Content

DAT Readme

Download the latest anti virus definitions for McAfee® VirusScan®. Ensure your McAfee® product contains the most up-to-date detection and prevention.
http://www.mcafee.com/apps/downloads/security_updates/dat.asp

Latest Update
DAT Version 5091
DAT Release Date 08/06/2007
Threats Detected 308245
New Detections 8
Enhanced Detections 226

Enhanced detections are those that have been modified for this release. Detections are enhanced to cover new variants, optimize performance, and correct incorrect identifications.

Noteworthy threats are those that had an Avert risk assessment of Low-Profiled, Medium, Medium-On-Watch, High, or High-Outbreak at the time of DAT release.

Noteworthy Threats:

Name Corporate Risk Assessment Home Risk Assessment
There are no noteworthy threats in this release

New Detections:

Trojan (7)
   (1)
    Srizbi!rootkit
  Application extension (1)
    Keylog-Kichwas.dll
  Downloader (1)
    BackDoor-DKI.ldr
  Exploit (1)
    Exploit-TaroDrop.c
  Keylogger (1)
    Keylog-Kichwas
  Win32 (2)
    Srizbi
    Srizbi.sys
Vulnerability (1)
  Exploit (1)
    Exploit-YWIDGET

Enhanced Detections:

Program (10)
  Adware (6)
    CnsMin
    Adware-BDSearch
    Adware-BDSearch.sys
    Adware-AdSina
    Adware-CDNHelper
    Adware-Softomate
  Application extension (1)
    Adware-BDSearch.dll
  Dialer (1)
    Dialer-275
  Generic (2)
    Dialer-RAS.bn.gen
    Dialer-238.gen
Trojan (181)
   (53)
    Generic.ack
    Generic.aci
    Generic.acm
    Generic.acl
    Generic.acg
    Generic.abx
    Generic.abt
    Generic.abs
    Generic.abq
    Generic.acj
    Generic.ach
    Generic.ea
    Generic.fd
    Generic.fb
    Generic.ey
    Generic.ewx
    Generic.eu
    Generic.es
    Generic.eq
    Generic.fc
    Generic.ez
    Generic.ex
    Generic.ev
    Generic.et
    Generic.er
    Generic.aby
    Generic.acd
    Generic.ace
    Generic.aca
    Generic.acb
    Generic.abu
    Generic.dx
    Generic Script.c
    Generic.acc
    Generic.acf
    Generic.f
    Generic.abv
    Generic.abz
    Generic.abp
    Generic.abw
    Generic.abr
    Generic.acn
    Generic.aco
    Generic.eo
    Generic.em
    Generic.ek
    Generic.ei
    Generic.eg
    Generic.en
    Generic.el
    Generic.ej
    Generic.eh
    Generic.eb
  Application extension (1)
    PWS-OnlineGames.a.dll
  Demonstration (3)
    JS/Exploit-Script.demo
    Exploit-QtRTSP.demo
    Exploit-MSJet.demo
  Downloader (4)
    Downloader-AAP
    Spy-Agent.bv.dldr
    PWS-Banker.dldr
    Downloader-BAI!M711
  Dropper (1)
    PWS-OnlineGames.a.dr
  Exploit (23)
    Exploit-MS05-038
    Exploit-MSJet
    Exploit-TaroDrop
    Exploit-MS03-007
    Exploit-MSJet!BCB
    JS/Exploit-Applet
    Exploit-CVE2006-6134
    Exploit-TaroDrop.b
    Exploit-MSWord.g
    Exploit-MSExcel.k
    Exploit-CVE2006-5585
    Exploit-CVE2006-3014!demo
    Exploit-MSExcel.gen
    Exploit-CHMChunk
    Exploit-MSExcel.h
    Exploit-MS02-061
    Exploit-MS07-004
    Exploit-MSJet.a
    Exploit-MSJet!Gen
    Exploit-Gator
    Exploit-MSJet!CKB
    Exploit-MSJet!BAE
    Exploit-ZIP.b
  Generic (4)
    Exploit-OleData.gen
    Downloader.gen.a
    PWS-Banker.gen.b
    PWS-Mmorpg.gen
  Heuristic (19)
    New Malware.ft
    New Malware.fx
    New Malware.fv
    New Malware.fo
    New Malware.fq
    New Malware.fy
    New Malware.fw
    New Malware.gf
    New Malware.gd
    New Malware.fl
    New Malware.gb
    New Malware.fs
    New Malware.ag
    New Malware.gg
    New Malware.ge
    New Malware.gc
    New Malware.ga
    New Malware.fm
    New Malware.fz
  Password Stealer (3)
    PWS-Banker
    PWS-Banker.gen.i
    PWS-OnlineGames.a
  Proxy (1)
    Proxy-Piky
  Remote Access (3)
    Generic BackDoor
    BackDoor-AWQ.b
    BackDoor-AWQ
  Spam (1)
    Spam-Mespam
  Win32 (65)
    W32/Generic.ace!worm
    W32/Generic.acd!worm
    Generic Downloader.d
    W32/Generic.abx!worm
    W32/Generic.abz!worm
    W32/Generic.aay!worm
    W32/Generic.aap!worm
    W32/Generic.aba!worm
    W32/Generic.abm!worm
    W32/Generic.acf!worm
    W32/Generic.aaj!worm
    W32/Generic.aai!worm
    W32/Generic.abb!worm
    AdClicker-ER.sys
    W32/Generic.aaf!worm
    W32/Generic.aad!worm
    W32/Generic.acc!worm
    W32/Generic.aca!worm
    W32/Generic.abs!worm
    Puper
    W32/Generic.abf!worm
    W32/Generic.aao!worm
    W32/Generic.aaz!worm
    W32/Generic.abi!worm
    W32/Generic.abh!worm
    W32/Generic.aas!worm
    W32/Generic.aah!worm
    W32/Generic.aax!worm
    W32/Generic.abu!worm
    W32/Generic.abv!worm
    AdClicker-ER
    W32/Generic.aby!worm
    W32/Generic.abg!worm
    W32/Generic.aae!worm
    W32/Generic.aac!worm
    W32/Generic.aaw!worm
    W32/Generic.aam!worm
    W32/Generic.aak!worm
    W32/Generic.aan!worm
    W32/Generic.abq!worm
    W32/Generic.abr!worm
    W32/Generic.abo!worm
    W32/Generic.aab!worm
    W32/Generic.abk!worm
    W32/Generic.abj!worm
    Generic Rootkit.d
    Spy-Agent.bw
    W32/Generic.aav!worm
    W32/Generic.aat!worm
    W32/Generic.aar!worm
    W32/Generic.aaa!worm
    W32/Generic.abt!worm
    W32/Generic.abe!worm
    W32/Generic.abn!worm
    W32/Generic.aal!worm
    W32/Generic.acb!worm
    W32/Generic.abp!worm
    W32/Generic.abd!worm
    W32/Generic.abc!worm
    W32/Generic.abw!worm
    W32/Generic.abl!worm
    W32/Generic.aag!worm
    W32/Generic.aau!worm
    W32/Generic.aaq!worm
    Generic Downloader.g
Virus (35)
  Application extension (1)
    W32/HLLP.Philis.dll
  Damaged Worm (1)
    W32/Kelvir.worm.dam
  Email (2)
    W32/Stration@MM
    W32/Nuwar@MM
  Generic (1)
    W32/IRCbot.gen.a
  Generic Worm (2)
    W32/Kelvir.worm.gen
    W32/Autorun.worm.i.gen
  Internet Worm (3)
    W32/Spybot.worm.gen
    W32/Kelvir.worm.c
    IRC-Mocbot
  Parasitic (2)
    W32/HLLP.Philis
    W32/HLLP.Philis.kl
  Script (1)
    VBS/IE-Title
  Worm (22)
    W32/Kelvir.worm.ev
    W32/Kelvir.worm
    W32/Kelvir.worm.ee
    W32/Kelvir.worm.eg
    W32/Kelvir.worm.eh
    W32/Kelvir.worm.ey
    W32/Kelvir.worm.fg
    W32/Spybot.worm!35700bf5
    W32/Kelvir.worm.ef
    W32/Hakaglan.worm.gen
    W32/Kelvir.worm.d
    W32/Autorun.worm.n
    W32/Kelvir.worm.j
    W32/Kelvir.worm.fm
    W32/Kelvir.worm.fl
    W32/Kelvir.worm.r
    W32/Kelvir.worm.ak
    W32/Kelvir.worm.fn
    W32/Kelvir.worm.fr
    W32/Kelvir.worm.fq
    W32/Kelvir.worm.fx
    W32/Kelvir.worm.dx