Content

DAT Readme

Download the latest anti virus definitions for McAfee® VirusScan®. Ensure your McAfee® product contains the most up-to-date detection and prevention.
http://www.mcafee.com/apps/downloads/security_updates/dat.asp

Latest Update
DAT Version 5656
DAT Release Date 06/24/2009
Threats Detected 536795
New Detections 501
Enhanced Detections 226

Enhanced detections are those that have been modified for this release. Detections are enhanced to cover new variants, optimize performance, and correct incorrect identifications.

Noteworthy threats are those that had an Avert risk assessment of Low-Profiled, Medium, Medium-On-Watch, High, or High-Outbreak at the time of DAT release.

Noteworthy Threats:

Name Corporate Risk Assessment Home Risk Assessment
There are no noteworthy threats in this release

New Detections:

Program (41)
- (7)
DeepDive!a53cb747cff0
Generic PUP.x!p!5bb3de00b351
Generic PUP.z!k!ef449a77034b
Generic PUP.x!994e54abab4a
DeepDive.gen.b!dbbc0641d956
Generic PUP!hv.b!a39a5f2e7a6b
Generic PUP.x!p!99002da9b181
Adware (33)
Adware-BDSearch.b!2835604f9555
Adware-Cometsys!b3a24959c482
Adware-CommonName.dll!f349c72685e4
Adware-CommonName.dll!8c0f5577ac9d
Adware-ValueAd!a18c143b6fad
Adware-Cinmus.gen.l!fdc7dce65b8e
Adware-Cinmus.gen.a!9872b848bf46
Adware-CommonName.dll!1e275e5db7cf
Adware-TryMedia!d91e2a88aec3
Adware-TryMedia!e4e92d032df5
Adware-Fenomen!c9756bfa9ad3
Adware-TryMedia!fcd46b52c577
Adware-Fenomen!c9b7adf90c92
Adware-Fenomen!c9cb40493dbe
Adware-Cinmus.gen.c!a7863fa07b23
Adware-Fenomen!ea8043b9c679
Adware-Fenomen!ef209dd62dfc
Adware-Fenomen!f08d4811acdd
Adware-Fenomen!c63838c76c7f
Adware-TryMedia!c7ff4eb6fec7
Adware-Fenomen!dfc5bad171e7
Adware-Fenomen!f80ebadc0e82
Adware-TryMedia!faf0484f780e
Adware-CWS!fad2833ed3f8
Adware-TryMedia!d0e07aaeba3d
Adware-Cinmus.gen.c!95e73a0d4d4f
Adware-Cinmus.gen.e!9bb886de72e4
Adware-Cinmus.gen.c!a16d851644cf
Adware-Cinmus.gen.c!a792cf3d8c30
Adware-Cinmus.gen.c!a83d42234b93
Adware-Fenomen!f255647555de
Adware-Fenomen!c6817b038484
Adware-Fenomen!f7c9b3a62b8c
Heuristic (1)
Adware-Newweb!c0adc599eba7
Trojan (116)
(3)
Generic.dx!oq
Generic.dx!or
StealthMBR.b
- (70)
BackDoor-AWQ.b!z!b424af3fe24a
DNSChanger.gen.a!97137fa27e17
DNSChanger.gen.a!9bafb02cdc14
DNSChanger.gen.a!b541f7c4c2d1
FakeAlert-BD!9bdc5415ae27
BackDoor-AWQ.b.gen.i!704f85c257b3
Generic Dropper!bz!30e3e32946d8
BackDoor-DVR.gen.a!fa630d5fba98
Generic.dx!db!2a915989fe81
Generic BackDoor!ck!b92eae7b532c
FakeAlert-BB!2910b41aaf08
Generic.dx!bi!4a8376fbddb2
BackDoor-AWQ.svr.gen.e!0ec12d003e3f
Generic.dx!mz!c6a99f55168d
Generic.dx!a881b928c13b
BackDoor-DOQ.gen.c!05ae0f138e01
BackDoor-DKI.gen.s!97f3063ba496
DNSChanger.gen.a!b8839097f4f9
Generic.dx!de276d813e50
Generic AdClicker.g!6ca94c6119d6
Spy-Agent.cj!e8726f86d3fa
Generic Dropper!a5b291026ce7
Backdoor-DVC!ae2381707f09
Cutwail.gen.b!a1abf429b928
Generic BackDoor!bc!b285589a594f
Generic.dx!97c4cc64ced8
Cutwail.gen.b!bdf096bb9a90
Cutwail.gen.b!fc1c1fa8a39a
Cutwail.gen.b!f447dc2d5d15
Generic.dx!mw!066d8585c71c
Generic Dropper!b1a2dd5d4fc0
Generic.dx!bz!08b07e97ef97
BackDoor-DUS!a359232d9ca0
Generic Dropper.bn!1a8f49106666
DNSChanger.gen.a!2c836b021dc4
DNSChanger.i!a9c8879a87dc
DNSChanger.gen.a!f1dc5dae22e6
BackDoor-CKB.gen.aa!2011658a74fa
Generic Dropper.ea!25bcc43bbb61
Generic.dx!na!bb48b379479e
BackDoor-DUG.a!5ac3d628e4c7
Generic.dx!97f833d821a5
Cutwail.gen.b!48dd9eed0d12
Cutwail.gen.b!8b5d4a46f36d
Backdoor-CEP.gen.r!29ab452ed6a2
Generic.dx!9ad2787c225e
FakeAlert-CM!2d223adee1e8
Generic BackDoor!bl!b283e221bfaa
Generic.dx!mv!7c9b71cfe080
Generic Dropper!cf!7e9b46fdfc0c
FakeAlert-CM!bd4341db37cd
FakeAlert-CM!cac040e49e1b
Generic.dx!mz!377aca94d862
Vundo.gen.ab!e8aaa50e457b
Generic.dx!0ba31432867f
FakeAlert-CM!c7b0da0816a4
Spy-Agent.dt!0fe1edc3f4ab
Generic.dx!mv!b62a6dadf2f3
Generic Dropper.cx!d53c263f6a1e
BackDoor-DWM!d2f3064918f1
Cutwail.gen.b!8b20f5718f4e
Generic.dx!mm!1c0fa912165b
AdClicker-GI!a193c3ecb433
FakeAlert-CM!e0cf382b8d7a
FakeAlert-CM!e9c3a6d211e1
FakeAlert-CM!fccabb9954c4
BackDoor-CEP!v!d2a158e8dc5a
FakeAlert-CM!b777ae5ef365
FakeAlert-WinwebSecurity.a!bf26ab804c34
FakeAlert-CM!d53422d01f08
Downloader (13)
Generic Downloader.x!dy!6f9a6b2ed136
Downloader-BOI!a9e9c1eb57da
Downloader-BPZ!eb26fd8b7089
Downloader-ABO!56909510730d
Downloader-BON!9aab8bf7d771
Downloader-BPJ!fe3e71533031
Downloader-BPJ!63d873b4adcf
Generic Downloader.x!ew!f52f60f6724b
Downloader-BRE
Downloader-BRD
Downloader-BRC
Generic Downloader.x!el!bcce76ffd3ab
JS/Downloader-AH
Dropper (2)
BackDoor-CKB.dr!7ef20f38d405
BackDoor-CZP.dr!813d348eaf3a
Generic (7)
BackDoor-AWQ.b.gen!c037345b2932
BackDoor-AWQ.b.gen!39ea6aabd4b3
Keylog-Spynet.gen.a
Generic Dropper.gr
BackDoor-CKB.gen.aa
PWS-LDPinch.gen.f
Downloader-BRB.gen
Password (8)
Generic PWS.ak!5dbda04f3c94
PWS-Lineage!aa3d09420e91
Generic PWS.ak!3ee9710a05fa
PWS-Mmorpg.gen!a1f88e991b5a
PWS-Mmorpg!v!d82beb882403
PWS-Mmorpg!v!c1e47f796ef8
PWS-Mmorpg!v!ebe4232d1fba
Generic PWS.y!ch!53d9b84d6a8a
Remote Access (3)
BackDoor-AWQ.b!da
BackDoor-DZA
BackDoor-DXA
Spam (2)
Spam-Mailbot.l!a4e78d691a35
Spam-Mailbot.l!9c67d432228f
StartPage (1)
Generic StartPage!f!e911b5ac72ea
Win32 (7)
Generic VB.x
FakeAlert-EM
FakeAlert-EK
Generic VB.y
FakeAlert-EN
FakeAlert-EL
Generic Dropper.gq
Virus (10)
- (7)
W32/Autorun.worm.aac!9719203df83e
W32/Autorun.worm.aac!9afe70548dbd
W32/Autorun.worm.aac!98bce80a5d86
W32/Autorun.worm.aac!a08c3027bf7e
W32/Autorun.worm.cu!aa972e198896
W32/Autorun.worm!z!9eb198d9fec4
W32/Fujacks!fc7f5bf5bee2
Generic (2)
W32/Sdbot.worm.gen!e4f8d63e720a
W32/IRCbot.gen.aa
Worm (1)
W32/Koobface.worm!95c955616f97

Enhanced Detections:

Internet Worm (1)
Internet Relay Chat Worm (1)
W32/Sdbot.worm!54D1EEB9
Program (4)
(2)
Generic PUP.z!n
Generic PUP.x!q
Adware (1)
Adware-Zeno!a
ProcKill (1)
ProcKill-DO
Trojan (81)
(17)
Generic AdClicker.g
Generic Proxy!a
Generic FakeAlert!htm
Generic Downloader.cw
DNSChanger!s
Generic.dx!ne
Swizzor!bg
Puper!k
Generic StartPage!f
Generic FakeAlert!a
Generic.dx!on
Generic Dropper!co
Generic BackDoor!cx
Generic Downloader.x!gc
Generic PWS.y!cs
Generic Downloader.x!bh
Generic.dx!op
- (1)
NTRootKit-J
Application extension (1)
Keylog-Ardamax.dll!a
Configurator (2)
MultiDropper-IK.cfg
MultiDropper-JE.cfg
Downloader (2)
Downloader-BLE!a
Downloader-BPB
Dropper (5)
MultiDropper-IK
MultiDropper-JE
MultiDropper-JX
PWS-Banker.gen.bq.dr
Keylog-Perfect.dr!e
Exploit (5)
Exploit-PDF.b
Exploit-CVE2007-0071
Exploit-PDF.n.gen
Exploit-Archive
Exploit-CVE2007-3899
Generic (3)
Cutwail.gen.b
Swizzor.gen.c
Skintrim.gen.a
Heuristic (1)
New Malware.ai
Password Stealer (8)
PWS-Banker.bk
PWS-LDPinch!g
PWS-LDPinch!e
PWS-LDPinch!i
PWS-JA!c
PWS-Banker!do
PWS-Mmorpg!bc
PWS-Mmorpg!c
Proxy (1)
W32/Busan.worm.d!proxy
Remote Access (11)
BackDoor-ALD
BackDoor-FA
BackDoor-CDC!a
BackDoor-AVW!g
BackDoor-CEP!w
BackDoor-CEP!x
BackDoor-DWZ
BackDoor-AWQ.b!cu
BackDoor-CEP!c
BackDoor-AWQ.b!e
BackDoor-AWQ.b!d
Script (1)
Generic Downloader.z
Win31 (1)
Generic Downloader.z!1516DDBD
Win32 (22)
Generic Downloader.d
Generic Downloader.dm
Generic BackDoor!d
Generic Dropper!c
Generic VB.i
Cutwail
W32/Virut!htm
Spy-Agent.bw
Generic PWS.o
Generic BackDoor.u
Generic Downloader.ab
Generic Dropper.aa
DNSChanger!r
DNSChanger.ad
Generic.dx!ip
Generic.dx!nw
Generic VB.w
Generic Dropper.gp
FakeAlert-DI
Generic StartPage!c
Generic BackDoor!e
FakeAlert-CK
Virus (140)
(1)
HERM1
Application extension Worm (4)
W32/Busan.worm.dll
W32/Busan.worm.b.dll
W32/Busan.worm.a.dll
W32/Busan.worm.d.dll
E-mail (4)
W32/Coronex.worm.gen
W32/Mimail.m@MM
W32/Mimail.l@MM
W32/Mimail.t@MM
E-mail worm (9)
W32/Mimail.e@MM
W32/Mimail.gen@MM
W32/Mimail.i@MM
W32/Mimail.j@MM
W32/Mimail.c@MM
W32/Mimail.q@MM
W32/Mimail.p@MM
W32/Mimail.s@MM
W32/Atak.b@MM
Email (16)
W32/Mimail.h@MM
W32/Mimail.g@MM
W32/Mimail.f@MM
W32/Mimail.o@MM
W32/Mimail.n@MM
W32/Mimail.d@MM
W32/Mimail.b@MM
W32/Atak.c@MM
W32/Atak.a@MM
W32/Mimail.v@MM
W32/Rontokbro@MM!a
W32/Atak.f@MM
W32/Atak.h@MM
W32/Atak.g@MM
W32/Atak.k@MM
W32/Stration@MM!a
Email Generic (2)
W32/Atak.gen@MM
W32/Mytob.gen@MM
Floppy Worm (1)
W32/Axatak.worm
Generic (4)
W32/Virut.n.gen
W32/Bugfixer.gen
W32/IRCbot.gen.a
IRC/Flood.gen.zz
Generic Peer To Peer Worm (1)
W32/Shower.worm.gen!p2p
Generic Worm (9)
W32/EnerKaz.worm.gen
W32/Nilit.worm.gen
W32/Rirc.worm.gen
W32/Kelvir.worm.gen
W32/Conficker.worm.gen.a
W32/Autorun.worm.bz.gen
W32/Fesber.worm.gen
W32/Autorun.worm.i.gen
W32/Autorun.worm.zf.gen
Heuristic (1)
New Script.ext
Internet Worm (6)
W32/Raleka.worm
W32/Petch.worm!irc
W32/Kelvir.worm.c
W32/Kelvir.worm.b
W32/Atak.d@MM
W32/Kelvir.worm.dq
P2P Worm (1)
W32/Darker.worm!p2p
Peer To Peer Worm (1)
W32/Grandspot.worm!p2p
VbScript (1)
New Script
Win32 (3)
W32/Torun
W32/Mimail.u
W32/Checkout!a
Worm (76)
W32/Kelvir.worm.ew
W32/Mygel.worm
W32/Nilit.a.worm
W32/Nilit.b.worm
W32/Nilit.c.worm
W32/Cosol.worm
W32/Nilit.d.worm
W32/Mellon.worm
W32/Nilit.f.worm
W32/Nilit.e.worm
W32/Nilit.g.worm
W32/Nilit.j.worm
W32/Nilit.i.worm
W32/Nilit.h.worm
W32/Zackfoo.worm.c
W32/Zackfoo.worm.b
W32/Zackfoo.worm.a
W32/Nilit.k.worm
W32/Nilit.l.worm
W32/Busan.worm.b
W32/Busan.worm.a
W32/Nilit.n.worm
W32/Nilit.m.worm
W32/Nilit.o.worm
W32/Busan.worm.d
W32/Kelvir.worm nn
W32/Kelvir.worm.ea
W32/Kelvir.worm.ff
W32/Autorun.worm.bm
VBS/Autorun.worm.k
W32/Kelvir.worm.bg
W32/USBAuto.worm!rootkit
Bat/Autorun.worm.h
VBS/Autorun.worm.zs
W32/Kelvir.worm.d
W32/Kelvir.worm.fk
W32/Kelvir.worm.fj
W32/Kelvir.worm.fh
W32/Kelvir.worm.fi
W32/Kelvir.worm.g
W32/Kelvir.worm.k
W32/Kelvir.worm.j
W32/Sdbot.worm.gen.ax
W32/Kelvir.worm.a
W32/Kelvir.worm.cm
W32/Kelvir.worm.ck
W32/Kelvir.worm.cj
W32/Kelvir.worm.o
W32/Kelvir.worm.n
W32/Kelvir.worm.s
W32/Kelvir.worm.l
W32/Kelvir.worm.m
W32/Kelvir.worm.t
W32/Kelvir.worm.cn
W32/Kelvir.worm.cw
W32/Kelvir.worm.cz
W32/Kelvir.worm.ak
W32/Kelvir.worm.co
W32/Kelvir.worm.cx
W32/Kelvir.worm.ab
W32/Kelvir.worm.dc
W32/Kelvir.worm.dg
W32/Kelvir.worm.dv
W32/Kelvir.worm.dj
W32/Kelvir.worm.fu
W32/Kelvir.worm.fs
W32/Kelvir.worm.ft
W32/Pinom.worm!backdoor
W32/Setex.worm
W32/Rayl.worm
W32/Kelvir.worm.dz
W32/Autorun.worm.h
W32/Sdbot.worm!bh
W32/Spybot.worm!l
W32/Autorun.worm!bc
W32/Nirbot.worm!a