Content

DAT Readme

Download the latest anti virus definitions for McAfee® VirusScan®. Ensure your McAfee® product contains the most up-to-date detection and prevention.
http://www.mcafee.com/apps/downloads/security_updates/dat.asp

DAT Version 4704
DAT Release Date 02/23/2006
Threats Detected 179745
New Detections 19
Enhanced Detections 219

Enhanced detections are those that have been modified for this release. Detections are enhanced to cover new variants, optimize performance, and correct incorrect identifications.

Noteworthy threats are those that had an Avert risk assessment of Low-Profiled, Medium, Medium-On-Watch, High, or High-Outbreak at the time of DAT release.

Noteworthy Threats:

Name Corporate Risk Assessment Home Risk Assessment
There are no noteworthy threats in this release

New Detections:

Program (2)
  Dropper (1)
    Keylog-Ghost.dr
  Tool (1)
    Tool-FingerOS
Trojan (13)
   (3)
    SymbOS/Multidropper.at!sis
    AdClicker-ED
    SymbOS/Multidropper.au!sis
  Application extension (1)
    Downloader-AUO.dll
  Downloader (2)
    Downloader-AUO
    Downloader-AUN
  Heuristic (1)
    New Malware.ah
  Malware Tool (1)
    Spam-Loot
  Remote Access (2)
    BackDoor-CYA
    BackDoor-CXZ
  StartPage (1)
    StartPage-JA
  Win32 (2)
    Zquest
    Del-498
Virus (4)
   (3)
    SymbOS/Skulls.cf
    OSX/Inqtana!tgz
    SymbOS/Skulls.cg
  Generic (1)
    W32/Rous.gen

Enhanced Detections:

Program (28)
   (1)
    Generic PUP.a
  Adware (13)
    Adware-SaveNow
    Adware-Huntbar
    Adware-HotBar
    Adware-Gain
    Adware-SearchAid
    Adware-Apropos
    Adware-Fuel
    Adware-Ndware
    Adware-DollarRevenue
    Adware-CasClient
    Adware-WurldMedia
    Adware-DCToolbar
    Adware-Cometsys
  Application extension (2)
    Adware-Apropos.dll
    Keylog-Ghost.dll
  Dialer (1)
    Dialer-Generic.e
  Downloader (1)
    Adware-ISTbar.dldr
  Dropper (4)
    Adware-NetPals.dr
    Adware-SafeSurf.dr
    Adware-Apropos.dr
    Spyware-WebHancer.dr
  ProcKill (1)
    ProcKill-DO
  Registry (1)
    Generic AdClicker.h
  Spyware (2)
    Keylog-Ghost
    Spyware-Webhancer
  Trojan (1)
    Slurp
  Win32 (1)
    Reboot-AA
Trojan (129)
   (40)
    Generic BackDoor.d
    Generic Keylogger
    SymbOS/Multidropper.a!sis
    SymbOS/Multidropper.e!sis
    SymbOS/Multidropper.c!sis
    SymbOS/Multidropper.g!sis
    SymbOS/Multidropper.b!sis
    SymbOS/Multidropper.f!sis
    SymbOS/Multidropper.d!sis
    SymbOS/Multidropper.k!sis
    SymbOS/Multidropper.j!sis
    SymbOS/Multidropper.i!sis
    SymbOS/Multidropper.h!sis
    SymbOS/Multidropper.l!sis
    Generic MultiDropper.g
    Generic.cb
    SymbOS/Multidropper.q!sis
    SymbOS/Multidropper.r!sis
    AdClicker-EC
    Generic.ce
    Generic.cd
    SymbOS/Multidropper.ak!sis
    SymbOS/Multidropper.ai!sis
    SymbOS/Multidropper.ar!sis
    SymbOS/Multidropper.aq!sis
    SymbOS/Multidropper.ap!sis
    SymbOS/Multidropper.ao!sis
    SymbOS/Multidropper.an!sis
    SymbOS/Multidropper.am!sis
    SymbOS/Multidropper.al!sis
    SymbOS/Multidropper.aj!sis
    SymbOS/Multidropper.ah!sis
    SymbOS/Multidropper.af!sis
    SymbOS/Multidropper.ad!sis
    SymbOS/Multidropper.x!sis
    Spy-Agent.ac
    SymbOS/Multidropper.ag!sis
    SymbOS/Multidropper.ae!sis
    SymbOS/Multidropper.ac!sis
    SymbOS/Multidropper.u!sis
  Application extension (1)
    BackDoor-BAC.dll
  Configurator (1)
    Downloader-GG.cfg
  Dialer (1)
    Dialer-300
  Downloader (11)
    Downloader-DA
    Downloader-ADT
    PWS-Banker.dldr
    Downloader-ABU
    Downloader-AUM
    Downloader-ATM
    Downloader-ASH
    Downloader-ARH
    Downloader-TU
    Downloader-LG
    Downloader-ADA
  Dropper (7)
    MyftU.dr
    MultiDropper-NP
    BackDoor-AWQ.b.dr
    BackDoor-CEP.dr
    MultiDropper-OR
    StartPage-EH.dr
    AdClicker.dr
  Email Generic (1)
    W32/Feebs.gen@MM
  Exploit (3)
    VBS/Psyme
    OSX/Exploit-ScriptEx
    OSX/Exploit-ZipShell
  Generic (7)
    Generic Downloader.gen.be
    Oleloa.gen
    PWS-Banker.gen.bb
    PWS-Banker.gen.h
    PWS-Banker.gen.g
    PWS-Banker.gen.t
    Exploit-MS06-006.gen
  Generic Worm (1)
    W32/Sdbot.worm.gen.ax
  Heuristic (4)
    New Malware.n
    New Malware.j
    New Malware.h
    New Malware.ae
  Keylogger (1)
    Keylog-Sters
  Malware Tool (2)
    Spam-Mailbot!RootKit
    Spam-DComServ
  Password (3)
    PWS-QQPass
    PWS-LDPinch
    HTML/Ebscam
  Password Stealer (7)
    PWS-QQRob
    Generic PWS.g
    PWS-JA
    PWS-QQTen
    PWS-Banker.gen.i
    PWS-WoW
    PWS-Lineage
  PDA Device (1)
    SymbOS/Skulls.a
  Proxy (2)
    Proxy-FBSR
    Proxy-Piky
  Remote Access (11)
    Linux/Kis
    BackDoor-AQF
    BackDoor-ARR
    BackDoor-AWQ.b
    BackDoor-BAC
    BackDoor-CCT
    BackDoor-ANX
    BackDoor-CTV
    BackDoor-CSN
    Generic BackDoor.l
    Generic BackDoor.k
  Script (1)
    Generic component
  Server (1)
    BackDoor-ARR.svr
  StartPage (3)
    StartPage-HP
    StartPage-HR
    StartPage-EH
  Win32 (20)
    HackerDefender
    Generic BackDoor.q
    DesktopHijack
    MyftU
    Generic Downloader.d
    Generic MultiDropper.a
    Puper
    Generic Downloader.s
    PGPcoder
    Generic Downloader.q
    Generic Downloader.aa
    Generic PWS.o
    Generic Dropper.q
    Druogna
    Generic Downloader.ac
    Generic.b
    Spy-Agent.ak
    Generic Downloader.g
    DDoS-Boxed
    Generic Downloader.h
Virus (62)
   (9)
    SymbOS/Skulls.f
    SymbOS/Skulls.e
    SymbOS/Skulls.g
    SymbOS/Skulls.h
    SymbOS/Skulls.i
    SymbOS/Skulls.c
    SymbOS/Skulls!aif
    SymbOS/Skulls.d
    SymbOS/Skulls.ca
  Damaged Worm (1)
    W32/Gaobot.worm.dam
  Dropper (1)
    W32/Jeefo.dr
  E-mail (4)
    W32/Sober.r@MM
    W32/Mytob.gr@MM
    W32/Sober.o@MM!M414
    W32/Sober.w@MM
  Email (9)
    W32/Mytob.aw@MM
    W32/Mytob.bd@MM
    W32/Mytob.i@MM
    W32/Mytob.k@MM
    W32/Mytob.r@MM
    W32/Mytob.do@MM
    W32/Mytob.dl@MM
    W32/Mytob.j@MM
    W32/Mytob.em@MM
  Email Generic (4)
    W32/Sober.gen@MM
    W32/Rontokbro.gen@MM
    W32/Mytob.gen@MM
    JS/Feebs.gen.d@MM
  Generic (2)
    SymbOS/Skulls.gen
    W32/IRCbot.gen.b
  Generic Worm (23)
    W32/Gaobot.worm.gen.g
    W32/Gaobot.worm.gen.e
    W32/IRCbot.worm.gen
    W32/Gaobot.worm.gen.l
    W32/Sdbot.worm.gen.bg
    W32/Sdbot.worm.gen.ar
    W32/Sdbot.worm.gen.n
    W32/Sdbot.worm.gen.l
    W32/Sdbot.worm.gen.j
    W32/Sdbot.worm.gen.h
    W32/Sdbot.worm.gen.k
    W32/Sdbot.worm.gen.x
    W32/Sdbot.worm.gen.ae
    W32/Sdbot.worm.gen.bs
    W32/Sdbot.worm.gen.bz
    W32/Sdbot.worm.gen.ag
    W32/Sdbot.worm.gen.bo
    W32/Sdbot.worm.gen.bh
    W32/Sdbot.worm.gen.bi
    W32/Sdbot.worm.gen.by
    W32/Sdbot.worm.gen.y
    W32/Sdbot.worm.gen.t
    W32/Sdbot.worm.gen.q
  Internet Worm (1)
    W32/NoChod@MM
  Win32 (6)
    New Win32.s
    W32/Jeefo.b
    W32/Feebs!rootkit
    W32/Jeefo.d
    W32/Generic.x
    W32/Vbbot
  Worm (2)
    W32/Dedler.worm
    OSX/Inqtana.a