Content

DAT Readme

Download the latest anti virus definitions for McAfee® VirusScan®. Ensure your McAfee® product contains the most up-to-date detection and prevention.
http://www.mcafee.com/apps/downloads/security_updates/dat.asp

DAT Version 4625
DAT Release Date 11/10/2005
Threats Detected 157676
New Detections 16
Enhanced Detections 203

Enhanced detections are those that have been modified for this release. Detections are enhanced to cover new variants, optimize performance, and correct incorrect identifications.

Noteworthy threats are those that had an Avert risk assessment of Low-Profiled, Medium, Medium-On-Watch, High, or High-Outbreak at the time of DAT release.

Noteworthy Threats:

Name Corporate Risk Assessment Home Risk Assessment
There are no noteworthy threats in this release

New Detections:

Program (5)
  Registry (4)
    Magiccontrol
    Fizzlebar
    Fastvideoplayer
    Qidion
  Spyware (1)
    Spyware-Skin
Trojan (8)
  - (1)
    Exploit-MS05-053
  Downloader (1)
    Downloader-ARD
  Dropper (1)
    Downloader-ARC.dr
  Exploit (1)
    Exploit-Elume
  Flooder (1)
    FDoS-MsN-Ocira
  Source code (2)
    Exploit-DcomRpc.src
    Exploit-GenericShell.src
  Win32 (1)
    Generic AdClicker.k
Virus (2)
  Parasitic (2)
    W32/HLLP.Zori.b
    W32/HLLP.Zori.a

Enhanced Detections:

Internet Worm (1)
  P2P Worm (1)
    W32/Spybot.worm.lk
Program (51)
  - (1)
    XCP
  Adware (25)
    Adware-TVMedia
    Adware-180SA
    Adware-Look2Me
    Adware-HotBar
    Adware-Websearch
    Adware-CWS
    Adware-BB
    Adware-SearchAid
    Adware-VirtualGirl
    Adware-Apropos
    Adware-eUniverse
    Adware-UCMore
    Adware-NaviPromo
    Adware-Quickbar
    Adware-KeenValue
    Adware-CashSaver
    Adware-Adlogix
    Adware-CasClient
    Adware-ShopprReports
    Adware-ISearch
    Adware-Ilookup
    Adware-Alexa
    Adware-ClickSpring
    Adware-abetterintrnt
    Adware-Qoolaid
  Application extension (1)
    Adware-4Arcade.dll
  Downloader (2)
    Adware-Ezula.dldr
    Adware-Websearch.dldr
  Dropper (16)
    Adware-eUniverse.dr
    Adware-BroadCastPC.dr
    Adware-IEToolBar.dr
    Adware-SafeSurf.dr
    Adware-BkdSpace.dr
    Adware-HotBar.dr
    Adware-WinAd.dr
    KeyLog-SFY.dr
    Adware-SurfSideKick.dr
    Adware-StatBlaster.dr
    Adware-Beginto.dr
    Adware-180SA.dr
    Adware-CasClient.dr
    Adware-Ezula.dr
    Adware-CommonName.dr
    Adware-Adroar.dr
  Generic (1)
    Dialer-RAS.v.gen
  Registry (1)
    InternetOptimizer
  Remote Access (1)
    ServU-Daemon
  Tool (2)
    Tool-Xscan
    Tool-DeepFreeze
  Win32 (1)
    Generic Adware.a
Trojan (127)
   (7)
    Generic BackDoor.d
    Generic component
    Generic BackDoor.bb
    Generic.dc
    Generic.cb
    ServU.txt
    Generic!pwdrar
  - (3)
    BackDoor-AOU
    IRC/Flood.mirc
    AdClicker-AJ
  Application extension (1)
    BackDoor-BAC.dll
  Configurator (1)
    BackDoor-CEP.cfg
  Denial Of Svc (2)
    IRC/Flood.br
    IRC/Flood
  Downloader (6)
    Downloader-IQ
    PWS-Banker.dldr
    StartPage-FQ.dldr
    Downloader-AGW
    Downloader-AAA
    Downloader-PZ
  Dropper (16)
    IRC/Flood.dt.dr
    PWS-Banker.dr.f
    PWS-LDPinch.dr
    Generic BackDoor.dr
    IRC/Flood.bc.dr
    IRC/Flood.cl.dr
    IRC/Flood.ak.dr
    BackDoor-AJX.dr
    IRC/Flood.bi.dr
    IRC/Flood.bl.dr
    MultiDropper-IM
    PWS-Banker.dr.c
    PWS-Banker.dr.a
    PWS-Banker.dr.d
    PWS-Goldun.dr
    W32/Sdbot.dr
  Dropper Generic (1)
    W32/Sdbot.dr.gen
  Exploit (1)
    Exploit-ObscuredHtml
  Generic (8)
    Generic Downloader.gen.bd
    Generic Downloader.gen.be
    BackDoor-BAC.gen
    PWS-Banker.gen.ba
    PWS-Banker.gen.bb
    PWS-Banker.gen.p
    PWS-Banker.gen.i
    HackerDefender.gen
  Heuristic (1)
    New Malware.j
  Internet Relay Chat (11)
    IRC/Flood.dh
    IRC/Flood.cl.hidewin
    IRC/Flood.c
    IRC/Flood.dt
    IRC/Flood.dt.hidewin
    IRC/Flood.cl
    IRC-Contact
    IRC/Flood.Winhelp
    IRC/Flood.bc.hidewin
    IRC/Flood.de
    IRC/Flood.eq
  mIRC client (3)
    IRC/Flood.ak.mirc
    IRC/Flood.bc.mirc
    IRC/Flood.bl.mirc
  Password (2)
    PWS-LDPinch
    PWS-WebMoney.gen
  Password Stealer (4)
    Generic PWS.e
    Generic PWS.b
    PWS-QQRob
    PWS-Jginko
  Proxy (1)
    Proxy-Agent.u
  Remote Access (21)
    IRC/Flood.c.dr
    BackDoor-AWQ.b
    BackDoor-BAC
    BackDoor-CCT
    BackDoor-AOZ
    BackDoor-AZZ
    BackDoor-CCH
    BackDoor-CUR
    BackDoor-CNW
    BackDoor-CSN
    BackDoor-CDC
    BackDoor-CPY
    BackDoor-IQ
    BackDoor-CHP
    BackDoor-CHT
    BackDoor-BCB!chm
    BackDoor-CMI
    BackDoor-BDI
    BackDoor-BDH
    BackDoor-CKB
    BackDoor-CEP
  Server (1)
    BackDoor-CUR.svr
  StartPage (2)
    StartPage-HS
    StartPage-FQ
  Win32 (35)
    Generic VB
    Generic BackDoor.b
    HackerDefender
    Generic BackDoor.h
    Generic BackDoor.f
    Generic Delphi
    Generic Downloader.c
    Del-456
    BackDoor-FB.svr.gen
    HackerDefender.sys
    Generic Downloader.n
    Generic BackDoor.q
    Generic Downloader.ak
    Generic MultiDropper.k
    Generic Dropper.l
    Generic Downloader.am
    Generic Downloader.p
    Generic Dropper.m
    Generic Downloader.bb
    Generic BackDoor.be
    Generic BackDoor.bd
    Generic BackDoor.bc
    Generic BackDoor.ba
    Generic Proxy.d
    Generic Downloader.k
    Generic Dropper.n
    Generic Downloader.y
    Generic Downloader.aa
    Generic PWS.o
    Generic Downloader.ab
    Generic.b
    AdClicker-CZ
    Generic Dropper.d
    Generic Downloader.g
    Generic.da
Virus (24)
  Damaged (1)
    W32/Netsky.dam
  Damaged Worm (1)
    W32/Spybot.worm.dam
  Generic Worm (15)
    W32/Spybot.worm.gen.m
    W32/Spybot.worm.gen.e
    W32/Spybot.worm.gen.a
    W32/Spybot.worm.gen.h
    W32/Sdbot.worm.gen.d
    W32/Sdbot.worm.gen.l
    W32/Sdbot.worm.gen.j
    W32/Sdbot.worm.gen.h
    W32/Sdbot.worm.gen.bl
    W32/Spybot.worm.gen.j
    W32/Sdbot.worm.gen.ag
    W32/Sdbot.worm.gen.aw
    W32/Gaobot.worm.gen.t
    W32/Sdbot.worm.gen.bd
    W32/Sdbot.worm.gen.bj
  Heuristic (1)
    New Malware.b
  Remote Access (1)
    BackDoor-AJX
  VbScript (1)
    New Script
  Win32 (3)
    Generic BackDoor.bf
    W32/Generic.j
    W32/Generic.Delphi.c
  Worm (1)
    W32/Sdbot.worm!ftp