CKB
  Script (1)
    JS/Wonka
  Spam (1)
    Spam-Maxy
  Win32 (11)
    HackerDefender
    Generic Delphi
    Generic BackDoor.be
    Generic BackDoor.bc
    Generic BackDoor.ba
    Generic Downloader.y
    Generic PWS.o
    Generic Dropper.i
    Generic Downloader.ab
    Generic VB.c
    Generic PWS.r
Virus (91)
  Damaged (1)
    W32/Netsky.dam
  Damaged Worm (1)
    W32/Sdbot.worm.dam
  Downloader (4)
    W32/Bagle.ci
    W32/Bagle.ck
    W32/Bagle.cl
    W32/Bagle.cn
  Dropper Email (1)
    W32/Mytob.dr@MM
  E-mail (9)
    W32/Mytob.be@MM
    W32/Mytob.bi@MM
    W32/Mytob.bj@MM
    W32/Mytob.bo@MM
    W32/Mytob.bl@MM
    W32/Mytob.br@MM
    W32/Mytob.bf@MM
    W32/Mytob.cg@MM
    W32/Mytob.ch@MM
  Email (47)
    W32/Mytob.b@MM
    W32/Mytob.a@MM
    W32/Mytob.ev@MM
    W32/Mytob.at@MM
    W32/Mytob.av@MM
    W32/Mytob.au@MM
    W32/Mytob.fy@MM
    W32/Mytob.fw@MM
    W32/Mytob.fx@MM
    W32/Mytob.gg@MM
    W32/Mytob.gl@MM
    W32/Mytob.gj@MM
    W32/Mytob.gi@MM
    W32/Mytob.bg@MM
    W32/Mytob.bx@MM
    W32/Mytob.cd@MM
    W32/Mytob.gd@MM
    W32/Mytob.gc@MM
    W32/Mytob.gb@MM
    W32/Mytob.ga@MM
    W32/Mytob.gf@MM
    W32/Mytob.gp@MM
    W32/Mytob.gq@MM
    W32/Mytob.bn@MM
    W32/Mytob.dh@MM
    W32/Mytob.r@MM
    W32/Mytob.e@MM
    W32/Mytob.c@MM
    W32/Mytob.g@MM
    W32/Mytob.bt@MM
    W32/Mytob.bp@MM
    W32/Mytob.ct@MM
    W32/Mytob.cf@MM
    W32/Mytob.dd@MM
    W32/Mytob.ca@MM
    W32/Mytob.n@MM
    W32/Mytob.f@MM
    W32/Mytob.d@MM
    W32/Mytob.cs@MM
    W32/Mytob.dk@MM
    W32/Mytob.dz@MM
    W32/Mytob.eb@MM
    W32/Mytob.ds@MM
    W32/Mytob.ea@MM
    W32/Mytob.ej@MM
    W32/Mytob.es@MM
    W32/Mytob.eq@MM
  Email Generic (1)
    W32/Mytob.gen@MM
  Generic (1)
    W32/Bagle.gen
  Generic Worm (11)
    W32/Opanki.worm.gen
    W32/Sdbot.worm.gen.n
    W32/Sdbot.worm.gen.h
    W32/Sdbot.worm.gen.bh
    W32/Sdbot.worm.gen.bj
    W32/Sdbot.worm.gen.y
    W32/Sdbot.worm.gen.z
    W32/Sdbot.worm.gen.ac
    W32/Sdbot.worm.gen.t
    W32/Sdbot.worm.gen.q
    W32/Bobax.worm.gen
  Internet Worm (1)
    W32/Sdbot.worm!MS05-039
  Script (2)
    VBS/Generic
    BAT/KillAV
  Win32 (9)
    W32/Bagle.cw
    W32/Bagle.cu
    W32/Bagle.cr
    W32/Bagle.co
    W32/Bagle.cm
    W32/Bagle.cx
    W32/Bagle.cv
    W32/Bagle.cs
    Generic BackDoor.bf
  Worm (3)
    W32/Mytob.worm!im
    W32/Aflet.worm
    W32/Opanki.worm