Content

DAT Readme

Download the latest anti virus definitions for McAfee® VirusScan®. Ensure your McAfee® product contains the most up-to-date detection and prevention.
http://www.mcafee.com/apps/downloads/security_updates/dat.asp

DAT Version 4236
DAT Release Date 12/04/2002
Threats Detected 62561
New Detections 165
Enhanced Detections 132

Enhanced detections are those that have been modified for this release. Detections are enhanced to cover new variants, optimize performance, and correct incorrect identifications.

Noteworthy threats are those that had an Avert risk assessment of Low-Profiled, Medium, Medium-On-Watch, High, or High-Outbreak at the time of DAT release.

Noteworthy Threats:

Name Corporate Risk Assessment Home Risk Assessment
W95/CIH.1106 Low-Profiled Low-Profiled
W32/Holar.c@MM Low-Profiled Low-Profiled

New Detections:

Malware (1)
  Exploit (1)
    Exploit-SQLhuc
Program (4)
   (2)
    Black-Harmer
    Simulated Virus
  - (1)
    RemoteProcessLaunch
  PornDialer (1)
    PornDial-101
Trojan (52)
   (4)
    QScreen5
    QClock
    QSD25
    Dark-Lord
  Configurator (2)
    MultiDropper-EV.cfg
    MultiDropper-EU.cfg
  Dropper (5)
    Bat/dt5.dr
    MultiDropper-EV
    MultiDropper-EU
    ProphoFake.dr
    IRC/Flood.bi.dr
  Exploit (3)
    Exploit-Zephyrus
    Exploit-Vecnoit
    Exploit-MSNdel
  File deleting (2)
    QDel300
    QDel351
  Flooder (4)
    FDoS-Ehipp
    FDoS-CrazyWorld
    FDoS-ChinBomb
    FDoS-AIMPunt
  Internet Relay Chat (2)
    IRC/Backdoor.c
    IRC/Flood.bj
  Macro (1)
    W97M/Npr.f
  Malware Tool (1)
    Nuke-HUC
  Remote Access (4)
    Backdoor-SubUpdater
    BackDoor-ANJ
    BackDoor-ANI
    BackDoor-ANH
  Script (20)
    Bat/set
    Bat/pfv
    Bat/jks
    Bat/rb1
    Bat/qz5
    Bat/plu
    Bat/nom
    Bat/joy
    Bat/csp
    Bat/rd1
    Bat/qz6
    Bat/qz4
    Bat/qz2
    Bat/dt3
    Bat/dt1
    Bat/qz3
    Bat/qz1
    Bat/dt5
    Bat/dt4
    Bat/dt2
  Win32 (4)
    ProphoFake
    ICQPager-H
    DDoS-WarezX
    AdClicker-I
Virus (108)
   (38)
    ARCV.Scroll.803
    VICE.4.One13c
    VCL.541
    Spice.2125a
    Seventh-Son
    Sailor-Mars.1113b
    Jerusalem.dy
    Jeru.1807d
    Fu Manchu.2080l
    Flu.2112b
    Emmie.2823a
    Cookie.2048
    BootDr227
    ARCV.668
    Anti-Pascal.401a
    Anti-Pascal.379
    Vbasic.5120.q
    Shadow.1172
    Riot.883
    Mururoa.3440
    Kellie.266
    China.882
    CFFL.2560
    HLL.8224
    Werewolf.1427
    Keypress.1225
    Jeru.1888c
    Iceland.1053
    BootDr228
    BootDr226
    ARCV.More
    Anticad.3013
    Anti-Pascal.400i
    Alicino.692
    Bastard.1983
    MacHC/Pickle
    MacHC/SpyVirus
    MacHC/TwoTunes
  Companion (2)
    Gambit.cmp
    W32/Hoa.cmp.16896
  Damaged (3)
    MacOS/nVIR.dam
    MacOS/nVIR.c.dam
    MacOS/nVIR.a.dam
  Demonstration (1)
    DSME.Demo.c
  Dropper (5)
    Angel.dr
    HLLP.1492.dr
    Trurl.dr
    Bat/or.dr
    W32/Rebec@MM.dr
  Dropper Intended (1)
    W32/Cervan.dr.intd
  E-mail worm (2)
    W32/Holar.b@MM
    W32/Holar.c@MM
  Email (3)
    W32/Fusic@MM
    JS/Nilit@MM
    Condric@MM
  Generic (3)
    MacOS/SevenDust.gen
    MacOS/nVIR.gen
    MacOS/MDEF.gen
  Generic Worm (1)
    W32/Mellon.worm.gen
  Intended (1)
    W32/Dove.intd
  Macintosh (19)
    MacOS/ZUC.b
    MacOS/WDEF.b
    MacOS/WDEF.a
    MacOS/SysX
    MacOS/SevenDust.d
    MacOS/SevenDust.c
    MacOS/SevenDust.b
    MacOS/SevenDust.a
    MacOS/nVIR.c
    MacOS/nVIR.a
    MacOS/MDEF.d
    MacOS/MBDF.b
    MacOS/ZUC.c
    MacOS/ZUC.a
    MacOS/INIT29.b
    MacOS/CDEF.b
    MacOS/MBDF.a
    MacOS/INIT29.a
    MacOS/CDEF.a
  Macro (1)
    X97M/Yawn.n@MM
  Malware Tool (1)
    Bat/dq.kit
  multipartite (3)
    Ginger.Rainbow.mp
    Ginger.Orsam.mp.x
    Anticad.mp.4096.o
  Parasitic (3)
    Senorita.apd
    Peanut.cav
    Darth-Vader.cav.200a
  Script (8)
    VBS/Vintage.c
    Bat/mis
    Bat/cdx
    Bat/but
    VBS/Virma
    JS/IPaula
    Bat/cdw
    W32/Nilit.bat
  Win32 (2)
    W32/Holar.c.eml
    W32/Hoa.app
  Win9x (1)
    W95/CIH.1106
  Worm (10)
    W32/Togod.worm
    W32/Prodvin.worm
    W32/Amazex.d.worm
    W32/Amazex.e.worm
    W32/Amazex.c.worm
    W32/Nilit.a.worm
    W32/Manex.worm
    MSIL/Bikini.worm
    W32/Nilit.b.worm
    W32/Loxar.worm.a

Enhanced Detections:

Trojan (12)
   (3)
    Odium
    QSD22
    Adios
  Dropper (1)
    Bat/ra.dr
  Exploit (1)
    AX/Frame-Exploit
  HTML (1)
    HTML/CrashIE
  Script (4)
    Bat/wh
    Bat/gp
    Bat/or
    Bat/mn
  Win32 (2)
    W32/Socoten
    QScreen4
Virus (120)
   (22)
    Zombie.PGP1
    Emmie.2823.b
    Emmie.2823.a
    Intruder.1313
    Triamber
    Divided.725
    Bastard.1979
    Werewolf.1450.b
    Werewolf.1450.a
    Werewolf.1450.c
    Nostar.2560b
    Jeru.1413
    GrnCat
    Vlasov.2398
    Keypress.1232h
    Doctor-John.2000
    Bastard.200
    Swedish.441b
    Offspring.1556
    Offspring.1225
    Anti-Pascal.401
    Spice.2125
  Boot (1)
    Wonky
  Companion (1)
    Clonewar.cmp
  Damaged Parasitic (2)
    Darth-Vader.cav.200.b.dam
    Darth-Vader.cav.200.a.dam
  Dropper (4)
    ARCV.Ice.563.dr.b
    ARCV.Ice.563.dr.a
    Bastard.dr
    Bat/ar.dr
  Email (2)
    W32/Rebec@MM
    Mac/Simpsons@MM
  File Infector (1)
    Bubonic
  Generic (2)
    Anti-Pascal.GR
    W95/CIH.gen
  Generic multipartite (5)
    Yesmile.mp.GR
    MMIR.mp.GR
    Crusher.mp.GR
    Andropinis.mp.GR
    Marzia.Demian.mp.GR
  Intended (1)
    W95/CIH.intd
  Intended multipartite (1)
    Tigger.mp.intd
  Internet Relay Chat (1)
    IRC/Edo
  multipartite (30)
    Tiso.mp.846b
    Tiso.mp.1279
    Three Nops.mp.512.b
    Junkie.mp.1029
    Junkie.mp.1000
    Jedi.mp.3072
    Emperor.mp.5826
    Emperor.mp.5772
    Kysia.mp
    TPVO.mp.3783
    Tiso.mp.940
    Tiso.mp.846a
    Three Nops.mp.512.a
    Junkie.mp.1027
    Emperor.mp.5834
    Emperor.mp.5775
    Zaraza.mp.a
    TPVO.mp
    Pofu.mp
    Pinquin.mp
    Zaraza.mp.b
    Zaraza.mp.c
    Theta.mp
    Peanut.mp
    Mammoth.mp
    Kaczor.mp
    Jackal.mp
    Fame.mp
    Cruel.mp
    Zaraza.mp.d
  multipartite Overwriting (1)
    Topol.mp.ow
  Parasitic (4)
    HLLP.1492
    Buffalo.cav
    Darth-Vader.cav.200.b
    Darth-Vader.cav.200.a
  Script (5)
    VBS/Vintage.b
    VBS/Vintage.a
    Bat/gp.1605
    Bat/gp.1599
    Bat/hv
  Win9x (29)
    W95/CIH.1010a
    W95/CIH.1142
    W95/CIH.1048
    W95/CIH.1019c
    W95/CIH.1003e
    W95/CIH.816b
    W95/CIH.1016
    W95/CIH.1363intd
    W95/CIH.1003c
    W95/CIH.973intd
    W95/CIH.1031
    W95/CIH.1035
    W95/CIH.1024
    W95/CIH.1049
    W95/CIH.1003f
    W95/CIH.937
    W95/CIH.876
    W95/CIH.1010b
    W95/CIH.913
    W95/CIH.816a
    W95/CIH.1003d
    W95/CIH.1297
    W95/CIH.104x
    W95/CIH.1003b
    W95/CIH.1230intd
    W95/CIH.1019b
    W95/CIH.1019a
    W95/CIH.1003a
    W95/CIH.1133
  Worm (8)
    W32/Loxar.worm
    Mac/AutoStart.worm.g
    Mac/AutoStart.worm.f
    Mac/AutoStart.worm.e
    Mac/AutoStart.worm.d
    Mac/AutoStart.worm.c
    Mac/AutoStart.worm.a
    Mac/AutoStart.worm.b