Content

DAT Readme

Download the latest anti virus definitions for McAfee® VirusScan®. Ensure your McAfee® product contains the most up-to-date detection and prevention.
http://www.mcafee.com/apps/downloads/security_updates/dat.asp

DAT Version 4234
DAT Release Date 11/20/2002
Threats Detected 62363
New Detections 133
Enhanced Detections 81

Enhanced detections are those that have been modified for this release. Detections are enhanced to cover new variants, optimize performance, and correct incorrect identifications.

Noteworthy threats are those that had an Avert risk assessment of Low-Profiled, Medium, Medium-On-Watch, High, or High-Outbreak at the time of DAT release.

Noteworthy Threats:

Name Corporate Risk Assessment Home Risk Assessment
Downloader-BO.dr Low-Profiled Low-Profiled

New Detections:

Program (11)
   (2)
    Oeminfo
    Friend Greeting.cab
  - (2)
    Friend Greeting application (II)
    Friend Greeting application (III)
  Dialer (2)
    PornDial-98
    PornDial-97
  Malware Tool (1)
    PWCrack-ZIPBrute
  Script (3)
    Bat/ack
    Bat/ace
    Bat/acd
  Win32 (1)
    Friend Greeting.wise
Trojan (55)
   (2)
    Vendeta
    TKilda
  - (1)
    Socoten
  Disk erasing (4)
    QZap247
    QZap298
    QZap249
    QZap248
  Downloader (2)
    JS/Kubs
    IRC/Flood.s.dldr
  Dropper (3)
    Raco.dr
    Bat/abx.dr
    QDel297.dr
  File deleting (3)
    QDel50
    QDel298
    QDel299
  File Deletion (2)
    Bat/kil
    QDel297
  Generic (5)
    BackDoor-AMV.gen
    BackDoor-AMT.gen
    BackDoor-AMO.gen
    BackDoor-ALO.gen
    BackDoor-QT.gen
  Internet Relay Chat (1)
    IRC/Ataka
  Password Stealer (2)
    JS/PWS-Snix
    W32/Recerv.pws
  Remote Access (9)
    BackDoor-AMQ
    BackDoor-AMU
    BackDoor-AMV
    BackDoor-AMT
    BackDoor-AMS
    BackDoor-AMR
    BackDoor-AMO
    BackDoor-AMN
    BackDoor-AMM
  Script (17)
    VBS/Balon
    Bat/isu
    Bat/acj
    Bat/aci
    Bat/ach
    Bat/acg
    Bat/acf
    Bat/acc
    Bat/abz
    Bat/abx
    Bat/abv
    Bat/abu
    Bat/abt
    Bat/abr
    Bat/abq
    Bat/abp
    Bat/abo
  VbScript (1)
    Downloader-BO.dr
  Win32 (3)
    Diskfill-F
    W32/Socoten
    QUrl-1
Virus (67)
   (17)
    V2PX.1251a
    Zorm/f.1139
    Zorm/f.1123b
    Zorm/f.1123a
    Jeru.1244
    Intruder.1322
    Intruder.1317d
    Fanatik.2540
    Fanatik.2085
    Fanatik.1089
    Zhangfan.1535.e
    DVT.295
    DVT.294
    HLLT.6773
    HLLT.6496
    HLL.5371
    HLL.Kazaki
  Application extension (1)
    W32/Dupator.dll
  Boot (2)
    Wonky
    Winky
  Dropper (6)
    Bat/abn.dr
    Fanatik.drp
    ADI.dr
    Bat/wnw.dr
    W32/Recerv.b.dr
    W32/Recerv.a.dr
  Dropper Worm (1)
    W32/Join.worm.dr
  E-mail worm (1)
    W32/Braid.b@MM
  Email (7)
    W32/Chichis@MM
    W32/Netav.e@MM
    W32/Recerv.b@MM
    W32/Recerv.a@MM
    W32/Appix.h@MM
    Bat/Fable@MM
    W32/Alcarys.f@MM
  Email Generic (1)
    W97M/Service.gen@MM
  Floppy Worm (1)
    W32/Cunario.worm
  Intended (1)
    VBS/Fasan.intd
  Internet Worm (1)
    W32/Cezdas
  Macro (3)
    W97M/VD.a
    W97M/Shore.q
    W97M/Debilbyte.b
  multipartite (4)
    Thanksgiving.mp.1254
    Thanksgiving.mp.1253c
    Thanksgiving.mp.1253b
    Thanksgiving.mp.1253a
  Overwriting (1)
    HLL.ow.4864
  Partition (1)
    MNA
  Script (10)
    W32/Chiton.f.bat
    VBS/Yova
    VBS/Rexart
    VBS/Mill.j
    VBS/Dilan.d
    VBS/Brigen
    Bat/wnw
    Bat/abn
    Bat/gp.1599
    Bat/ab.2645
  Source code (1)
    W32/Join.src
  Unpacked (1)
    HLLT.6773.unp
  Win32 (1)
    W32/BinHe!tool
  Worm (6)
    W32/Ramada.worm
    HLLW.26808
    W32/Wunom.worm
    W32/Stup.worm
    W32/Nopadex.worm
    W32/Chili.worm

Enhanced Detections:

Program (3)
  Malware Tool (3)
    PWCrack-WinPWL
    PWCrack-Stoler
    PWCrack-SQLBrute
Trojan (14)
   (1)
    Pif/FormatC
  Application extension (1)
    PWS-SharaQQ.dll
  Configurator (1)
    QZap193.cfg
  Disk erasing (3)
    QZap191
    QZap165
    QZap193
  Dropper (1)
    QZap193.dr
  File deleting (4)
    QDel150
    QDel148
    QDel41
    QDel124
  Remote Access (2)
    BackDoor-ALJ
    BackDoor-ALO
  Win32 (1)
    Lola
Virus (64)
   (40)
    HLLT.6500
    Intruder.1319g
    Intruder.1319a
    Intruder.1317c
    Intruder.1317b
    Intruder.1317a
    Zorm/g
    Jeru.1241
    Jeru.1013
    Intruder.1856
    Intruder.522
    Intruder.1319d
    Intruder.1688
    Intruder.1312
    Intruder.1319c
    Intruder.2028
    Intruder.879
    Intruder.1413
    Intruder.1967b
    Intruder.2336
    Intruder.2051
    Intruder.2050
    Intruder.1988
    Intruder.1967a
    Intruder.1555
    Intruder.1440b
    Intruder.1440a
    Intruder.1355
    Intruder.1353
    Intruder.1336
    Intruder.1331
    Intruder.1319b
    Xeran.1664
    Guevara.1918
    Zorm/f.1203b
    Zorm/f.1203a
    Zorm/f.1193
    V2PX.1251
    Groupie.837
    Pif/Lys
  Boot (2)
    Quaint
    Antiexe
  Email (4)
    W32/Alcarys.d@MM
    W32/Alcarys.c@MM
    W32/Alcarys.b@MM
    W32/Alcarys.e@MM
  File Infector (2)
    W32/Braid.a@MM
    Intruder.1326
  Intended (1)
    VBS/Dilan.a.intd
  Macro (1)
    W97M/Debilbyte.a
  Overwriting (1)
    HLL.ow.6542
  Remote Access (1)
    Linux/Backdoor-Btrq
  Script (5)
    Bat/ab
    VBS/Dilan.c
    VBS/Dilan.b
    Bat/gn
    Bat/g.7
  VBScript worm (1)
    VBS/Gribble.worm
  Win32 (2)
    W32/Alcarys.a@MM
    W32/BinHe
  Win9x (2)
    W95/Marburg.b
    W95/Marburg.a
  Worm (2)
    W32/Cblade.worm
    W32/Join.worm