Content

DAT Readme

Download the latest anti virus definitions for McAfee® VirusScan®. Ensure your McAfee® product contains the most up-to-date detection and prevention.
http://www.mcafee.com/apps/downloads/security_updates/dat.asp

DAT Version 4242
DAT Release Date 01/11/2003
Threats Detected 63259
New Detections 201
Enhanced Detections 58

Enhanced detections are those that have been modified for this release. Detections are enhanced to cover new variants, optimize performance, and correct incorrect identifications.

Noteworthy threats are those that had an Avert risk assessment of Low-Profiled, Medium, Medium-On-Watch, High, or High-Outbreak at the time of DAT release.

Noteworthy Threats:

Name Corporate Risk Assessment Home Risk Assessment
W32/Sobig.a@MM Medium Medium

New Detections:

Internet Worm (1)
  P2P Worm (1)
    W32/Cult.worm
Program (49)
  Dialer (12)
    PornDial-132
    PornDial-131
    PornDial-130
    PornDial-127
    PornDial-125
    PornDial-123
    PornDial-121
    PornDial-129
    PornDial-128
    PornDial-126
    PornDial-124
    PornDial-122
  Joke (1)
    SmallP joke.b
  Keylogger (1)
    Keylog-WinPass
  Malware Tool (11)
    VTool/mbc1
    VTool/drm
    VTool/cry2
    VTool/cnw
    VTool/bwr
    VTool/pwr
    VTool/par
    VTool/cdw
    VTool/gps
    VTool/dai
    VTool/cry1
  Script (1)
    Bat/oem
  Win31 (1)
    WVTool/sen
  Win32 (22)
    WVTool/zom
    WVTool/tsv
    WVTool/suk
    WVTool/pol
    WVTool/mua
    WVTool/mxc
    WVTool/lj2
    WVTool/gsh1
    WVTool/gpa5
    WVTool/gpa4
    WVTool/gpa3
    WVTool/gpa2
    WVTool/gpa1
    WVTool/gmh
    WVTool/dla
    WVTool/dev
    WVTool/cry
    WVTool/cdr
    WVTool/bla
    WVTool/lj1
    TrojSimul
    DFTP-Server
Trojan (90)
   (8)
    B2C.MkDirs
    Spider.c
    Poopies
    Fastcomp
    B2C.Killer
    B2C.Deldos
    Andrei
    B2C.Colaxer
  - (1)
    IRC-OhShootBot
  Application extension (1)
    APStrojan.qx.dll
  Client (6)
    BackDoor-BT.cli
    BackDoor-AH.cli
    BackDoor-GO.cli
    GirlFriend.cli.c
    GirlFriend.cli.b
    BackDoor-AOP.cli
  Configurator (1)
    BackDoor-AOP.cfg
  Disk erasing (2)
    QZap305
    QZap304
  Dropper (7)
    MultiDropper-FD
    B2C.Dracula
    MultiDropper-FC
    RevengePack.dr
    BackDoor-GO.dr
    FDoS-Knightz.dr
    AdClicker-M.dr
  Exploit (1)
    Exploit-Hotmail
  File deleting (11)
    QDel322
    QDel320
    QDel318
    QDel317
    QDel316
    QDel314
    QDel312
    QDel321
    QDel319
    QDel315
    QDel313
  Flooder (1)
    FDoS-ICQMessageBomb
  Generic (3)
    APStrojan.gen18c
    APStrojan.gen18d
    APStrojan.ob.gen
  Heuristic (1)
    Newsflash
  Malware Tool (2)
    Kit-Shvk
    Kit-Wshwc
  Password Stealer (3)
    PWS-GY
    PWS-HA
    PWS-CB
  Remote Access (9)
    Backdoor-AOK
    BackDoor-AOP.inst
    Backdoor-RV
    BackDoor-AOS
    BackDoor-AOQ
    BackDoor-AOR
    BackDoor-AOO
    Backdoor-AON
    BackDoor-AOM
  Script (10)
    Bat/tre
    Bat/shn
    Bat/rat
    Bat/qd18
    Bat/qd14
    Bat/qz12
    Bat/qd15
    Bat/qd13
    Bat/qd10
    Bat/qd12
  Self-extracting archive (1)
    RevengePack.sfx
  Server (11)
    BackDoor-KJ.svr
    BackDoor-FN.svr
    BackDoor-BT.svr
    GirlFriend.svr.c
    BackDoor-BU.svr
    GirlFriend.svr.a
    BackDoor-GO.svr
    BackDoor-DG.svr
    BackDoor-AOP.svr
    GirlFriend.svr.b
    BackDoor-AK.svr
  Win32 (11)
    Topbind
    IQTest
    APStrojan.pz
    APStrojan.qm
    APStrojan.qx
    NetBusPatch.11
    APStrojan.qw
    Kagee
    HLS
    APStrojan.rs
    AdClicker-M
Virus (61)
   (3)
    Pinworm.2167
    HLL.8756
    APStrojan.nl
  Companion (2)
    Bat/goo.cmp
    Bat/grem.cmp
  Damaged (2)
    APStrojan.dam
    W97M/Sat.dam.e
  Dropper (4)
    W95/RainSong.4386.dr
    Bat/gra.dr
    W95/RainSong.4036.dr
    W95/RainSong.4266.dr
  E-mail worm (1)
    W32/Sobig.a@MM
  Email (5)
    W32/Notfam@MM
    W32/BackZat.b@MM
    W32/BackZat.a@MM
    W32/Duksten.i@MM
    W32/Sobig@MM
  Email Generic (1)
    W32/Wonna.gen@MM
  Generic (3)
    APStrojan.gen20
    APStrojan.gen22
    APStrojan.gen18b
  Intended (1)
    JS/Tusem@MM.intd
  Internet Relay Chat (1)
    IRC/BackZat
  Macro (1)
    W97M/Hopel
  Malware Tool (1)
    Bat/shn.kit
  Overwriting (1)
    W32/Seido.ow
  P2P Worm (1)
    W32/Speedup.worm
  Parasitic (2)
    HLLP.Peito
    HLLP.Roro
  Script (22)
    Bat/BackZat
    Bat/rme
    Bat/mum
    Bat/gur
    Bat/grem
    Bat/gra.705
    Bat/but.1691
    Bat/but.1325
    Bat/but.1173
    Bat/but.1056
    Bat/but.1023
    Bat/but.1016
    Bat/sht
    Bat/lwf
    Bat/but.1018
    Bat/atr
    Bat/gra.983
    Bat/but.1851
    Bat/but.1358
    Bat/but.1175
    Bat/but.1134
    Bat/but.txt
  Win32 (5)
    W32/Parved
    W32/Junkcomp
    W32/Yaha.o
    W32/Lirva.eml
    W32/Rammstein.12852
  Worm (5)
    W32/Sachiel.worm.f
    W32/ExploreZip.worm
    W32/Disager.worm
    W32/BackZat.worm
    W32/Nilit.d.worm

Enhanced Detections:

Malware (1)
  Denial Of Svc (1)
    FDoS-Knightz
Program (4)
  Demonstration (1)
    W97/Exploit-SpyField.demo
  Joke (1)
    FakeFormat joke
  Malware Tool (1)
    VTool/mbc
  Win32 (1)
    WVTool/gsh
Trojan (12)
   (2)
    Bang You're Dead
    QSD25
  AOL Password (2)
    APStrojan.qa@MM
    APStrojan.ob.pak.gen
  Client (1)
    BackDoor-WF.cli
  Dialer (1)
    QDial
  Dropper (1)
    Bat/abx.dr
  Internet Relay Chat (1)
    IRC/Flood.ae
  Remote Access (1)
    BackDoor-AMR
  Script (3)
    Bat/abx
    Bat/aby
    Bat/qh
Virus (41)
   (1)
    Goma.741
  Damaged (1)
    Bat/as.dam
  Dropper (8)
    W95/RainSong.3956.b.dr
    W95/RainSong.3956.a.dr
    W95/RainSong.3925.b.dr
    W95/RainSong.3925.a.dr
    Bat/abn.dr
    Bat/pam.dr
    Bat/at.b.dr
    Bat/at.a.dr
  Email (2)
    MSIL/Generic@MM
    W32/Oror.l@MM
  Script (10)
    Bat/but
    Bat/pam
    Bat/but.1605
    Bat/t.b
    Bat/t.c
    Bat/q
    Bat/at.b
    Bat/at.a
    Bat/as
    Bat/t.a
  Win32 (12)
    W32/Rammstein.13023
    W32/Rammstein.15191
    W32/Rammstein.12704
    W32/Rammstein.12924
    W32/Rammstein.15189
    W32/Rammstein.13353
    W32/Rammstein.12469
    W32/Rammstein.12401
    W32/Rammstein.12753
    W32/Rammstein.14013
    W32/Rammstein.14531.a
    W32/Rammstein.14531.b
  Win9x (4)
    W95/RainSong.4386dr
    W95/RainSong.4266dr
    W95/RainSong.4266
    W95/RainSong.4036dr
  Worm (3)
    HLLW.6010
    W32/Exploter.worm
    W32/Buzzard.worm