Content

DAT Readme

Download the latest anti virus definitions for McAfee® VirusScan®. Ensure your McAfee® product contains the most up-to-date detection and prevention.
http://www.mcafee.com/apps/downloads/security_updates/dat.asp

DAT Version 4244
DAT Release Date 01/22/2003
Threats Detected 63357
New Detections 258
Enhanced Detections 81

Enhanced detections are those that have been modified for this release. Detections are enhanced to cover new variants, optimize performance, and correct incorrect identifications.

Noteworthy threats are those that had an Avert risk assessment of Low-Profiled, Medium, Medium-On-Watch, High, or High-Outbreak at the time of DAT release.

Noteworthy Threats:

Name Corporate Risk Assessment Home Risk Assessment
Exploit-JBellz Low-Profiled Low-Profiled

New Detections:

Malware (1)
  Exploit (1)
    OTF/Exploit-Restart
Program (82)
  Boot (1)
    Devsup
  Dialer (10)
    PornDial-142
    PornDial-141
    PornDial-140
    PornDial-139
    PornDial-138
    PornDial-137
    PornDial-136
    PornDial-135
    PornDial-134
    PornDial-133
  Malware Tool (44)
    VTool/xin
    VTool/wid
    VTool/tpr1
    VTool/tbs1
    VTool/ssd
    VTool/sig
    VTool/rsi
    VTool/omo
    VTool/nlg
    VTool/ndc
    VTool/mag2
    VTool/hwi2
    VTool/fpa
    VTool/duk4
    VTool/dis
    VTool/dai2
    VTool/cry3
    VTool/av6
    VTool/av4
    VTool/av2
    VTool/drm2
    VTool/dli
    VTool/ana
    VTool/x2b
    VTool/tpr2
    VTool/tbs2
    VTool/svd
    VTool/smt
    VTool/sci
    VTool/pep
    VTool/nlv
    VTool/ngd
    VTool/mag3
    VTool/kir
    VTool/hla
    VTool/ffi
    VTool/duk3
    VTool/dai3
    VTool/dai1
    VTool/cnw2
    VTool/av5
    VTool/av3
    VTool/av1
    Nuke-KillIC
  Spam (1)
    Spam-LanxQQ
  Tool (11)
    Aindera
    Tool-Teardrop
    Tool-Upadmin
    Tool-DllPatch
    Tool-Sub7Stealer
    Tool-Smbcrack4
    Tool-Redhack
    Tool-QQmdao
    Tool-Piaoyes
    Tool-Linklooker
    Tool-Arpkill
  Win32 (15)
    WVTool/gpa7
    WVTool/sed
    WVTool/hok
    WVTool/gpa8
    WVTool/gpa9
    WVTool/gmh2
    WVTool/epr
    W32/Selc
    WVTool/kyg
    WVTool/gpa6
    WVTool/gcp
    WVTool/dpg
    Spoof-Smoke
    Spion
    NetDown
Trojan (105)
   (1)
    Coolent
  - (1)
    BackDoor-AOU
  Application extension (6)
    CoreFlood.dll
    Spam-SMS.Bomb.dll
    Spam-AIMQuietStorm.dll
    Keylog-Hasig.dll
    BackDoor-AOR.dll
    BackDoor-AOV.dll
  Boot (2)
    Vintuhan
    Opas
  Denial Of Svc (1)
    DoS-Atho
  Disk erasing (4)
    QZap307
    QZap308
    QZap306
    QZap250
  Downloader (1)
    Downloader-BS
  Dropper (3)
    MultiDropper-FE
    Bat/qd21.dr
    PWS-HTool.dr
  Exploit (6)
    Exploit-Spoolss
    Exploit-JBellz
    UNIX/Exploit-Platinu
    UNIX/Exploit-HPUX
    Exploit-SnakeIIS
    Exploit-IcqSteal
  File deleting (2)
    QDel323
    QDel360
  Flooder (18)
    FDoS-Anonmail.35
    FDoS-Anonmail.25
    IRC/FDoS-Matrix
    IRC/FDoS-Skate
    IRC/FDoS-EXR
    FDoS-Xinxin
    FDoS-Telhack
    FDoS-MSNcrime
    FDoS-MarcelBomb.11
    FDoS-Kagra
    FDoS-ICQToolz
    FDoS-ICQBomb.b
    FDoS-Hirr
    FDoS-DodoBoy
    FDoS-MK3
    FDoS-Blitz20
    FDoS-Wako10
    FDoS-Wako21
  Generic (3)
    BackDoor-AOY.gen
    BackDoor-ABT.gen
    BackDoor-PB.gen
  Internet Relay Chat (2)
    IRC/Sarz
    IRC/Anviterm
  Keylogger (2)
    Keylog-Kagra
    Keylog-Chota
  Linux (2)
    Linux/Godop
    Linux/DoS-Ssping
  Macro (1)
    W97M/Tulu
  Malware Tool (9)
    Spam-AIMQuietStorm
    Spam-Alanche.34b
    Spam-QMailer
    Spam-Hunter
    Kit-Vbswt
    Kit-Uck
    Kit-Tvbvk
    Kit-Spth
    Exploit-JBellz.kit
  Password (2)
    PWS-HTool
    W32/Cocar
  Password Stealer (4)
    PWS-Staser
    PWS-Liondump
    PWS-Mewey
    PWS-ICQGrabber
  PornDialer (1)
    QDial4
  Remote Access (12)
    IRC/Backdoor.f
    BackDoor-APA
    BackDoor-APG
    BackDoor-APD
    BackDoor-APB
    BackDoor-AOZ
    BackDoor-AOX
    BackDoor-AOV
    Linux/Backdoor-Excedoor
    BackDoor-APF
    BackDoor-APC
    BackDoor-AOY
  Script (9)
    VBS/Motumbo
    JS/DDoS-Yams
    Bat/met2
    Bat/hen
    Bat/qd20
    Bat/rum
    Bat/qd19
    Bat/met1
    Bat/qd22
  Trojan (2)
    Keylog-Hasig
    Backdoor-AOW
  Win32 (9)
    DoS-QQnukeall
    Shinop
    DoS-Atho.d
    DoS-Atho.c
    DoS-Atho.b
    DoS-Atho.a
    DoS-Aspcode
    DoS-Fulame
    DoS-Ahbomb
  Worm (2)
    W32/Iwing.worm
    W32/Cocar.worm
Virus (70)
   (9)
    Spiderman
    Oulu.1008
    Enigma.1755
    Amz.802
    BootDr233
    Dimple.2594
    Acvt.1243
    BootDr232
    BootDr231
  Application extension (1)
    W32/Oror.dll
  Boot (2)
    KFPS
    Anticmos.f
  Damaged (3)
    W32/NGVCK.dam
    W95/Evil.dam
    W32/Enerlam.dam
  Dropper (3)
    Seventh-Son.dr
    Happy.dr
    Spiderman.dr
  Email (8)
    W32/Sowsat.c@MM
    W32/BackZat.c@MM
    VBS/Horty.f@MM
    W32/Runnelot@MM
    W32/Duksten.j@MM
    W32/Cherich.c@MM
    W32/Cherich.b@MM
    W32/Cherich.a@MM
  Email Generic (3)
    W32/Oror.gen.c@MM
    W32/Oror.gen.b@MM
    W32/Oror.gen.a@MM
  Generic (1)
    JS/Spth.gen
  Generic Worm (1)
    W32/Kelino.worm.gen
  Heuristic (1)
    MSIL/Snewc.4096
  Internet Worm (1)
    JS/Spth
  Overwriting (2)
    Mayhem.457.ow
    Mayhem.855.ow
  Script (8)
    VBS/Stemy
    Bat/qd21
    VBS/Ickly
    Bat/nem
    W32/Heffer.vbs
    W32/BackZat.reg
    VBS/BackZat
    VBS/Kagra
  VbScript (1)
    VBS/Pookins
  Win32 (2)
    W32/NGVCK.a.1700
    W32/Idtsys
  Worm (24)
    W32/Eslac.worm
    W32/Opaserv.worm.h
    Filip.worm
    W32/Zaka.worm.ac
    W32/Titog.worm.d
    W32/Sytro.worm.ax
    W32/Zaka.worm.ab
    W32/Titog.worm.c
    W32/Potar.worm
    W32/Nilit.f.worm
    W32/Nilit.e.worm
    W32/Manfool.worm
    W32/Ismod.worm
    W32/Heffer.worm.d
    W32/EnerKaz.worm.l
    W32/EnerKaz.worm.k
    W32/Dormer.worm.c
    W32/Dormer.worm.b
    W32/Lexi.worm
    W32/Heffer.worm.e
    W32/Etern.worm.a
    W32/Dormer.worm.a
    W32/Dexec.worm
    W32/Bare.worm.f

Enhanced Detections:

Program (4)
  Malware Tool (3)
    VTool/drm
    VTool/cnw
    VTool/mag
  Win32 (1)
    WVTool/gmh
Trojan (38)
   (1)
    ExitWin-B
  - (1)
    Limgavi
  Application extension (2)
    CoreFlood.AI.dll
    CoreFlood.AF.dll
  Client (1)
    BackDoor-ACJ.cli
  Com file (1)
    IRC/Spyboy.com
  Configuration settings (1)
    Bat/abe.ini
  Disk erasing (2)
    QZap35
    QZap248
  Dropper (2)
    Bat/acl.dr
    IRC/Goodbot.dr
  Flooder (2)
    FDoS-Ehipp
    FDoS-Gewse
  Internet Relay Chat (6)
    IRC/Havoc
    IRC/Spyboy.vxd
    IRC/Goodbot
    IRC/Flood.az
    IRC/Ds
    IRC/Appolo
  Remote Access (2)
    BackDoor-ABT
    BackDoor-AOR
  Script (11)
    Bat/abe
    Bat/abl
    Bat/acj
    Bat/abu
    Bat/acp
    Bat/acn
    Bat/aco
    Bat/qe
    Bat/aah
    Bat/ws
    Bat/wr
  Server (1)
    BackDoor-ACJ.svr
  VbScript (1)
    VBS/Ultras
  Win32 (4)
    CoreFlood.AF
    CoreFlood.AI
    FTrap
    MSNCookie
Virus (39)
   (6)
    BootDr222
    BootDr223
    Zombie/a
    Vinnitsa
    Attention.394
    Mayhem
  Companion (1)
    Eraser.cmp.3331
  Configuration settings (2)
    W32/Oror.ini
    W32/Netol.ini
  Damaged (1)
    Attention.394.dam
  Dropper (3)
    Anticad.dr
    Avispa.dr
    Alive.dr
  E-mail (1)
    JS/Nevezed@MM
  Generic (1)
    W32/Yaha.gen
  Generic Worm (1)
    Unix/Scalper.worm.gen
  Intended (3)
    VBS/Dasbud.intd
    VBS/Horty.d.intd
    WM/Simple.c.intd
  Internet Worm (1)
    W32/Etern.worm
  mIRC Worm (1)
    IRC/Gleep
  Overwriting (1)
    W32/HLL.ow.Rozac
  Script (5)
    VBS/Horty.e
    Bat/acl
    Bat/aav
    Bat/kia
    Bat/za
  VbScript (3)
    VBS/Horty.b@MM
    VBS/Horty.c@MM
    VBS/Horty.a@MM
  Win32 (5)
    W32/Yaha.j
    W32/Yaha.k
    W32/Yaha.l
    W32/Yaha.m
    W32/Yaha.o
  Worm (4)
    VBS/Hypoth@MM
    W32/Efno.worm
    W32/Erbot.worm.b
    W32/Erbot.worm.a