Content

DAT Readme

Download the latest anti virus definitions for McAfee® VirusScan®. Ensure your McAfee® product contains the most up-to-date detection and prevention.
http://www.mcafee.com/apps/downloads/security_updates/dat.asp

DAT Version 4620
DAT Release Date 11/04/2005
Threats Detected 155852
New Detections 5
Enhanced Detections 177

Enhanced detections are those that have been modified for this release. Detections are enhanced to cover new variants, optimize performance, and correct incorrect identifications.

Noteworthy threats are those that had an Avert risk assessment of Low-Profiled, Medium, Medium-On-Watch, High, or High-Outbreak at the time of DAT release.

Noteworthy Threats:

Name Corporate Risk Assessment Home Risk Assessment
There are no noteworthy threats in this release

New Detections:

Trojan (5)
   (1)
    Generic.dc
  Password Stealer (2)
    PWS-Legmir.sys
    PWS-JD
  Win32 (2)
    DNSChanger.c
    DDoS-Riados

Enhanced Detections:

Internet Worm (5)
  E-mail worm (5)
    W32/Netsky.b@MM
    W32/Netsky.t@MM
    W32/Netsky.s@MM
    W32/Netsky.c@MM
    W32/Netsky.a@MM
Malware (1)
  Exploit (1)
    Exploit-CodeBase
Program (21)
   (1)
    Generic PUP.a
  Adware (12)
    Adware-TVMedia
    Adware-DFC
    Adware-TopMoxie
    Adware-BrowserAid
    Adware-Cydoor
    Adware-Look2Me
    Adware-HelpExpress
    Adware-ISTBar
    Adware-WinAd
    Adware-CasClient
    Adware-Hanuman
    Adware-IntraSpy
  Dialer (1)
    Dialer-Generic.e
  Downloader (1)
    Adware-Lop.dldr
  Dropper (2)
    Adware-Lop.dr
    Adware-IMIServ.dr
  PornDialer (1)
    Dialer-Generic
  Process (1)
    ProcKill-T
  Remote Access (1)
    iSpyNOW
  Tool (1)
    HideRun
Trojan (43)
   (3)
    Generic component
    Generic BackDoor.bb
    Malformed Archive
  Application extension (1)
    IRC/Flood.dll
  Downloader (2)
    W32/Bagle.dn
    PWS-LegMir.dldr
  Dropper (3)
    PWS-Legmir.dr
    BackDoor-CKB.dr
    BackDoor-BAC.dr
  Exploit (1)
    JS/Exploit-HelpXSite
  Generic (6)
    Exploit-CodeBase.gen
    Generic Downloader.gen.bd
    Generic Downloader.gen.be
    PWS-Banker.gen.ba
    PWS-Banker.gen.bb
    PWS-Banker.gen.i
  Heuristic (2)
    New Malware.j
    New Malware.h
  Internet Relay Chat (1)
    IRC/Flood.c
  Password (2)
    PWS-LegMir
    PWS-Banker.d
  Password Stealer (2)
    Generic PWS.g
    PWS-Lineage
  Proxy (1)
    Proxy-Agent.c
  Remote Access (6)
    BackDoor-AWQ.b
    BackDoor-ALC
    Backdoor-EE
    BackDoor-CPB
    Generic BackDoor.k
    BackDoor-CKB
  Win32 (13)
    Generic BackDoor.b
    Generic Downloader.c
    Generic Downloader.ba
    Generic VB.b
    Generic Downloader.s
    Generic BackDoor.ba
    Generic PWS.o
    Generic Downloader.ab
    Druogna
    QLowZones-2
    AdClicker-BA
    Generic Downloader.g
    DDoS-Boxed
Virus (107)
  Application extension (1)
    W32/Monikey.dll
  Damaged (3)
    VBS/Redlof.dam
    W32/Mytob.dam
    W32/Netsky.dam
  Damaged Worm (2)
    W32/Gaobot.worm.dam
    W32/Sdbot.worm.dam
  E-mail (4)
    W32/Netsky.g@MM
    W32/Netsky.l@MM
    W32/Netsky.k@MM
    W32/Mytob.gr@MM
  E-mail worm (5)
    W32/Netsky.x@MM
    W32/Netsky.e@MM
    W32/Netsky.f@MM
    W32/Netsky.d@MM
    W32/Netsky.m@MM
  Email (64)
    VBS/Redlof.a@M
    W32/Mytob.ao@MM
    W32/Mytob.al@MM
    W32/Mytob.ew@MM
    W32/Mytob.fa@MM
    W32/Mytob.ft@MM
    W32/Mytob.fs@MM
    W32/Mytob.aw@MM
    W32/Mytob.fr@MM
    W32/Mytob.ba@MM
    W32/Mytob.bc@MM
    W32/Mytob.bb@MM
    W32/Mytob.bd@MM
    W32/Mytob.fu@MM
    W32/Mytob.fw@MM
    W32/Mytob.fv@MM
    W32/Mytob.ge@MM
    W32/Mytob.go@MM
    W32/Mytob.bu@MM
    W32/Mytob.bq@MM
    W32/Mytob.by@MM
    W32/Mytob.cq@MM
    W32/Mytob.ck@MM
    W32/Mytob.fz@MM
    W32/Mytob.gf@MM
    W32/Mytob.gn@MM
    W32/Mytob.gp@MM
    W32/Mytob.cw@MM
    W32/Mytob.p@MM
    W32/Mytob.i@MM
    W32/Mytob.k@MM
    W32/Mytob.r@MM
    W32/Mytob.gm@MM
    W32/Mytob.gs@MM
    W32/Mytob.m@MM
    W32/Mytob.bs@MM
    W32/Mytob.de@MM
    W32/Mytob.cb@MM
    W32/Mytob.do@MM
    W32/Mytob.dl@MM
    W32/Mytob.h@MM
    W32/Mytob.j@MM
    W32/Mytob.l@MM
    W32/Mytob.o@MM
    W32/Mytob.t@MM
    W32/Mytob.x@MM
    W32/Mytob.y@MM
    W32/Mytob.cr@MM
    W32/Mytob.cl@MM
    W32/Mytob.ci@MM
    W32/Mytob.cx@MM
    W32/Mytob.cy@MM
    W32/Mytob.dn@MM
    W32/Mytob.ei@MM
    W32/Mytob.aa@MM
    W32/Mytob.ad@MM
    W32/Mytob.dw@MM
    W32/Mytob.dv@MM
    W32/Mytob.du@MM
    W32/Mytob.aj@MM
    W32/Mytob.z@MM
    W32/Mytob.eg@MM
    W32/Mytob.em@MM
    W32/Mytob.en@MM
  Email Generic (2)
    W32/Netsky.gen@MM
    W32/Mytob.gen@MM
  Generic (1)
    W32/Monikey.gen
  Generic Worm (20)
    W32/Gaobot.worm.gen.e
    W32/Spybot.worm.gen.bx
    W32/Sdbot.worm.gen.br
    W32/Sdbot.worm.gen.bg
    W32/Opanki.worm.gen
    W32/Spybot.worm.gen.bj
    W32/Sdbot.worm.gen.l
    W32/Sdbot.worm.gen.bl
    W32/Sdbot.worm.gen.bs
    W32/Sdbot.worm.gen.bz
    W32/Sdbot.worm.gen.bp
    W32/Sdbot.worm.gen.bq
    W32/Sdbot.worm.gen.aw
    W32/Sdbot.worm.gen.bh
    W32/Sdbot.worm.gen.bi
    W32/Sdbot.worm.gen.bj
    W32/Gaobot.worm.gen.by
    W32/Sdbot.worm.gen.bx
    W32/Sdbot.worm.gen.ac
    W32/Gaobot.worm.gen.s
  Heuristic (1)
    New Script.ext
  Intended (1)
    VBS/Redlof.intd
  Script (1)
    VBS/Stemy
  VbScript (1)
    New Script
  Win32 (1)
    W32/Generic.m