Content

DAT Readme

Download the latest anti virus definitions for McAfee® VirusScan®. Ensure your McAfee® product contains the most up-to-date detection and prevention.
http://www.mcafee.com/apps/downloads/security_updates/dat.asp

Latest Update
DAT Version 4942
DAT Release Date 01/18/2007
Threats Detected 223164
New Detections 5
Enhanced Detections 153

Enhanced detections are those that have been modified for this release. Detections are enhanced to cover new variants, optimize performance, and correct incorrect identifications.

Noteworthy threats are those that had an Avert risk assessment of Low-Profiled, Medium, Medium-On-Watch, High, or High-Outbreak at the time of DAT release.

Noteworthy Threats:

Name Corporate Risk Assessment Home Risk Assessment
There are no noteworthy threats in this release

New Detections:

Trojan (3)
  Configuration settings (1)
    PWS-Lineage.ini
  Flooder (1)
    FDoS-Agent.b
  Password Stealer (1)
    PWS-Lineage!7EF5243E
Virus (2)
  Parasitic (1)
    W32/HLLP.Philis.ev
  Worm (1)
    W32/Eboscro.worm

Enhanced Detections:

Program (4)
  Adware (1)
    Adware-Cinmus
  Demonstration (1)
    Generated.Zombie
  PornDialer (1)
    Dialer-Generic
  Spyware (1)
    Keylog-Perfect
Trojan (52)
   (1)
    Generic BackDoor.bb
  Application extension (2)
    PWS-Legmir.dll
    BackDoor-BAC.dll
  Configurator (1)
    Generic PWS.b.cfg
  Downloader (4)
    Downloader-BAE
    PWS-WoW.dldr
    Downloader-ASH
    Downloader-AZM
  Dropper (4)
    PWS-LegMir.dr
    PWS-Lineage.dr
    PWS-WoW.dr
    PWS-Goldun.dr
  Exploit (3)
    Exploit-PPT.c
    Exploit-MS06-014
    Exploit-CVE2007-0028
  Generic (5)
    PWS-LegMir.gen.b
    PWS-Banker.gen.ad
    PWS-Banker.gen.bb
    PWS-Banker.gen.t
    PWS-Banker.gen.bc
  Heuristic (2)
    New Malware.j
    New Malware.ac
  Password (2)
    PWS-LegMir
    PWS-QQPass
  Password Stealer (10)
    Generic PWS.b
    PWS-Gamania
    PWS-QQRob
    PWS-Banker!1d2e
    PWS-Banker.gen.ba
    PWS-Lineage!dam
    PWS-Zhengtu
    PWS-Goldun.sys
    PWS-WoW
    PWS-Lineage
  Remote Access (2)
    BackDoor-AWQ.b
    BackDoor-BAC
  Spyware (1)
    Keylog-Perfect.dr
  Win32 (15)
    Generic Downloader.p
    Puper
    W32/RAHack!htm
    Spy-Agent.bi
    Generic Downloader.r
    Generic BackDoor.s
    Generic AdClicker.b
    Generic PWS.o
    Generic BackDoor.u
    Generic Downloader.ab
    Generic VB.c
    Generic PWS.s
    Ransom-C
    Generic Downloader.g
    Generic AdClicker.d
Virus (97)
  Damaged Worm (1)
    W32/Sdbot.worm.dam
  Dropper (1)
    W32/HLLP.Philis.dr
  Email (3)
    W32/Stration@MM
    W32/Rontokbro.a@MM
    W32/Rontokbro.b@MM
  Email Generic (1)
    W32/Rontokbro.gen@MM
  Generic (1)
    W32/IRCbot.gen.a
  Generic Worm (4)
    W32/Sdbot.worm.gen.ce
    W32/Sdbot.worm.gen.ax
    W32/Sdbot.worm.gen.bh
    W32/Sdbot.worm.gen.q
  Internet Worm (3)
    W32/Sdbot.worm
    W32/Spybot.worm.gen
    W32/Sdbot.worm!MS06-040
  Parasitic (80)
    W32/HLLP.Philis.cj
    W32/HLLP.Philis.bs
    W32/HLLP.Philis.ea
    W32/HLLP.Philis.cs
    W32/HLLP.Philis.cq
    W32/HLLP.Philis.em
    W32/HLLP.Philis.dg
    W32/HLLP.Philis.bw
    W32/HLLP.Philis.bu
    W32/HLLP.Philis.ef
    W32/HLLP.Philis.dy
    W32/HLLP.Philis.bv
    W32/HLLP.Philis.cl
    W32/HLLP.Philis.dx
    W32/HLLP.Philis.bq
    W32/HLLP.Philis.cm
    W32/HLLP.Philis.db
    W32/HLLP.Philis.dw
    W32/HLLP.Philis.da
    W32/HLLP.Philis.dv
    W32/HLLP.Philis.bm
    W32/HLLP.Philis.ca
    W32/HLLP.Philis.cz
    W32/HLLP.Philis.cr
    W32/HLLP.Philis.cp
    W32/HLLP.Philis.do
    W32/HLLP.Philis.dn
    W32/HLLP.Philis.ce
    W32/HLLP.Philis.cd
    W32/HLLP.Philis.by
    W32/HLLP.Philis.ee
    W32/HLLP.Philis.ec
    W32/HLLP.Philis.eb
    W32/HLLP.Philis.dm
    W32/HLLP.Philis.ed
    W32/HLLP.Philis.ck
    W32/HLLP.Philis.bx
    W32/HLLP.Philis.en
    W32/HLLP.Philis.el
    W32/HLLP.Philis.eu
    W32/HLLP.Philis.et
    W32/HLLP.Philis.eq
    W32/HLLP.Philis.es
    W32/HLLP.Philis.er
    W32/HLLP.Philis.ep
    W32/HLLP.Philis.du
    W32/HLLP.Philis.dk
    W32/HLLP.Philis.di
    W32/HLLP.Philis.bp
    W32/HLLP.Philis.eh
    W32/HLLP.Philis.dt
    W32/HLLP.Philis.cy
    W32/HLLP.Philis.ej
    W32/HLLP.Philis.ei
    W32/HLLP.Philis.bt
    W32/HLLP.Philis.ch
    W32/HLLP.Philis.ci
    W32/HLLP.Philis.dq
    W32/HLLP.Philis.dl
    W32/HLLP.Philis.dj
    W32/HLLP.Philis.dh
    W32/HLLP.Philis.dp
    W32/HLLP.Philis.ds
    W32/HLLP.Philis.cc
    W32/HLLP.Philis.bz
    W32/HLLP.Philis.eg
    W32/HLLP.Philis.eo
    W32/HLLP.Philis.cx
    W32/HLLP.Philis.df
    W32/HLLP.Philis.cn
    W32/HLLP.Philis.cv
    W32/HLLP.Philis.ct
    W32/HLLP.Philis.de
    W32/HLLP.Philis.dc
    W32/HLLP.Philis.cw
    W32/HLLP.Philis.cu
    W32/HLLP.Philis.dd
    W32/HLLP.Philis.co
    W32/HLLP.Philis.cg
    W32/HLLP.Philis.cf
  Win32 (2)
    W32/Fujacks.f
    W32/Fujacks
  Worm (1)
    W32/Generic.worm.b