Content

DAT Readme

Download the latest anti virus definitions for McAfee® VirusScan®. Ensure your McAfee® product contains the most up-to-date detection and prevention.
http://www.mcafee.com/apps/downloads/security_updates/dat.asp

Latest Update
DAT Version 5214
DAT Release Date 01/23/2008
Threats Detected 366483
New Detections 165
Enhanced Detections 165

Enhanced detections are those that have been modified for this release. Detections are enhanced to cover new variants, optimize performance, and correct incorrect identifications.

Noteworthy threats are those that had an Avert risk assessment of Low-Profiled, Medium, Medium-On-Watch, High, or High-Outbreak at the time of DAT release.

Noteworthy Threats:

Name Corporate Risk Assessment Home Risk Assessment
SymbOS/Beselo Low-Profiled Low-Profiled

New Detections:

Malware (1)
  PDA Device (1)
    SymbOS/Anitgru.A
Program (2)
   (1)
    ASF ScriptObject-b
  Spyware (1)
    Spyware-DesktopSnoop
Trojan (53)
   (5)
    Taz-b
    Saveset-b
    Lockdir-b
    Suspicious IFrame-c
    Teacher-b
  Application extension (1)
    BackDoor-DKG.dll
  Demonstration (1)
    W97/Exploit-SpyField.demo
  Downloader (4)
    New Downloader-b
    Sniff-Systrim.ldr-b
    Downloader-FR-b
    Downloader-BHD
  Dropper (4)
    MultiDropper-DD-b
    BackDoor-FR.dr-b
    MultiDropper-EZ-b
    MultiDropper-BV-b
  Exploit (6)
    JS/Exploit-Navigat-b
    Exploit-Gator-b
    JS/Exploit-DDay-b
    JS/Exploit-DragDro-b
    JS/Exploit-Applet-b
    Exploit-NoCheat-b
  File deleting (1)
    QDel278-b
  Generic (5)
    VB-QDel.gen-b
    PWS-Banker.gen.cg
    BackDoor-DLQ.gen
    W32/Stealth.gen-b
    JS/Spth.gen-b
  Heuristic (7)
    Unsafe Bat-b
    New UNIX-b
    New Downloader.b-b
    New IRC dropper-b
    New PornDial-b
    New Malware-d
    New Linux Malware-b
  Linux (1)
    Linux/Flooder-b.slice2
  Password Stealer (3)
    PWS-Ourgame-b
    PWS-Kervar-b
    PWS-Niksi-b
  Remote Access (1)
    BackDoor-AHB-b
  Script (3)
    X97M/Pathetic.bat-b
    IRC/Flood.bat-c
    Bat/rbt-b
  Unix (1)
    Unix/BFishy-b
  Win31 (1)
    Skin-b
  Win32 (9)
    J-Melissa-b
    Timese-b
    SPrem-b
    TFiller-b
    Shinop-b
    Fotki-b
    AdClicker-I-b
    PirDir-b
    Lotto-b
Virus (109)
   (39)
    Tourist.1871-b
    Malatinec.1554-b
    Apocalypse.1414.d-b
    Suspicious IFrame-b
    Glaurung.1109-b
    Bifurcator.1648.d-b
    YD.837-b
    VCG.Belka-b
    Magick-b
    Kxx.519-b
    Findme.235-b
    VCL.541-b
    HLL.13419.app-b
    Carnage-b
    SSR.19834-b
    SysInf.512x.dd-b
    SSR-b
    Trident-b
    Sirius.139-b
    Jeru.1653e-b
    Xany.162-b
    Vas.GFT.2153-b
    Beda-b
    Lucretia-b
    HLLT.7504b-b
    Crow-b
    ARCV.Ice.1060-b
    Wood Goblin.dd-b
    Mad.5131-b
    Zynto.1704-b
    Wood Goblin-b
    Stdout-b
    Mirrorx.4100-b
    Mutagen-b
    Lapiddan-b
    Vector-b
    Intruder.1313-b
    Path.547b-b
    Bomber.4096-b
  Application extension (1)
    New Win32.dll-b
  Companion (1)
    Sahand.cmp.2382-b
  Damaged (8)
    Blurp.4733.dam-b
    W32/Klez.dam-b
    Danish Tiny.dam-b
    ARCV.Ice.dam-b
    Yade.dam-b
    Perko.1277.dam-b
    Zielona.2576.dam-b
    W95/Henky.dam-b
  Email (1)
    VBS/HacVan@MM-b
  Exploit (1)
    VBS/Exploit-AM-b
  Heuristic (29)
    New AOL-b
    New PE-d
    New BackDoor4-b
    New Bat-b
    New VBS.b-b
    New Perl-b
    New P2P Worm-b
    New Malware-b
    New Win32.g3-b
    New Win32.tls-b
    New Floppy Worm-b
    New W97M Dropper-b
    New X97M Worm-b
    New VBA Dropper-b
    New VBA Worm-b
    New W97M Worm-b
    New Script.ext-b
    New Win32.g1-b
    New JS-b
    New Script.f-b
    New BackDoor1-b
    New Win32.g2-b
    New DLL-b
    New PE-c
    New VB-b
    New Win32.s-b
    New X97M Dropper-b
    New Worm-b
    New Worm-c
  Macintosh (1)
    MacOS/T4.d-b
  Macro (3)
    X97M/Laroux-b
    W97M/Concept-b
    remnants-X97M/Toraja
  multipartite (4)
    Nutcracker.mp.dd-b
    Red Vixen.mp-b
    Natas.mp-b
    Nutcracker.mp-b
  Parasitic (5)
    Lesson.apd-b
    Dichotomy.apd-b
    After.266.apd-b
    Mutint.603.apd-b
    Danish Tiny.apd-b
  Peer To Peer (1)
    W32/Generic.c!p2p-b
  Registry (1)
    W32/Tuareg-b
  Script (2)
    VBS/Zulu.vbs-b
    Bat/bvc-b
  Unix (1)
    UNIX/ZQ-b
  Win32 (5)
    W32/Gobi-b
    W32/Heffer.app-b
    W32/Demig-b
    W32/Stepan-b
    W32/Bolzano-b
  Win9x (1)
    W95/Klunky-b
  Worm (5)
    SymbOS/Beselo
    Linux/Lion.worm-b
    VBS/HPWG.worm-b
    Linux/Adore.worm-b
    Bat/Primad.worm-b

Enhanced Detections:

Internet Worm (1)
  Internet Relay Chat Worm (1)
    W32/Sdbot.worm!33800
Malware (1)
  Trojan (1)
    Voterai
Program (17)
  - (3)
    Iroffer
    Generic Dialer
    PrcView
  Adware (6)
    Adware-BDSearch
    AVGold
    Adware-Jily
    Adware-SpyShield
    Adware-Cinmus
    Generic Toolbar.b
  Dialer (2)
    Dialer-192
    Dialer-238
  Dropper (2)
    Adware-BDSearch.dr
    AVGold.dr
  Keylogger (1)
    Keylog-Ardamax.dll
  Malware Tool (1)
    PWCrack-Winspy
  Registry (1)
    HideWindow
  Win32 (1)
    Winfixer
Trojan (110)
   (5)
    Generic.fj
    Spy-Agent.bj
    Generic Flooder
    Spy-Lydra
    Spy-Agent.bv
  - (6)
    IRC/Flood.mirc
    AdClicker-AJ
    NetSniff
    Generic Malware.a
    NTRootKit-J
    KillJWS
  AOL Password (1)
    APStrojan.gen
  Application extension (2)
    PWS-QQPass.dll
    Allsum.dll
  Configurator (1)
    BackDoor-DKG.cfg
  Demonstration (1)
    Exploit-QtRTSP.demo
  Downloader (7)
    Downloader-BCF
    Spy-Agent.bv.dldr
    Downloader.gen.a
    PWS-Banker.dldr
    Downloader-BAI!M711
    Downloader-ZQ
    Downloader-AQW
  Dropper (4)
    Generic Dropper
    PWS-LDPinch.dr
    PWS-Gamania.dr
    Generic Dropper.p
  Exploit (5)
    Exploit-CreateTxtRng
    Exploit-OleDropper
    Exploit-HlpImg
    Exploit-CodeBase.chm
    JS/Exploit-Favorites
  Flooder (1)
    YIM-Flood
  Generic (20)
    BackDoor-EE.gen
    BackDoor-BAC.gen
    Spy-Agent.bv.gen
    Spy-Agent.ba.gen.a
    Qhost-Gen
    bobax.gen
    Spy-Agent.ba.gen.b
    Spy-Agent.ba.gen.e
    DNSChanger.gen
    Generic.dx
    Swizzor.gen
    Spy-Agent.gen
    PWS-Mmorpg.gen
    BackDoor-AXJ.gen
    hackerdefender.gen
    PWS-Banker.gen.bw
    Tibs-Packed
    Spy-Agent.ba.gen.c
    Spy-Agent.ba.gen.d
    Spy-Agent.cj.gen
  Heuristic (1)
    New Malware-e
  Malware Tool (2)
    NTRootKit-AA
    RootKit-NTIllusion
  Password (3)
    PWS-LegMir
    PWS-QQPass
    PWS-LDPinch
  Password Stealer (11)
    PWS-QQRob
    PWS-JA
    PWS-Banker
    PWS-OnlineGames.h
    PWS-Banker.bm
    PWS-OnlineGames.aa
    PWS-Banker.gen.i
    PWS-OnlineGames.a
    PWS-WoW
    PWS-Lineage
    PWS-OnlineGames.x
  Remote Access (19)
    BackDoor-ACH
    BackDoor-AQF
    BackDoor-ASB
    Generic BackDoor
    BackDoor-AMQ
    BackDoor-CCL
    BackDoor-AWQ.b
    BackDoor-AVW
    BackDoor-AWQ
    BackDoor-CHC
    Netbus.svr
    BackDoor-TC
    BackDoor-AZZ
    BackDoor-DND
    BackDoor-CZP
    BackDoor-CQN
    BackDoor-CMQ
    BackDoor-CYT
    BackDoor-CEP
  Script (1)
    Generic Downloader.z
  Settings Change (1)
    Generic StartPage
  Spyware (2)
    Keylog-Perfect.dr
    Keylog-SCLog
  StartPage (1)
    StartPage-FY
  Win32 (16)
    AdClicker-H
    Generic Downloader.b
    Generic Downloader.a
    ServU-Daemon
    HackerDefender
    Generic Downloader.c
    Generic VB.b
    Generic Downloader.d
    Spy-Agent.bf
    Puper
    ShipUp
    Generic PWS.y
    Pakes
    Generic Downloader.ab
    Vundo
    Uploader-AH
Virus (36)
   (1)
    Spy-Agent.cf!eml
  Application extension (1)
    W32/HLLP.Philis.dll
  Downloader Worm (1)
    W32/Sdbot.worm.dldr
  Dropper (1)
    W32/Feebs.dr
  E-mail worm (1)
    W32/Feebs.gen@MM!61688
  Email (2)
    W32/Stration@MM
    W32/Nuwar@MM
  Email Generic (4)
    W32/Netsky.gen@MM
    W32/Lovgate.gen@MM
    W32/Mytob.gen@MM
    W32/Feebs.gen@MM
  Generic (7)
    W32/IRCbot.gen!F3E69DA4
    W32/IRCbot.gen
    W32/Zhelatin.gen
    W32/IRCbot.gen.a
    W32/IRCbot.gen.f
    W32/Bagle.gen
    W32/IRCbot.gen.b
  Generic Worm (5)
    W32/Sdbot.worm.gen
    W32/Sdbot.worm.gen.h
    W32/Sdbot.worm.gen.ay
    W32/Gaobot.worm.gen.ca
    W32/Sdbot.worm.gen.ax
  Heuristic (1)
    New Win32.g4
  Internet Worm (1)
    W32/Sdbot.worm
  Overwriting (1)
    W32/RAHack
  Rootkit (1)
    W32/Feebs!rootkit
  VbScript (1)
    New Script
  Win32 (2)
    New Win32.g5
    New Win32.g6
  Worm (6)
    W32/Gaobot.worm.gen
    W32/Gaobot.worm!811a7027
    W32/YahLover.worm
    W32/Sachy.worm
    VBS/Autorun.worm.bj
    W32/Autorun.worm.g