Content

DAT Readme

Download the latest anti virus definitions for McAfee® VirusScan®. Ensure your McAfee® product contains the most up-to-date detection and prevention.
http://www.mcafee.com/apps/downloads/security_updates/dat.asp

DAT Version 4250
DAT Release Date 02/26/2003
Threats Detected 66003
New Detections 82
Enhanced Detections 163

Enhanced detections are those that have been modified for this release. Detections are enhanced to cover new variants, optimize performance, and correct incorrect identifications.

Noteworthy threats are those that had an Avert risk assessment of Low-Profiled, Medium, Medium-On-Watch, High, or High-Outbreak at the time of DAT release.

Noteworthy Threats:

Name Corporate Risk Assessment Home Risk Assessment
There are no noteworthy threats in this release

New Detections:

Program (14)
  Dialer (3)
    PornDial-150
    PornDial-148
    PornDial-149
  Dropper (1)
    Bat/oem.dr
  Malware Tool (10)
    VTool/obj8
    VTool/phi
    VTool/obj11
    VTool/obj10
    VTool/obj9
    VTool/obj6
    VTool/obj4
    VTool/obj7
    VTool/obj5
    VTool/obj3
Trojan (27)
  AOL Password (1)
    APSTrojan.tq
  Configurator (1)
    ICQPager-J.cfg
  Denial Of Svc (1)
    DoS-iFrameNet
  Disk erasing (1)
    QZap310
  Downloader (1)
    Downloader-BZ
  Dropper (1)
    BackDoor-AQH.dr
  File deleting (1)
    QDel372
  Flooder (5)
    FDoS-NetKiller
    FDoS-IrocsK
    FDoS-Rebirth
    FDoS-OIcqDov
    FDoS-NetKill
  Generic (2)
    FDoS-MSN.gen
    BackDoor-AQG.gen
  Intended (1)
    JS/Nezew.intd
  Password (1)
    BackDoor-AQI
  Remote Access (8)
    BackDoor-AQH
    BackDoor-AQF
    IRC-Yoink
    Unix/BackDoor-Ldoor
    Unix/BackDoor-BS
    BackDoor-AQG
    BackDoor-AQE
    BackDoor-AQD
  Script (2)
    Bat/qz17
    Bat/ero
  Win32 (1)
    ICQPager-J
Virus (41)
   (8)
    YD.1712
    Jeru.1446a
    DrZip.512
    Lexotran
    HLLT.8064
    Knorkator
    Cathin
    HLLT.6978b
  Damaged (3)
    Univ/a.dam
    Cathin.dam
    Luce.dam
  Dropper (4)
    XBM.dr
    DrZip.dr
    Zune.dr
    MacOS/SevenDust.dr
  Dropper multipartite (1)
    Kuarahy.mp.dr
  Dropper Parasitic (4)
    Sailor-Neptune.cav.941.dr
    Sailor-Neptune.cav.940.dr
    Sailor-Neptune.cav.938.dr
    Pure.cav.dr
  E-mail worm (1)
    VBS/Grimgram@MM
  Email (1)
    W32/Gibe.a@MM
  Heuristic (1)
    New Win32.g4
  Internet Relay Chat (1)
    IRC/Dt
  Macintosh (3)
    MacOS/T4.d
    MacOS/SevenDust.j
    MacOS/MDEF99
  Malware Tool (1)
    WM/NJ-VCK2.kit
  Parasitic (4)
    Numb.cav.330
    Dina.cav.283
    Dina.cav.271
    Dina.cav.254
  Win32 (1)
    W32/Yougdos
  Worm (8)
    W32/Gibe.b@MM
    W32/Walkery.worm
    W32/Supeboy.worm
    W32/Steph.a.worm
    W32/Speedup.b.worm
    W32/Speedup.a.worm
    W32/Speedup.c.worm
    W32/Kazaver.worm

Enhanced Detections:

Program (3)
   (1)
    XMovie
  Joke (1)
    Fake-Del joke
  Script (1)
    Bat/oem
Trojan (73)
  - (1)
    Zendown
  Client (2)
    BackDoor-QF.cli
    BackDoor-KI.cli
  Downloader (1)
    Infectus
  Dropper (5)
    MultiDropper-AR
    MultiDropper-AC
    MultiDropper-Z
    MultiDropper-AQ
    MultiDropper-AA
  Exploit (2)
    Exploit-Sechole
    Exploit-IcqSteal
  File deleting (1)
    QDel34
  Malware Tool (3)
    Nuke-Nukeit.o
    Nuke-Nukeit.n
    Kit-Spth
  Password Stealer (4)
    PWS-CD
    PWS-FN
    PWS-FC
    PWS-CM
  Remote Access (37)
    BackDoor-MT
    BackDoor-LP
    BackDoor-GL
    Backdoor-QT
    BackDoor-FA
    BackDoor-BO
    BackDoor-HW
    BackDoor-WL
    BackDoor-DG
    BackDoor-MD
    BackDoor-KX
    BackDoor-BT.rpt
    BackDoor-AL
    Backdoor-AH
    BackDoor-AF
    BackDoor-MU
    BackDoor-DM
    Backdoor-RY
    Backdoor-RH
    BackDoor-QI
    BackDoor-PA
    BackDoor-OY
    BackDoor-OM
    BackDoor-NX
    BackDoor-NW
    BackDoor-KG
    BackDoor-IJ
    BackDoor-GJ
    BackDoor-EC
    BackDoor-DI
    Backdoor-DA
    BackDoor-V
    BackDoor-RJ
    Backdoor-NA
    BackDoor-ME
    BackDoor-LY
    BackDoor-CG
  Script (1)
    VBS/Nawps
  Tool (1)
    Nuke-Nukeit.m
  VbScript (1)
    Downloader-BO.dr
  Win31 (3)
    APStrojan.sg
    APStrojan.se
    APStrojan.sf
  Win32 (10)
    Wincheck
    SiteX
    Reboot-U
    RevengePack
    Ezoons
    Dpbot
    APSTrojan
    Perniw
    APS.Kaimx
    Destructive.r
  Worm (1)
    W32/Steph.worm
Virus (87)
   (42)
    TSQL/JoGama.a
    YD.1210
    TSQL/JoGama.b
    HLLT.6978
    Seventh-Son
    APStrojan.ok
    Jeru.1455b
    Greets.3000.e
    Greets.3000.d
    Greets.3000.c
    Greets.3000.b
    Greets.3000.a
    Elf.2647
    YCTC
    YB
    Xany.311
    Wot.826
    Login.3052b
    BootDr161
    Proto.1799
    Mule.1244
    Koths
    KOH-Install
    Arelocs.b
    Jeru.1455
    Arelocs.c
    Arelocs.a
    PIRCH/Generic
    Jeru.1446
    Login.2974c
    Login.3045d
    Login.2967
    Login.3052a
    Login.2968a
    Login.3045a
    Lexotan.d
    Login.3045c
    Login.3096
    Login.2974b
    Login.3045b
    Login.2885
    Lexotan.b/c
  Damaged Parasitic (7)
    Darth-Vader.cav.255.e.dam
    Darth-Vader.cav.255.d.dam
    Darth-Vader.cav.255.c.dam
    Darth-Vader.cav.255.b.dam
    Darth-Vader.cav.255.a.dam
    Darth-Vader.cav.200a.dam
    Darth-Vader.cav.200b.dam
  Dropper (3)
    Seventh-Son.dr
    Ply.dr
    Liberty.dr
  Dropper multipartite (1)
    Lithium.mp.dr
  Floppy Worm (1)
    W32/TinyRun.worm
  Generic (1)
    VBS/Sflus.gen
  Intended (1)
    VBS/Cocau.a.intd
  Java Applet (1)
    JV/Storm
  Macro (3)
    W97M/Opey.bg
    W97M/Toraja
    W97M/Younga
  multipartite (6)
    Erase.mp.512
    Kuarahy.mp.4640
    Yoyo.mp.1271
    Yosha.mp.442
    Yosha.mp.440
    XIVLO.mp
  multipartite Parasitic (4)
    Yosha.mp.cav.279
    Yosha.mp.cav.271
    Yosha.mp.cav.447
    Yosha.mp.cav.285
  Parasitic (13)
    Darth-Vader.cav.200a
    Darth-Vader.cav.255.f
    Darth-Vader.cav.255.e
    Darth-Vader.cav.255.d
    Darth-Vader.cav.255.a
    Darth-Vader.cav.200b
    Zero hunt.cav.422
    Neptune.cav.940
    Neptune.cav.938
    Darth-Vader.cav.255.c
    Darth-Vader.cav.255.b
    Darth-Vader.cav.202
    Neptune.cav.941
  Script (3)
    VBS/Cocau.b
    VBS/Cocau.c
    W32/Storm.bat
  Worm (1)
    W32/Wally.worm