Content

DAT Readme

Download the latest anti virus definitions for McAfee® VirusScan®. Ensure your McAfee® product contains the most up-to-date detection and prevention.
http://www.mcafee.com/apps/downloads/security_updates/dat.asp

DAT Version 4689
DAT Release Date 02/03/2006
Threats Detected 174877
New Detections 18
Enhanced Detections 190

Enhanced detections are those that have been modified for this release. Detections are enhanced to cover new variants, optimize performance, and correct incorrect identifications.

Noteworthy threats are those that had an Avert risk assessment of Low-Profiled, Medium, Medium-On-Watch, High, or High-Outbreak at the time of DAT release.

Noteworthy Threats:

Name Corporate Risk Assessment Home Risk Assessment
There are no noteworthy threats in this release

New Detections:

Program (3)
  Adware (1)
    Adware-AdSheriff
  Downloader (1)
    Adware-Interkey.dldr
  Registry (1)
    NDotNet
Trojan (14)
   (8)
    Painter
    SymbOS/Multidropper.ar!sis
    SymbOS/Multidropper.aq!sis
    SymbOS/Multidropper.ap!sis
    SymbOS/Multidropper.ao!sis
    SymbOS/Multidropper.an!sis
    SymbOS/Multidropper.am!sis
    SymbOS/Multidropper.al!sis
  Downloader (3)
    Downloader-ATU
    Downloader-ATS
    Downloader-ATR
  Exploit (1)
    JS/Exploit-DragDrop.d
  Generic (1)
    Spam-Mailbot.gen
  Password Stealer (1)
    PWS-Banker.az
Virus (1)
  Email Generic (1)
    JS/Feebs.gen.d@MM

Enhanced Detections:

Program (12)
  Adware (4)
    Adware-Huntbar
    Adware-HotBar
    Adware-Virtumondo
    Adware-NDotNet
  Damaged (1)
    Adware-NDotNet.dam
  Dropper (2)
    Adware-NDotNet.dr
    Adware-HotBar.dr
  Generic (1)
    Dialer-RAS.ax.gen
  Password (1)
    Winspy
  Registry (2)
    ZapChast
    Qoolaid
  Spyware (1)
    Spyware-SpectorPro
Trojan (102)
   (28)
    SymbOS/Multidropper.a!sis
    SymbOS/Multidropper.e!sis
    SymbOS/Multidropper.c!sis
    SymbOS/Multidropper.g!sis
    SymbOS/Multidropper.b!sis
    SymbOS/Multidropper.f!sis
    SymbOS/Multidropper.d!sis
    SymbOS/Multidropper.k!sis
    SymbOS/Multidropper.j!sis
    SymbOS/Multidropper.i!sis
    SymbOS/Multidropper.h!sis
    Generic BackDoor.bb
    SymbOS/Multidropper.l!sis
    SymbOS/Multidropper.q!sis
    SymbOS/Multidropper.r!sis
    Generic.ce
    Generic.cd
    SymbOS/Multidropper.ak!sis
    SymbOS/Multidropper.ai!sis
    SymbOS/Multidropper.aj!sis
    SymbOS/Multidropper.ah!sis
    SymbOS/Multidropper.af!sis
    SymbOS/Multidropper.ad!sis
    SymbOS/Multidropper.x!sis
    SymbOS/Multidropper.ag!sis
    SymbOS/Multidropper.ae!sis
    SymbOS/Multidropper.ac!sis
    SymbOS/Multidropper.u!sis
  - (3)
    AdClicker-AJ
    Generic Malware.a!zip
    Generic Malware.a
  Adware (1)
    AdClicker-DI
  Application extension (4)
    PWS-Legmir.dll
    BackDoor-BAC.dll
    PWS-Goldun.dll
    PWS-QQGame.dll
  Configuration settings (1)
    HackerDefender.ini
  Configurator (1)
    Generic PWS.b.cfg
  Downloader (4)
    Downloader-AAT
    PWS-Banker.dldr
    Downloader-ASH
    PWS-LegMir.dldr
  Dropper (6)
    PWS-Legmir.dr
    BackDoor-AVW.dr
    FURootkit.dr
    PWS-Kadun.dr
    Downloader-ATG.dr
    PWS-Goldun.dr
  Email Generic (1)
    W32/Feebs.gen@MM
  Exploit (2)
    Exploit-QtPICT!dam
    Exploit-QtPICT
  Generic (8)
    Generic Downloader.gen.bd
    Generic Downloader.gen.be
    PWS-Banker.gen.q
    PWS-QQPass.gen
    PWS-Banker.gen.ba
    PWS-Banker.gen.bb
    PWS-Banker.gen.p
    PWS-Banker.gen.i
  Heuristic (2)
    New Malware.n
    New Malware.af
  Password (3)
    PWS-LegMir
    PWS-QQPass
    PWS-LDPinch
  Password Stealer (4)
    Generic PWS.b
    Generic PWS.g
    PWS-Goldun.sys
    PWS-Lineage
  ProcKill (1)
    ProcKill-AK
  Proxy (2)
    Proxy-Agent.b
    Proxy-Piky
  Remote Access (6)
    BackDoor-AMQ
    BackDoor-AVW
    BackDoor-CUU
    Generic BackDoor.l
    Backdoor-CXM
    BackDoor-BAC.sys
  Script (2)
    Generic component
    JS/Wonka
  Spam (1)
    Spam-Maxy
  StartPage (1)
    StartPage-FY
  Win32 (21)
    Generic Downloader.b
    Generic Delphi
    Generic Downloader.c
    Generic VB.b
    Generic Downloader
    Puper
    Generic Downloader.s
    Generic BackDoor.bc
    Generic Downloader.k
    Generic Downloader.u
    Generic Downloader.q
    Generic PWS.o
    APSTrojan.tz
    Generic Downloader.ab
    W32/Feebs!rootkit
    AdClicker-DW
    Generic Dropper.w
    Generic Proxy.e
    Generic Downloader.g
    Generic Downloader.f
    DDoS-Boxed
Virus (76)
   (14)
    VICE.3b.Firec
    VICE.4b.Firec
    VICE.2b.Firec
    VICE.630
    VICE.629dr
    VICE.629
    VICE.4b.Icem
    VICE.3b.Icem
    VICE.2b.Icem
    VICE.4b.Iceb
    VICE.3b.Iceb
    VICE.2b.Iceb
    VICE.2b.IvKill
    VICE.xx
  Companion (1)
    W32/Pardis.cmp
  Damaged (1)
    VICE.Iceb.dam
  Damaged Worm (2)
    W32/Gaobot.worm.dam
    W32/Sdbot.worm.dam
  E-mail (1)
    W32/Bagle.do@MM
  E-mail worm (1)
    W32/Bagle.dp@MM
  Email Generic (1)
    W32/Holar.gen@MM
  Generic (4)
    W32/Arboc.gen
    W32/Spacemark.gen
    W32/IRCbot.gen.a
    W32/Recur.gen
  Generic Worm (27)
    W32/Sdbot.worm.gen.w
    W32/Hati.worm.gen
    W32/Renol.worm.gen
    W32/Fankr.worm.gen
    W32/Flopcop.worm.gen
    W32/Critex.worm.gen
    W32/Adawar.worm.gen
    W32/Gaobot.worm.gen.l
    W32/Sdbot.worm.gen.bg
    W32/Hesi.worm.gen
    W32/Sdbot.worm.gen.l
    W32/Sdbot.worm.gen.h
    W32/Sdbot.worm.gen.m
    W32/Sdbot.worm.gen.bl
    W32/Sdbot.worm.gen.bk
    W32/Gaobot.worm.gen.bf
    W32/Sdbot.worm.gen.bz
    W32/Sdbot.worm.gen.bp
    W32/Sdbot.worm.gen.bq
    W32/Sdbot.worm.gen.bh
    W32/Sdbot.worm.gen.bi
    W32/Sdbot.worm.gen.by
    W32/Gaobot.worm.gen.bh
    W32/Gaobot.worm.gen.by
    W32/Sdbot.worm.gen.y
    W32/Sdbot.worm.gen.ac
    W32/Winfig.worm.gen
  Internet Relay Chat (1)
    W32/VB!irc
  Internet Worm (1)
    W32/Zezer.worm.gen
  multipartite (7)
    Hare.mp.7786
    Hare.mp.7610b
    Hare.mp.7786x
    Hare.mp.7750
    Hare.mp.7610a
    Hare.mp.7750b
    Hare.mp.7750a
  Overwriting (1)
    W32/Kotira.ow
  Script (1)
    Bat/Kads
  Win32 (3)
    W32/Sakao
    W32/Caes
    W32/Generic.Delphi.a
  Worm (10)
    W32/Stuplo.worm
    W32/Logex.worm
    W32/Dhaka.worm
    W32/Marjor.worm
    W32/Seben.worm
    W32/Frekaz.worm
    W32/Heycheck.worm
    W32/Dedler.worm
    W32/Rizon.worm
    W32/Hobot.worm