Content

DAT Readme

Download the latest anti virus definitions for McAfee® VirusScan®. Ensure your McAfee® product contains the most up-to-date detection and prevention.
http://www.mcafee.com/apps/downloads/security_updates/dat.asp

Latest Update
DAT Version 5759
DAT Release Date 10/02/2009
Threats Detected 573761
New Detections 50
Enhanced Detections 588

Enhanced detections are those that have been modified for this release. Detections are enhanced to cover new variants, optimize performance, and correct incorrect identifications.

Noteworthy threats are those that had an Avert risk assessment of Low-Profiled, Medium, Medium-On-Watch, High, or High-Outbreak at the time of DAT release.

Noteworthy Threats:

Name Corporate Risk Assessment Home Risk Assessment
Downloader-BQZ.a Low-Profiled Low-Profiled

New Detections:

Trojan (1)
  Win32 (1)
    Downloader-BQZ.a

Enhanced Detections:

- (1)
  - (1)
    X97M/Jal
Internet Worm (1)
  Remote Access (1)
    BackDoor-DKA
Malware (1)
  Exploit (1)
    PWS-Agent.g
Program (128)
   (57)
    VSource.Laroux
    VObj9
    VObj5
    VObj6
    VObj11
    Tool/nik
    VObj22
    VText.18a
    VText.17c
    VText.17b
    VText.16a
    VText.13
    VText.11a
    VText.9a
    VText.8b
    VText.8a
    VText.4b
    VText.3c
    VText.3b
    VText.3a
    VText.2d
    VText.2c
    VText.2a
    Hacker's Choice
    VText.5
    VText.4a
    VText.2b
    VMag30
    VMag26
    VMag14
    Tool/nosh
    VMag27
    VMag11
    VMag9
    Gigi.b
    Tool/deh
    VMag34
    VMag44
    VMag43
    VSource/Tsunami
    Tool/av2
    VMag2
    VMag1
    V-HTM.d
    V-HTM.c
    V-HTM.b
    Tool/av1
    VMag54
    VMag51
    VMag53
    VMag62
    VMag56
    Generic PUP.x!bj
    Generic PUP.z!bc
    Generic PUP.z!bd
    Generic PUP.z!bf
    Generic PUP.x!bn
  Adware (1)
    Adware-Cinmus!l
  Demonstration (1)
    Demo-Hello
  Joke (1)
    Joke-FakeDOS
  Malware Tool (64)
    VTool/av20
    VTool/bar
    VTool/mbc1
    VTool/vzu
    VTool/vgn2
    VTool/tpe2
    VTool/tpe1
    VTool/sal
    VTool/hwi
    VTool/paw2
    VTool/exp
    VTool/api
    VTool/inv
    VTool/tun
    VTool/att
    VTool/ren
    HTool/ahk2
    HTool/crm
    VTool/Demovir
    VTool/hatr
    VTool/dat9
    VTool/av23
    VTool/slam1
    VTool/sdne3
    VTool/sdne1
    VTool/pinfo
    VTool/duk21
    VTool/dat11
    VTool/dat10
    VTool/av27
    VTool/av34
    HTool/thc5
    HTool/thc2
    HTool/dialhk11
    HTool/dialhk6
    HTool/dialhk18
    VTool/ape
    VTool/xin
    VTool/wid
    VTool/rsi
    VTool/hwi2
    VTool/drm2
    VTool/ana
    VTool/nlv
    VTool/ffi
    VTool/pol3
    VTool/dgm
    VTool/drm1
    VTool/joy
    VTool/gdd
    VTool/fake
    VTool/buster
    VTool/arcv2
    VTool/tfs
    HTool/cru
    VTool/pw
    VTool/twv
    VTool/pol9
    VTool/pol8
    VTool/eyb
    VTool/kuang
    HTool/tft
    HTool/msgr
    VTool/LaPatch.kit
  Object (1)
    VObj10
  Script (1)
    Tool/fmt8
  Win32 (2)
    Generic PUP.x
    Generic PUP.z
Trojan (255)
   (36)
    Generic.dx!f
    B2C/Killer
    ASP/Raph
    B2C/Seq
    Generic BackDoor!j
    Generic.dx!g
    Generic PWS.ak
    Generic Del.x!a
    Ransom!bm
    Generic Dialer!h
    FakeAlert-HO
    Vundo!df
    Generic StartPage!bb
    DNSChanger!bv
    Generic Proxy!m
    Generic Dropper!g
    DNSChanger
    Generic PWS.ao
    Generic Exploit!g
    Generic PWS.bg
    Generic Qhost!j
    Generic.dx!etj
    Generic StartPage!bj
    Generic FakeAlert!cm
    Generic PWS.y!za
    Puper!ba
    Generic.dx!fmc
    Generic Dropper!bcq
    Generic Downloader.x!bjb
    Generic.dx!fly
    Generic Downloader.x!bix
    Generic.dx!fmd
    Generic Downloader.x!bjc
    Generic Dropper!bcr
    Swizzor!dh
    Generic BackDoor!bba
  Application extension (2)
    Keylog-Ardamax.dll!q
    BackDoor-DTE.dll
  Application extension Generi (2)
    PWS-LegMir.gen.k.dll
    PWS-QQPass.dll.gen
  Client (1)
    IRC/BackDoor-Sub7.cli
  Configuration file (1)
    Generic!atr
  Demonstration (1)
    JS/Exploit-Script.demo
  Dialer (1)
    QDial-45!a
  Downloader (5)
    PWS-Banker.dldr
    Downloader-BVV
    Downloader-BVF
    Downloader-BLV
    JS/Downloader-AH
  Downloader Generic (1)
    BackDoor-DKI.dldr.gen
  Dropper (13)
    Generic Dropper
    Bat/qd36.dr
    Bat/tenej.c.dr
    JS/Zecho.dr
    PWS-Gamania.dr
    PWS-LDPinch.dr
    Bat/tenej.b.dr
    BackDoor-CKB.dr
    Downloader-ASE.dr
    Bat/avk62.dr
    BackDoor-DUI.dr
    Generic PWS.bc.dr
    BackDoor-DVM.dr
  Exploit (1)
    Exploit-PDF.b
  Generic (46)
    Backdoor-DVO.gen
    BackDoor-CEP.gen.h
    BackDoor-CEP.gen.g
    PWS-Gamania.gen.i
    BackDoor-CKB.gen.k
    BackDoor-DKI.gen
    PWS-Gamania.gen.j
    BackDoor-BAC.gen.f
    Backdoor-CEP.gen.i
    PWS-Gamania.gen.l
    BackDoor-CKB.gen.d
    PWS-OnlineGames.an.gen
    BackDoor-CMQ.gen.a
    BackDoor-CKB.gen.e
    BackDoor-DVB.gen.b
    PWS-Banker.gen.bw
    BackDoor-CKB.gen.b
    BackDoor-CQN.gen
    BackDoor-CEP.gen.n
    PWS-OnlineGames.eb.gen.b
    Backdoor-CEP.gen.p
    BackDoor-DOQ.gen.e
    BackDoor-CEP.gen.a
    BackDoor-CKB.gen.c
    PWS-Banker.gen.ci
    Generic.dx
    BackDoor-DKI.gen.t
    PWS-Gamania.gen.h
    PWS-Gamania.gen.c
    PWS-Gamania.gen.o
    PWS-Zbot.gen.j
    BackDoor-DWH.gen
    PWS-Zbot.gen.p
    BackDoor-DVT.gen.a
    Vundo.gen.bn
    BackDoor-EEC.gen
    BackDoor-DKI.gen.m
    PWS-Gamania.gen.k
    BackDoor-CKB.gen.p
    PWS-Gamania.gen.f
    Exploit-PDF.b.gen
    Backdoor-CEP.gen.v
    Backdoor-CEP.gen.ai
    BackDoor-DOQ.gen.i
    BackDoor-CKB.gen.ag
    BackDoor-EBI.gen
  Generic Server (1)
    BackDoor-AWQ.svr.gen.f
  Generic Worm (2)
    W32/Autorun.worm.bx.gen
    W32/Yahlover.worm.gen.d
  Heuristic (1)
    Unsafe Bat
  Internet Relay Chat (2)
    IRC/Flood.m
    IRC/Flood.ci
  Macro (3)
    W97M/Zmk.d
    W97M/Tulu
    W97M/Mumba
  Password (1)
    PWS-LDPinch
  Password Stealer (32)
    PWS-LegMir.gen.k
    PWS-OnlineGames.ce
    PWS-OnlineGames.ca
    PWS-OnlineGames.h
    PWS-OnlineGames.ei
    PWS-OnlineGames.ec
    PWS-OnlineGames.dx
    PWS-OnlineGames.de
    PWS-OnlineGames.dg
    PWS-Banker.bm
    PWS-OnlineGames.el
    PWS-OnlineGames.aa
    PWS-Zbot
    PWS-OnlineGames.cb
    PWS-OnlineGames.bj
    PWS-OnlineGames.bu
    PWS-Banker!htm
    PWS-OnlineGames.q
    PWS-OnlineGames.bp
    PWS-OnlineGames.cq
    PWS-Banker.cr
    PWS-OnlineGames.fh
    PWS-JA!d
    PWS-Banker!c
    PWS-Gamania.gen.g
    PWS-Banker.cs
    PWS-OnlineGames.fk
    PWS-LDPinch!bf
    PWS-Mmorpg
    PWS-Mmorpg!gn
    PWS-Banker!bxm
    PWS-Banker!byh
  Remote Access (45)
    BackDoor-DTE
    BackDoor-DOQ
    BackDoor-CZF
    BackDoor-AMQ!a
    BackDoor-CZP!a
    BackDoor-EE!a
    BackDoor-BAC!a
    BackDoor-DVB
    Backdoor-DUZ
    BackDoor-DTL.sys
    BackDoor-DTM
    BackDoor-CZP!c
    BackDoor-DWH
    BackDoor-DVX
    BackDoor-DVT
    BackDoor-CDC!a
    BackDoor-CMI!a
    BackDoor-DUS
    BackDoor-DTX
    BackDoor-DSX
    BackDoor-CKB
    BackDoor-DWJ
    BackDoor-DRW
    BackDoor-CVM!sys
    BackDoor-DZK
    BackDoor-EAH
    BackDoor-EAE
    BackDoor-CEP!bq
    BackDoor-EBH
    BackDoor-ECD
    BackDoor-EDE
    BackDoor-CMQ!c
    BackDoor-DVC
    BackDoor-DUT
    BackDoor-DTD
    BackDoor-DZC
    BackDoor-DZP
    BackDoor-AWQ.j
    BackDoor-EBC
    BackDoor-AVW!t
    BackDoor-EEF
    BackDoor-EEC
    BackDoor-AWQ.b!bmx
    BackDoor-CEP!ig
    BackDoor-AWQ.b!bnc
  Script (36)
    Bat/nod
    Bat/dt7
    Bat/wfr
    Bat/csp
    Bat/qd34
    Bat/ren1
    Bat/qd213
    VBS/Phat
    JS/Dista
    Bat/esec3
    Bat/esec2
    Bat/qd281
    Bat/hogy
    Bat/qd225
    Bat/tenej.c
    Bat/tenej.b
    Bat/tenej.a
    Bat/esec7
    JS/Dooler
    Bat/qd63
    Bat/qd62
    Bat/qz38
    Bat/loop16
    Bat/emi
    Bat/nonst2
    Bat/inic
    Bat/dt104
    Bat/qz115
    Bat/qz123
    Bat/rb4
    Generic Downloader.z
    Bat/klw28
    Bat/dt160
    Bat/klw18
    Bat/qkc
    Bat/avk29
  Server (1)
    BackDoor-RV.svr
  Spyware (1)
    Generic Spy.e
  StartPage (1)
    StartPage-CQ!a
  Win31 (1)
    Generic Downloader.z!1516DDBD
  Win32 (18)
    FakeAlert-XPSecCenter
    W32/Mariofev!mem
    Generic VB.i
    Generic PWS.bb
    Generic FakeAlert.a
    Generic FakeAlert.c
    Generic PWS.y
    Generic Downloader.x
    Generic VB.c
    W32/Pinkslipbot!rootkit
    FakeAlert-CN
    Koutodoor
    FakeAlert-FV
    Generic PWS.bq
    FakeAlert-IS
    FakeAlert-HT
    Generic PWS.ch
    FakeAlert-IM
Virus (185)
   (19)
    HLLT.5731a
    HLL.Team
    HLL.5612a
    HLLT.8938a
    HLLT.7728
    HLLT.5760
    HLLT.4884
    HLLT.Inna.8224
    Generator.Spirit
    HLLT.Weed.4080a
    HLLT.7390
    HLLT.Inna.6928
    HLLT.Inna.5283
    HLLT.Inna.7360
    HLL.sub
    HLLT.DNazi.8665
    MacHC/Independance
    HLL.Almat
    Generic!Artemis
  Configuration settings (1)
    VBS/Swod.ini
  Damaged (2)
    W97M/Minimal.dam
    W97M/Bablas.dam
  Dropper (2)
    HLL.8209b.dr
    HLLT.Weed.dr
  E-mail (1)
    VBS/Chick.c@M
  E-mail worm (5)
    VBS/Chick.e@M
    VBS/Chick.g@M
    VBS/Chick.d@M
    VBS/Chick.f@M
    VBS/Chick.h@M
  Email (6)
    VBS/Chick.j@M
    W32/Lovgate@MM!a
    VBS/Chick.i@M
    VBS/Chick.m@M
    W32/Xirtem@MM!8b1f20b9
    W32/Mytob@MM!a
  Generic (5)
    W97M/Minimal.gen
    W32/Virut.n.gen
    W97M/Thus.gen
    IRC/Sleeper.gen
    VBS/Chick.gen
  Generic Worm (2)
    W32/Sdbot.worm.gen
    W32/Autorun.worm.bz.gen
  Intended (6)
    W97M/Minimal.bh.intd
    VBS/Chick.l.intd
    VBS/Chick.o.intd
    VBS/Chick.k.intd
    X97M/Brandy.intd
    VBS/Chick.n.intd
  Internet Relay Chat (2)
    IRC/Edo
    IRC/Stages
  Internet Worm (2)
    W32/Sdbot.worm
    New IRC
  Macro (68)
    W97M/Minimal.bu
    W97M/Bablas
    W97M/Reiz
    X97M/Beliers.gen
    W97M/Newhope.gen
    W97M/Minimal.bs
    W97M/Minimal.at
    W97M/Minimal.ax
    W97M/Minimal.bj
    W97M/Minimal.v
    W97M/Minimal.bg
    W97M/Minimal.be
    W97M/Minimal.bc
    W97M/Minimal.ba
    W97M/Minimal.ay
    W97M/Minimal.an
    W97M/Minimal.am
    W97M/Minimal.ad
    W97M/Minimal.w
    W97M/Minimal.r
    W97M/Minimal.m
    W97M/Minimal.i
    W97M/Minimal.q
    W97M/Minimal
    W97M/Minimal.o
    W97M/Minimal.j
    W97M/Minimal.f
    W97M/Minimal.d
    W97M/Minimal.b
    W97M/Minimal.bv
    W97M/Minimal.bt
    W97M/Minimal.au
    W97M/Minimal.x
    W97M/Minimal.bf
    W97M/Minimal.bd
    W97M/Minimal.bb
    W97M/Minimal.az
    W97M/Minimal.ap
    W97M/Minimal.ao
    W97M/Minimal.al
    W97M/Minimal.ak
    W97M/Minimal.z
    W97M/Minimal.s
    W97M/Minimal.p
    W97M/Minimal.n
    W97M/Minimal.l
    W97M/Minimal.h
    W97M/Minimal.aa
    W97M/Minimal.u
    W97M/Minimal.t
    W97M/Minimal.k
    W97M/Minimal.g
    W97M/Minimal.e
    W97M/Minimal.c
    W97M/Minimal.a
    W97M/Minimal.bm
    W97M/Ant
    A97M/Astigma
    W97M/VMPCK1
    X97M/Bobmon
    W97M/Tema
    X97M/Nitkript
    W97M/Minimal.gv
    W97M/Minimal.ch
    W97M/Minimal.aw
    W97M/Minimal.he
    W97M/Bablas.EF
    VBA/Generic
  Malware Tool (2)
    Bat/harm.kit
    Bat/bvc.kit
  mIRC Worm (1)
    W97M/Wally.worm
  Overwriting (3)
    HLL.ow.6400
    HLL.ow.7538
    HLL.ow.10160
  Parasitic (4)
    W32/HLLP.Delvi
    HLLP.8928
    HLLP.7372
    HLLP.Feci.6000
  Partition (1)
    Half-Life
  Script (16)
    Bat/Trash
    VBS/Ardin
    Bat/h2t1
    VBS/Sudallic
    Bat/butt1
    Bat/butt2
    Univ.script/99c
    Univ.script/99b
    Univ.script/99a
    Apuli.reg
    Bat/nem
    Bat/Liberte
    VBS/Eskal
    Bat/sav
    VBS/San
    Bat/Mumol
  Unpacked (5)
    HLLT.4884.unp
    HLLT.7390.unp
    HLLT.Inna.5283.unp
    HLLP.7372.unp
    HLLT.DNazi.8665.unp
  VBScript worm (3)
    VBS/Chick.a@M
    VBS/Chick.b@M
    VBS/Redlof@M
  Win32 (8)
    W32/Virut.n!dam
    W32/Almanahe
    W32/RAHack!a
    W32/Fujacks.ay
    W32/Induc!a
    W32/Checkout!n
    W32/Waledac
    W32/Xpaj
  Worm (21)
    HLLW.Freemem.11052
    HLLW.5744
    HLLW.4459
    HLLW.4173
    HLLW.Freemem.7490
    HLLW.4739
    W32/Xirtem@MM
    W32/Gaobot.worm!a
    W32/Pinkslipbot
    W32/Pinkslipbot!dll
    W32/Autorun.worm.r
    W32/Autorun.worm
    W32/Autorun.worm.cp!bat
    W32/Spybot.worm
    W32/Autorun.worm.h
    W32/Autorun.worm.eu
    W32/Spybot.worm!bv
    W32/Sdbot.worm!db
    W32/Spybot.worm!bu
    W32/Sdbot.worm!ek
    W32/Autorun.worm!fl