Content

DAT Readme

Download the latest anti virus definitions for McAfee® VirusScan®. Ensure your McAfee® product contains the most up-to-date detection and prevention.
http://www.mcafee.com/apps/downloads/security_updates/dat.asp

Latest Update
DAT Version 4786
DAT Release Date 06/16/2006
Threats Detected 197396
New Detections 10
Enhanced Detections 221

Enhanced detections are those that have been modified for this release. Detections are enhanced to cover new variants, optimize performance, and correct incorrect identifications.

Noteworthy threats are those that had an Avert risk assessment of Low-Profiled, Medium, Medium-On-Watch, High, or High-Outbreak at the time of DAT release.

Noteworthy Threats:

Name Corporate Risk Assessment Home Risk Assessment
There are no noteworthy threats in this release

New Detections:

Program (3)
   (3)
    SymbOS/YewSprite
    SymbOS/Hidemenu!sis
    SymbOS/FreakIconz
Trojan (5)
   (4)
    SymbOS/Skulls.b!app
    SymbOS/Doomboot.a!dll
    SymbOS/Skulls.g!app
    SymbOS/MultiDropper.g!dam
  Downloader (1)
    Downloader-AWX
Virus (2)
   (1)
    SymbOS/Cabir.y!sis
  Email (1)
    W32/Areses.n@MM

Enhanced Detections:

Internet Worm (1)
  E-mail (1)
    W32/Areses.a@MM
Program (2)
  Adware (1)
    Adware-DesktopMedia
  Win32 (1)
    Winfixer
Trojan (34)
   (1)
    Generic BackDoor.t
  Configurator (1)
    PWS-QQPass.cfg
  Downloader (5)
    PWS-Banker.dldr.d
    Downloader-AAL
    Downloader-AWH
    Downloader-ZQ
    Downloader-ASH
  Dropper (4)
    Puper.dr
    QDial-42.dr
    BackDoor-CUL.dr
    PWS-Goldun.dr
  Exploit (5)
    Exploit-ByteVerify
    JS/Exploit-ObjectCDS
    Exploit-CreateTxtRng
    Exploit-ITSSHeap
    Exploit-MS06-027
  Password (2)
    PWS-QQPass
    Pws-CK
  Proxy (1)
    Proxy-Horst
  Remote Access (3)
    BackDoor-BAC
    BackDoor-CMQ
    Generic BackDoor.k
  Server (1)
    BackDoor-CUR.svr
  Win32 (11)
    Generic Downloader.a
    DollarRevenue
    Generic Downloader.ak
    Generic Uploader.a
    Generic Downloader.bl
    Generic Downloader.r
    Generic BackDoor.u
    Generic Downloader.ab
    Vundo
    Enfal
    Generic Downloader.f
Virus (184)
   (42)
    SymbOS/Appdisabler.c!sis
    SymbOS/Commwarrior.h!sis
    SymbOS/Cabir!ezboot.ab
    SymbOS/Commwarrior.l!sis
    SymbOS/Commwarrior.b!sis
    SymbOS/Commwarrior.a!sis
    SymbOS/Cabir!ezboot.v
    SymbOS/Commwarrior.j!sis
    SymbOS/Commwarrior.n!sis
    SymbOS/Cabir!ezboot.m
    SymbOS/Cabir!ezboot.y
    SymbOS/Appdisabler.b!sis
    SymbOS/Appdisabler.a!sis
    SymbOS/Commwarrior.c!sis
    SymbOS/Commwarrior.m!sis
    SymbOS/Cabir!ezboot.ah
    SymbOS/Cabir!ezboot.g
    SymbOS/Cabir!ezboot.w
    SymbOS/Cabir!ezboot.ac
    SymbOS/Cabir!ezboot.e
    SymbOS/Cabir!ezboot.d
    SymbOS/Cabir!ezboot.c
    SymbOS/Commwarrior.g!sis
    SymbOS/Commwarrior.i!sis
    SymbOS/Commwarrior.f!sis
    SymbOS/Cabir!ezboot.x
    SymbOS/Commwarrior.d!sis
    SymbOS/Commwarrior.e!sis
    SymbOS/Cabir!ezboot.ae
    SymbOS/Cabir!ezboot.s
    SymbOS/Cabir!ezboot.o
    SymbOS/Cabir!ezboot.k
    SymbOS/Cabir!ezboot.f
    SymbOS/Cabir!ezboot.ad
    SymbOS/Cabir!ezboot.ag
    SymbOS/Cabir!ezboot.t
    SymbOS/Cabir!ezboot.r
    SymbOS/Cabir!ezboot.q
    SymbOS/Cabir!ezboot.p
    SymbOS/Cabir!ezboot.n
    SymbOS/Appdisabler.d!sis
    SymbOS/Cabir!ezboot.aa
  Application extension (1)
    W32/Sality.dll
  Damaged (1)
    W32/Mytob.dam
  Damaged Worm (1)
    W32/Opaserv.worm.dam
  E-mail (7)
    W32/Mytob.ig@MM
    W32/Areses.k@MM
    W32/Areses.j@MM
    W32/Mytob.gr@MM
    W32/Mytob.ih@MM
    W32/Mytob.ii@MM
    W32/Banwarum.dll
  Email (84)
    W32/Gift@MM
    W32/Mytob.ao@MM
    W32/Mytob.al@MM
    W32/Mytob.ew@MM
    W32/Mytob.ie@MM
    W32/Mytob.fa@MM
    W32/Rontokbro.a@MM
    W32/Mytob.ft@MM
    W32/Mytob.fs@MM
    W32/Rabit@MM
    W32/Mytob.aw@MM
    W32/Areses.m@MM
    W32/Areses.e@MM
    W32/Areses.c@MM
    W32/Mytob.fr@MM
    W32/Areses.d@MM
    W32/Mytob.ba@MM
    W32/Rontokbro.b@MM
    W32/Mytob.bc@MM
    W32/Mytob.bb@MM
    W32/Mytob.bd@MM
    W32/Areses.l@MM
    W32/Mytob.id@MM
    W32/Areses.b@MM
    W32/Mytob.fu@MM
    W32/Mytob.fw@MM
    W32/Mytob.fv@MM
    W32/Mytob.ge@MM
    W32/Mytob.go@MM
    W32/Areses.i@MM
    W32/Mytob.bu@MM
    W32/Mytob.bq@MM
    W32/Mytob.by@MM
    W32/Mytob.cq@MM
    W32/Mytob.ck@MM
    W32/Mytob.fz@MM
    W32/Mytob.gf@MM
    W32/Mytob.gn@MM
    W32/Mytob.gp@MM
    W32/Areses.h@MM
    W32/Mytob.cw@MM
    W32/Mytob.p@MM
    W32/Mytob.i@MM
    W32/Mytob.k@MM
    W32/Mytob.r@MM
    W32/Mytob.gm@MM
    W32/Mytob.gs@MM
    W32/Mytob.m@MM
    W32/Mytob.bs@MM
    W32/Mytob.de@MM
    W32/Mytob.cb@MM
    W32/Mytob.do@MM
    W32/Mytob.dl@MM
    W32/Mytob.h@MM
    W32/Mytob.j@MM
    W32/Mytob.l@MM
    W32/Mytob.o@MM
    W32/Mytob.t@MM
    W32/Mytob.x@MM
    W32/Mytob.y@MM
    W32/Mytob.cr@MM
    W32/Mytob.cl@MM
    W32/Mytob.ci@MM
    W32/Mytob.cx@MM
    W32/Mytob.cy@MM
    W32/Mytob.dn@MM
    W32/Mytob.ei@MM
    W32/Mytob.aa@MM
    W32/Mytob.ad@MM
    W32/Mytob.dw@MM
    W32/Mytob.dv@MM
    W32/Mytob.du@MM
    W32/Mytob.aj@MM
    W32/Mytob.z@MM
    W32/Mytob.hq@MM
    W32/Mytob.eg@MM
    W32/Mytob.ho@MM
    W32/Mytob.hn@MM
    W32/Mytob.hk@MM
    W32/Mytob.hm@MM
    W32/Mytob.hj@MM
    W32/Mytob.ha@MM
    W32/Mytob.em@MM
    W32/Mytob.en@MM
  Email Generic (2)
    W32/Rontokbro.gen@MM
    W32/Mytob.gen@MM
  Floppy (1)
    W32/Generic!floppy
  Generic (2)
    SymbOS/Commwarrior.gen!sis
    SymbOS/Appdisabler.gen!sis
  Generic Worm (4)
    W32/Opaserv.worm.gen
    W32/Tumbi.worm.gen.b
    W32/Sdbot.worm.gen.n
    W32/Sdbot.worm.gen.ag
  Internet Worm (2)
    W32/Opaserv.worm.n
    W32/Opaserv.worm.m
  Parasitic (1)
    W32/HLLP.Gotem
  Win32 (7)
    W32/Detnat.g
    W32/Detnat.e
    W32/Generic.d
    W32/Detnat.d
    W32/Generic!msn
    W32/Generic!im
    W32/Detnat.f
  Worm (29)
    W32/Opaserv.worm.ae
    W32/Opaserv.worm.d
    W32/Opaserv.worm.w
    W32/Opaserv.worm.u
    W32/Opaserv.worm.s
    W32/Opaserv.worm.p
    W32/Opaserv.worm.l
    W32/Opaserv.worm.i
    W32/Opaserv.worm.ai
    W32/Opaserv.worm.ah
    W32/Opaserv.worm.ac
    W32/Opaserv.worm.a
    W32/Opaserv.worm.v
    W32/Opaserv.worm.t
    W32/Opaserv.worm.q
    W32/Opaserv.worm.o
    W32/Opaserv.worm.h
    W32/Opaserv.worm.r
    W32/Opaserv.worm.k
    W32/Opaserv.worm.f
    W32/Opaserv.worm.e
    W32/Opaserv.worm.aa
    W32/Opaserv.worm.ad
    W32/Opaserv.worm.aj
    W32/Opaserv.worm.g
    W32/Deborm.worm
    W32/Goyo.worm
    W32/Opaserv.worm.al
    W32/Opaserv.worm.ak