Content

DAT Readme

Download the latest anti virus definitions for McAfee® VirusScan®. Ensure your McAfee® product contains the most up-to-date detection and prevention.
http://www.mcafee.com/apps/downloads/security_updates/dat.asp

DAT Version 4266
DAT Release Date 05/21/2003
Threats Detected 73014
New Detections 166
Enhanced Detections 66

Enhanced detections are those that have been modified for this release. Detections are enhanced to cover new variants, optimize performance, and correct incorrect identifications.

Noteworthy threats are those that had an Avert risk assessment of Low-Profiled, Medium, Medium-On-Watch, High, or High-Outbreak at the time of DAT release.

Noteworthy Threats:

Name Corporate Risk Assessment Home Risk Assessment
W32/Sobig.d@MM Low-Profiled Low-Profiled

New Detections:

Program (5)
   (1)
    AntiDW
  Malware Tool (4)
    VTool/nmk
    VTool/fakev
    VTool/sap
    VTool/ngv
Trojan (50)
   (1)
    RC5-Dropper.d
  Application extension (1)
    BackDoor-ABZ.dll
  Configurator (1)
    BackDoor-AED.cfg
  Downloader (1)
    Downloader-CL
  Dropper (5)
    MultiDropper-FY
    MultiDropper-FX
    MultiDropper-FW
    Kapart.dr
    IRC/Flood.cc.dr
  Exploit (1)
    UNIX/Exploit-Ltris
  File deleting (3)
    QDel385
    QDel384
    Generic QDel
  Generic (1)
    BackDoor-ABZ.gen
  Internet Relay Chat (2)
    IRC-Botty
    IRC/Flood.cc
  Keylogger (1)
    Keylog-Fearless
  Macro (1)
    W97M/Mumba
  Malware Tool (3)
    Bat/rst.kit
    Kit-VBVX
    Kit-DllLoad
  mIRC client (1)
    IRC/Flood.cc.mirc
  Password Stealer (1)
    PWS-Hearty
  Remote Access (12)
    BackDoor-AUI
    BackDoor-AUE
    BackDoor-AUD
    BackDoor-AUL
    BackDoor-AUK
    BackDoor-AUJ
    BackDoor-AUH
    BackDoor-AUG
    BackDoor-AUF
    BackDoor-AUC
    BackDoor-AUB
    PHP/BackDoor-ACH
  Script (10)
    JS/Seeker.z
    Bat/tsp
    Bat/qd82
    Bat/mrw
    Bat/dt37
    Bat/pch
    Bat/marie
    Bat/dt38
    W97M/Opey.bg.bat
    W97M/Ethan.bat
  Win32 (5)
    Generic BackDoor.e
    Uploader-E
    Provera
    DDoS-PopSer
    CGIPager-B
Virus (111)
   (27)
    Jeru-h.1552
    Jeru-h.1477
    Munich.2355
    LFM
    Jeru-h.2000
    Jeru-h.1808
    NGV.x
    Jeru-h2.1808b
    Jeru-h.2291
    Jeru-h.1824
    Jeru-h.1792
    Jeru-h.1526
    Jeru-h.1522
    Jeru-h.1521
    Jeru-h.1459
    Jeru-h.1427
    Jeru-h.1390
    Jeru-h.1356
    Jeru-h.1329
    Jeru-h.1291
    Jeru-h.1282
    Fu-Manchu.2080q
    Fu-Manchu.2080p
    Fu-Manchu.2080o
    NoWimps
    HLLT.20211
    HLLT.4827
  Damaged (1)
    Jeru-h.dam
  Dropper (6)
    Munich.2355.dr
    NoFrills.dr
    Mainman.dr
    W32/Fakelove.dr
    W32/Chiton.j.dr
    W32/Alisa.dr
  E-mail (2)
    W32/Gant.b@MM
    W32/Melare@MM
  Email (7)
    W32/Maax.b@MM
    W32/Maax.a@MM
    W32/Lovgate@M
    W32/Lovgate.m@M
    W32/Lovgate.i@M
    W32/Lovgate.h@M
    W32/Ardurk.g@MM
  Generic Worm (3)
    W32/Winur.worm.gen
    W32/Ronoper.worm.gen
    W32/Opex.worm.gen
  Internet Worm (2)
    W32/Ronoper.worm
    W32/Sobig.d@MM
  Macro (1)
    X97M/Nitkript
  multipartite (3)
    Nutcracker.mp.3100b
    Nutcracker.mp.3100a
    Malaga.mp.2385a
  Script (39)
    VBS/Zerim
    VBS/Cicla
    Bat/tix
    Bat/swe
    Bat/cw5.1800
    Bat/cw5.1773
    Bat/cw5.1749
    Bat/cw5.765b
    Bat/cw5.650
    Bat/cw5.387
    Bat/cw4.1749
    Bat/cw4.765b
    Bat/cw4.765a
    Bat/cw4.650
    Bat/cw4.298
    Bat/cw3.1800
    Bat/cw3.1773
    Bat/cw3.765b
    Bat/cw3.765a
    Bat/cw3.650
    Bat/cw3.387
    Bat/cw3.298
    Bat/cw2.1800
    Bat/cw2.1773
    Bat/cw2.650
    Bat/cw1.1800
    Bat/cw1.765b
    Bat/cw1.765a
    Bat/cw5.765a
    Bat/cw5.298
    Bat/cw4.1800
    Bat/cw4.1773
    Bat/cw4.387
    Bat/cw3.1749
    Bat/cw2.1749
    Bat/cw2.765b
    Bat/cw2.765a
    Bat/cw2.387
    Bat/cw2.298
  Unpacked (1)
    HLLT.4827.unp
  Win32 (8)
    W32/Yaha.eml
    W32/Stepan
    W32/Triplix.a
    W32/Fakelove
    W32/Chiton.j
    W32/Alisa.b
    W32/Alisa.a
    W32/Aidonz
  Win9x (1)
    W95/CIH.1003h
  Worm (10)
    W32/Lovgate.l@M
    W32/Sachiel.worm.h
    W32/Redavin.worm
    W32/Poopoo.worm
    W32/Litter.worm
    W32/Howeem.worm
    W32/EnerKaz.worm.u
    W32/EnerKaz.worm.t
    W32/EnerKaz.worm.s
    W32/Bajos.worm

Enhanced Detections:

Program (7)
  - (1)
    Already
  Adware (1)
    Adware-Tronix
  Client (1)
    Distributed.net.client
  Malware Tool (1)
    VTool/fup
  Tool (1)
    Antisec
  Win32 (2)
    AOL-SockTank
    AsGoodBye
Trojan (12)
  Exploit (2)
    JS/Exploit-DDay
    Exploit-IIS.Alien
  Remote Access (2)
    BackDoor-ABZ
    BackDoor-YL
  Script (2)
    Bat/dt26
    Bat/qd70
  Server (1)
    BackDoor-AQ.svr
  VbScript (1)
    VBS/Vmort
  Win32 (4)
    Orifice
    QDdel-383
    DDoS-BlackCat
    KExt
Virus (47)
   (7)
    Cascade.1701.bn
    Ninja.b
    Ninja.a
    Markiz.2642
    Nutcracker.2293
    Novo.1000
    Mombasa.3568
  Application extension (1)
    W32/Fizzer.dll
  Companion multipartite (1)
    HLL.mp.cmp.Sebek
  Dropper (2)
    Natas.dr
    BackDoor-FB.dr
  Email (2)
    W32/Fever.b@M
    VBS/Loveletter.be@MM
  File Infector (1)
    Ninja
  Generic (1)
    W97M/Fs.gen
  HTML document (1)
    W32/Aplore.htm
  Intended (1)
    X97M/Brandy.intd
  Intended Worm (1)
    W32/EnerKaz.worm.d.intd
  Internet Worm (2)
    W32/EnerKaz.worm.b
    W32/EnerKaz.worm.a
  Macro (1)
    W97M/Fs.a
  multipartite (5)
    Nutcracker.mp.2725
    Nutcracker.mp.2900
    Malaga.mp.2385
    HLL.mp
    Nutcracker.mp.3139
  Script (6)
    Bat/cw1.1773
    Bat/cw1.1749
    Bat/cw1.387
    Bat/cw1.298
    Bat/cw1.650
    VBS/Fic
  Win32 (1)
    W32/Triplix
  Worm (14)
    W32/EnerKaz.worm.e
    W32/EnerKaz.worm.h
    W32/EnerKaz.worm.g
    W32/EnerKaz.worm.f
    W32/EnerKaz.worm.i
    W32/EnerKaz.worm.j
    W32/EnerKaz.worm.l
    W32/EnerKaz.worm.k
    W32/EnerKaz.worm.m
    W32/EnerKaz.worm.o
    W32/EnerKaz.worm.p
    W32/EnerKaz.worm.n
    W32/EnerKaz.worm.q
    W32/EnerKaz.worm.r