Content

DAT Readme

Download the latest anti virus definitions for McAfee® VirusScan®. Ensure your McAfee® product contains the most up-to-date detection and prevention.
http://www.mcafee.com/apps/downloads/security_updates/dat.asp

DAT Version 4676
DAT Release Date 01/17/2006
Threats Detected 171642
New Detections 9
Enhanced Detections 224

Enhanced detections are those that have been modified for this release. Detections are enhanced to cover new variants, optimize performance, and correct incorrect identifications.

Noteworthy threats are those that had an Avert risk assessment of Low-Profiled, Medium, Medium-On-Watch, High, or High-Outbreak at the time of DAT release.

Noteworthy Threats:

Name Corporate Risk Assessment Home Risk Assessment
There are no noteworthy threats in this release

New Detections:

Program (2)
  Adware (1)
    Adware-Splashspot
  Win32 (1)
    PortScan-Advanced
Trojan (7)
  Dropper (1)
    Spam-DComServ.dr
  Exploit (1)
    Exploit-QtPICT!dam
  Flooder (2)
    IRC/FDoS-Alkoholi
    IRC/FDoS-WWE
  Password Stealer (2)
    PWS-JH
    PWS-Banker.ay
  Win32 (1)
    Generic MultiDropper.m

Enhanced Detections:

Internet Worm (1)
  E-mail (1)
    W32/Mytob.bk@MM
Program (35)
  - (1)
    RemAdm-PSKill
  Adware (22)
    Adware-180SA
    Adware-SAHAgent
    Adware-SafeSurf
    Adware-CWS
    Adware-PurityScan
    Adware-Gain
    Adware-SearchAid
    Adware-ISTBar
    Adware-SpySheriff
    Adware-Mirar
    Adware-MyWebSearch
    Adware-DollarRevenue
    Adware-PartyPoker
    Adware-AdultBox
    Adware-DropSpam
    Adware-Zquest
    Adware-Pribi
    Adware-DCToolbar
    Adware-TopRebates
    Adware-Beginto
    Adware-Roings
    Adware-FFinder
  Dialer (2)
    Dialer-Generic
    Dialer-Generic.f
  Dropper (3)
    Adware-BkdSpace.dr
    Generic Adware.dr
    Spyware-WebHancer.dr
  Registry (2)
    SaveNow / WhenU
    Fastvideoplayer
  Spam (1)
    Adware-Ezula
  Spyware (1)
    Keylog-Ghost
  Win32 (3)
    CasOnline
    RemAdm-TightVNC
    Generic HTool.a
Trojan (69)
   (6)
    Generic BackDoor.d
    Generic component
    Generic BackDoor.bb
    Generic.dc
    Generic.g
    Spy-Lydra
  - (2)
    AdClicker-AJ
    Spam-Mailbot
  Adware (1)
    Raze
  Application extension (3)
    PWS-Legmir.dll
    Puper.dll
    PWS-Lineage.dll
  Configurator (2)
    Generic PWS.b.cfg
    BackDoor-CEP.cfg
  Downloader (4)
    PWS-Lineage.dldr
    PWS-Banker.dldr
    Downloader-ABU
    Downloader-AQW
  Dropper (4)
    BackDoor-CKB.dr
    BackDoor-CEP.dr
    PWS-Banker.dr.a
    BackDoor-ASB.dr
  Dropper Generic (1)
    PWS-Banker.gen.dr
  Exploit (1)
    Exploit-QtPICT
  Generic (8)
    Generic Downloader.gen.be
    BackDoor-ASB.gen
    PWS-Banker.gen.bb
    PWS-Banker.gen.i
    PWS-Banker.gen.h
    PWS-Banker.gen.g
    PWS-Banker.gen.t
    PWS-Banker.gen.v
  Heuristic (3)
    New Malware.u
    New Malware.j
    New Malware.w
  Keylogger (3)
    Keylog-Fearless
    Keylog-BanBra
    Keylog-Logit
  Malware Tool (2)
    Spam-Mailbot!RootKit
    Spam-DComServ
  Password (1)
    PWS-Banker.d
  Password Stealer (8)
    Generic PWS.b
    PWS-Gina
    PWS-QQRob
    PWS-JA
    PWS-JB
    PWS-Steam
    PWS-Lineage
    PWS-Goldun
  Proxy (2)
    Proxy-Agent.s
    Proxy-Agent.a
  Remote Access (5)
    BackDoor-ASB
    BackDoor-AWQ.b
    BackDoor-AZZ
    Generic BackDoor.m
    BackDoor-CEP
  Script (2)
    VBS/Winrun
    JS/Wonka
  Win32 (11)
    Generic Packed.d
    Puper
    Generic BackDoor.be
    Generic PWS.o
    Generic QLowZones.a
    Generic BackDoor.u
    Generic Downloader.ab
    Generic Downloader.g
    Generic MultiDropper.b
    DDoS-Boxed
    AdClicker-AO
Virus (119)
  Application extension (1)
    W32/Loosky.dll
  Application extension Worm (1)
    W32/Banwor.worm.dll
  Damaged (1)
    W32/Mytob.dam!zip
  Damaged Worm (1)
    W32/Sdbot.worm.dam
  Dropper (1)
    W32/Loosky.dr
  Dropper Email (1)
    W32/Mytob.dr@MM
  E-mail (9)
    W32/Mytob.be@MM
    W32/Mytob.bi@MM
    W32/Mytob.bj@MM
    W32/Mytob.bo@MM
    W32/Mytob.bl@MM
    W32/Mytob.br@MM
    W32/Mytob.bf@MM
    W32/Mytob.cg@MM
    W32/Mytob.ch@MM
  Email (70)
    W32/Mytob.a@MM!zip
    W32/Mytob.b@MM
    W32/Mytob.a@MM
    W32/Mytob.b@MM!zip
    W32/Mytob.ev@MM
    W32/Mytob.at@MM
    W32/Mytob.av@MM
    W32/Mytob.au@MM
    W32/Mytob.fy@MM
    W32/Mytob.fw@MM
    W32/Mytob.fx@MM
    W32/Mytob.gg@MM
    W32/Mytob.gl@MM
    W32/Mytob.gj@MM
    W32/Mytob.gi@MM
    W32/Mytob.bg@MM
    W32/Mytob.bn@MM!zip
    W32/Mytob.bl@MM!zip
    W32/Mytob.bj@MM!zip
    W32/Mytob.bp@MM!zip
    W32/Mytob.bx@MM
    W32/Mytob.cd@MM
    W32/Mytob.gd@MM
    W32/Mytob.gc@MM
    W32/Mytob.gb@MM
    W32/Mytob.ga@MM
    W32/Mytob.gf@MM
    W32/Mytob.gp@MM
    W32/Mytob.gq@MM
    W32/Mytob.bn@MM
    W32/Mytob.bo@MM!zip
    W32/Mytob.bm@MM!zip
    W32/Mytob.bk@MM!zip
    W32/Mytob.dh@MM
    W32/Mytob.r@MM
    W32/Mytob.e@MM
    W32/Mytob.c@MM
    W32/Mytob.gt@MM
    W32/Mytob.g@MM
    W32/Mytob.bt@MM
    W32/Mytob.bp@MM
    W32/Mytob.ct@MM
    W32/Mytob.cf@MM
    W32/Mytob.dd@MM
    W32/Mytob.ca@MM
    W32/Mytob.n@MM
    W32/Mytob.f@MM
    W32/Mytob.d@MM
    W32/Mytob.cs@MM
    W32/Mytob.dk@MM
    W32/Mytob.dz@MM
    W32/Mytob.eb@MM
    W32/Mytob.bq@MM!zip
    W32/Mytob.ds@MM
    W32/Mytob.ea@MM
    W32/Mytob.gu@MM
    W32/Mytob.gx@MM
    W32/Mytob.ej@MM
    W32/Mytob.gy@MM
    W32/Mytob.hf@MM
    W32/Mytob.gw@MM
    W32/Mytob.gz@MM
    W32/Mytob.hg@MM
    W32/Mytob.hh@MM
    W32/Mytob.hi@MM
    W32/Loosky.e@MM
    W32/Mytob.gv@MM
    W32/Mytob.he@MM
    W32/Mytob.es@MM
    W32/Mytob.eq@MM
  Email Generic (2)
    W32/Mytob.gen@MM
    W32/Loosky.gen@MM
  Generic (2)
    W32/Niya.gen
    W32/Loosky.gen
  Generic Worm (19)
    W32/Sdbot.worm.gen.as
    W32/Sdbot.worm.gen.br
    W32/Sdbot.worm.gen.bg
    W32/Sdbot.worm.gen.h
    W32/Sdbot.worm.gen.ae
    W32/Sdbot.worm.gen.bs
    W32/Sdbot.worm.gen.ai
    W32/Sdbot.worm.gen.bz
    W32/Sdbot.worm.gen.bp
    W32/Sdbot.worm.gen.ag
    W32/Sdbot.worm.gen.bq
    W32/Spybot.worm.gen.o
    W32/Sdbot.worm.gen.bh
    W32/Sdbot.worm.gen.bi
    W32/Sdbot.worm.gen.bj
    W32/Gaobot.worm.gen.bi
    W32/Gaobot.worm.gen.by
    W32/Sdbot.worm.gen.bx
    W32/Sdbot.worm.gen.t
  Intended (1)
    W32/NGVCK.intd
  Win32 (7)
    New Win32.g1
    New Win32
    Generic BackDoor.bf
    W32/Redplut
    W32/Loosky!pws
    W32/Loosky!proxy
    W32/Loosky!backdoor
  Worm (3)
    W32/Generic.worm!im
    W32/Mytob.worm!im
    W32/Banwor.worm