Content

DAT Readme

Download the latest anti virus definitions for McAfee® VirusScan®. Ensure your McAfee® product contains the most up-to-date detection and prevention.
http://www.mcafee.com/apps/downloads/security_updates/dat.asp

DAT Version 4701
DAT Release Date 02/20/2006
Threats Detected 178967
New Detections 37
Enhanced Detections 198

Enhanced detections are those that have been modified for this release. Detections are enhanced to cover new variants, optimize performance, and correct incorrect identifications.

Noteworthy threats are those that had an Avert risk assessment of Low-Profiled, Medium, Medium-On-Watch, High, or High-Outbreak at the time of DAT release.

Noteworthy Threats:

Name Corporate Risk Assessment Home Risk Assessment
OSX/Inqtana.a Low-Profiled Low-Profiled

New Detections:

Program (4)
  Dropper (2)
    Adware-PigSearch.dr
    Adware-Crackedearth.dr
  Script (1)
    Tool/fmt26
  Tool (1)
    Tool-NetworkSpy
Trojan (23)
   (2)
    QHosts-58!hosts
    Generic MSVC.g
  Downloader (1)
    Downloader-AUK
  Dropper (1)
    Downloader-EA.dr
  Malware Tool (3)
    Bat/noob.kit
    Spam-FiveSec
    Spam-Abir
  Script (15)
    Bat/sdel9
    Bat/qz161
    Bat/qd340
    Bat/klw29
    Bat/klw28
    Bat/klw27
    Bat/klw26
    Bat/klw25
    Bat/enu
    Bat/dt161
    Bat/dt160
    Bat/dt159
    Bat/dt158
    Bat/avk80
    Bat/avk79
  Win32 (1)
    QHosts-58
Virus (10)
   (1)
    BrDr.Krud
  Boot dropper (5)
    BtDr.Ramones
    BtDr.Noint
    BtDr.Hikaru
    BtDr.DiskKiller
    BtDr.DarkElf
  Damaged (1)
    Phil.2792.dam
  Dropper (1)
    Taiwan.743.dr
  multipartite (1)
    BtDr.Eightball.mp
  Worm (1)
    OSX/Inqtana.a

Enhanced Detections:

Internet Worm (2)
  - (1)
    Linux/Lupper.worm.b
  E-mail (1)
    W32/Bagle.gen@MM
Malware (1)
  Win32 (1)
    Nuke-DFM
Program (19)
  Adware (9)
    Adware-Look2Me
    Adware-BB
    Adware-Apropos
    Adware-LinkMaker
    Adware-Adwin
    Adware-CramToolbar
    Adware-Shorty
    Adware-Cometsys
    Adware-StopPop
  Dialer (2)
    Dialer-Generic.e
    Dialer-222
  Downloader (1)
    Adware-ISTbar.dldr
  Dropper (4)
    Adware-BroadCastPC.dr
    Adware-SafeSurf.dr
    Adware-Virtumundo.dr
    Adware-abetterintrnt.dr
  Joke (1)
    Joke-Brickwin
  Malware Tool (1)
    VTool/who
  Win32 (1)
    Winfixer
Trojan (102)
   (6)
    Generic BackDoor.d
    QHosts-40!hosts
    Generic BackDoor.bb
    Generic.ce
    Generic.cd
    QHosts-18!hosts
  - (2)
    AdClicker-AJ
    Generic Malware.a!zip
  Application extension (2)
    PWS-Legmir.dll
    Spy-Tofger.dll
  Configurator (1)
    BackDoor-CEP.cfg
  Downloader (12)
    Downloader-EV
    Downloader-EA
    Downloader-WS
    Downloader-RU
    Downloader-VC
    Downloader-ABO
    Downloader-XC
    W32/Bagle.dl
    W32/Bagle.dn
    W32/Bagle.dm
    Downloader-ASH
    Downloader-LE
  Downloader Generic (1)
    W32/Bagle.dldr
  Dropper (8)
    MultiDropper-IY
    BackDoor-AJQ.dr
    BackDoor-BCB.dr
    BackDoor-AVW.dr
    BackDoor-CEP.dr
    MultiDropper-OR
    BackDoor-RS.dr
    W32/Sdbot.dr
  Exploit (3)
    Exploit-MS03-043
    Exploit-MS03-043.DoS
    Exploit-ObscuredHtml
  Generic (10)
    PWS-Banker.gen.ba
    PWS-Banker.gen.bb
    PWS-Banker.gen.i
    PWS-Banker.gen.h
    PWS-Banker.gen.g
    PWS-Banker.gen.t
    ServU-Daemon.gen.bb
    Exploit-HLPWorkshop.gen
    Exploit-MS06-006.gen
    PWS-LDPinch.gen
  Generic Worm (1)
    W32/Sdbot.worm.gen.ax
  Heuristic (1)
    New BackDoor1
  Keylogger (1)
    Keylog-Tibia
  Malware Tool (18)
    Nuke-Hosp
    Nuke-Elite
    Nuke-DieModem
    Nuke-Click
    Nuke-Hangping
    Nuke-Divine
    Nuke-BlueFire
    Nuke-AOLExp
    Nuke-QQ
    Nuke-Crasher
    Nuke-AIC
    Nuke-Duke
    Nuke-Xobo
    Nuke-NetNuker
    Nuke-BomberMan
    Nuke-BrosTeam
    Nuke-Hackeru
    Nuke-Rhad
  Password (1)
    PWS-LDPinch
  Password Stealer (2)
    PWS-JA
    PWS-Satiloler
  Proxy (2)
    Proxy-EasySearch
    Proxy-FBSR
  Remote Access (9)
    BackDoor-ASB
    BackDoor-AWQ.b
    BackDoor-BCB
    BackDoor-AJQ
    BackDoor-CMI
    Generic BackDoor.k
    BackDoor-CKB
    BackDoor-CEP
    BackDoor-CTK
  StartPage (1)
    StartPage-DU
  Win32 (21)
    Generic Downloader.b
    W32/Bagle.x!proxy
    HackerDefender
    Generic Downloader.c
    DesktopHijack
    Puper
    Generic BackDoor.bc
    Generic BackDoor.ba
    Generic Downloader.k
    Generic AdClicker.j
    Generic AdClicker.b
    Generic PWS.o
    Generic AdClicker.a
    Generic MSVC.b
    Generic Downloader.ab
    Generic Dropper.j
    Generic.b
    Generic Dropper.w
    Generic BackDoor.i
    Generic Downloader.h
    Generic AdClicker.c
Virus (74)
   (1)
    Enola
  Application extension Worm (1)
    W32/Sdbot.worm.dll
  Boot dropper (6)
    BtDr.WXYC
    BtDr.Pingpong
    BtDr.Payback
    BtDr.Daboys
    BtDr.ARCV
    BtDr.Exebug
  Companion (1)
    Hellspawn.cmp
  Damaged Worm (3)
    W32/Spybot.worm.dam
    W32/Gaobot.worm.dam
    W32/Sdbot.worm.dam
  Dropper (3)
    Birgit.dr
    Oprobe.dr
    Bat/Kads.dr
  Dropper Worm (1)
    W32/Sdbot.worm.dr
  E-mail (2)
    W32/Bagle.b@MM
    W32/Bagle.ad@MM
  E-mail worm (6)
    W32/Bagle.q@MM
    W32/Bagle.t@MM
    W32/Bagle.u@MM
    W32/Bagle.r@MM
    W32/Bagle.s@MM
    W32/Bagle.dq@MM
  Email (2)
    W32/Bagle.cc@MM
    W32/Bagle.a@MM
  Email Generic (2)
    W32/Dumaru.gen@MM
    JS/Feebs.gen.d@MM
  Floppy (1)
    W32/Generic!floppy
  Generic (1)
    W32/IRCbot.gen.b
  Generic Worm (27)
    W32/Spybot.worm.gen.e
    W32/Gaobot.worm.gen.e
    W32/Gaobot.worm.gen.l
    W32/Sdbot.worm.gen.bg
    W32/Gaobot.worm.gen.bj
    W32/Sdbot.worm.gen.ar
    W32/Gaobot.worm.gen.j
    W32/Sdbot.worm.gen.n
    W32/Sdbot.worm.gen.l
    W32/Sdbot.worm.gen.h
    W32/Sdbot.worm.gen.i
    W32/Sdbot.worm.gen.x
    W32/Sdbot.worm.gen.bl
    W32/Sdbot.worm.gen.ae
    W32/Gaobot.worm.gen.u
    W32/Sdbot.worm.gen.ai
    W32/Sdbot.worm.gen.bz
    W32/Sdbot.worm.gen.aw
    W32/Sdbot.worm.gen.bd
    W32/Sdbot.worm.gen.bh
    W32/Sdbot.worm.gen.bi
    W32/Sdbot.worm.gen.by
    W32/Sdbot.worm.gen.bj
    W32/Sdbot.worm.gen.bw
    W32/Gaobot.worm.gen.by
    Linux/Lupper.worm.gen
    W32/Sdbot.worm.gen.z
  Internet Worm (3)
    W32/Sdbot.worm!MS05-039
    W32/NoChod@MM
    W32/Gaobot.worm.gen.q
  Script (2)
    Univ.script/99a
    Bat/Kads
  Win32 (8)
    W32/Generic.d
    W32/Generic.e
    W32/Bagle.dt
    W32/Generic!im
    W32/Bagle.dq
    W32/Generic.x
    W32/Generic.m
    W32/Generic.Delphi.a
  Worm (4)
    W32/Opanki.worm
    Linux/Lupper.worm.a
    Linux/Lupper.worm.d
    Linux/Lupper.worm.c