Content

DAT Readme

Download the latest anti virus definitions for McAfee® VirusScan®. Ensure your McAfee® product contains the most up-to-date detection and prevention.
http://www.mcafee.com/apps/downloads/security_updates/dat.asp

DAT Version 4271
DAT Release Date 06/11/2003
Threats Detected 74345
New Detections 139
Enhanced Detections 263

Enhanced detections are those that have been modified for this release. Detections are enhanced to cover new variants, optimize performance, and correct incorrect identifications.

Noteworthy threats are those that had an Avert risk assessment of Low-Profiled, Medium, Medium-On-Watch, High, or High-Outbreak at the time of DAT release.

Noteworthy Threats:

Name Corporate Risk Assessment Home Risk Assessment
BackDoor-AVF Low-Profiled Low-Profiled

New Detections:

Program (26)
  Adware (1)
    Adware-Omngr
  Application extension (1)
    KeyLog-IK97.dll
  Dialer (2)
    PornDial-134.b
    PornDial-134.a
  Downloader (1)
    EWDial.dldr
  Dropper (1)
    KeyLog-IK97.dr
  Generic (4)
    Dialer-RAS.ap.gen
    Dialer-RAS.an.gen
    Dialer-RAS.ao.gen
    Dialer-RAS.am.gen
  Joke (1)
    TestSex joke
  Keylogger (1)
    Keylog-Typ0
  Malware Tool (13)
    VTool/wri
    VTool/wei
    VTool/vla
    VTool/tvi
    VTool/sat
    VTool/oh2
    VTool/mmap
    VTool/gsi2
    VTool/gsi
    VTool/col
    VTool/ckt
    VTool/art
    HTool/perl
  Spyware (1)
    Keylog-IK97
Trojan (45)
   (3)
    QDir4
    Kevin
    Keytrap3
  - (2)
    BackDoor-AVF
    QDial8
  Application extension (2)
    BackDoor-AKG.dll
    BackDoor-AQF.dll
  Configurator (2)
    Downloader-CU.cfg
    Downloader-CL.cfg
  Dialer (3)
    QDial7
    QDial10
    QDial9
  Disk erasing (2)
    QZap323
    QZap322
  Downloader (5)
    Downloader-CT
    Downloader-CR
    Downloader-CV
    Downloader-CU
    Downloader-CS
  Dropper (1)
    BackDoor-AVK.dr
  Generic (2)
    PWS-Hearty.gen
    Downloader-CV.gen
  Malware Tool (1)
    Bat/dvl.kit
  Password (1)
    PWS-Narod
  Password Stealer (1)
    PWS-Santosa
  ProcKill (1)
    ProcKill-AI
  Remote Access (2)
    BackDoor-AVK
    BackDoor-AVE
  Script (11)
    Bat/pas
    Bat/exw6
    Bat/crs
    JS/Dyer
    Bat/zz9
    Bat/zz8
    Bat/qd83
    Bat/nos
    Bat/dvl
    Bat/dt39
    IRC/Flood.bat2exe
  Server (1)
    Downloader-CF.svr
  Spyware (1)
    Keylog-Yeehah
  Trojan (1)
    Nowar
  Win32 (3)
    SMSFlood-Sharft
    LoadSamp
    InCommand
Virus (68)
   (11)
    Alabama.1560.d
    Vienna.743
    Nostar.2220
    Lobo.813
    Loadhigh.1375
    Hera
    Dementia
    Answer
    Vor.1536.d
    Nomad.1050
    Electro.dd.1800
  Application extension Worm (3)
    W32/Busan.worm.b.dll
    W32/MoFei.worm.dll
    W32/Busan.worm.a.dll
  Companion (7)
    Offspring.cmp.1282
    Loadhigh.1375.cmp
    HLL.cmp.7216b
    HLL.cmp.5792b
    HLL.cmp.8048
    HLL.cmp.6992
    HLL.cmp.4544
  Damaged (1)
    W32/Bugbear.b.dam
  Dropper (5)
    Vienna.Iraqui.dr
    Vienna.705.dr
    Smoker.630.dr
    Bat/wom.dr
    Vienna.913.dr
  Dropper Parasitic (1)
    W95/Shown.cav.dr
  HTML document (2)
    W32/Mapson.htm
    W32/PetTick.html
  Internet Worm (2)
    W32/Yaha.t@mm
    W32/Mapson@MM
  Macro (7)
    W97M/Wazzu.ax
    W97M/Wazzu.cb
    W97M/Wazzu.gv
    W97M/Wazzu.ch
    W97M/Minimal.gv
    W97M/Minimal.ch
    W97M/Minimal.cb
  Overwriting (2)
    HLL.ow.4640
    W32/Yopper.ow
  Parasitic (2)
    W95/Shown.cav
    W32/HLLP.Arcer
  Win32 (7)
    W32/Stepan.f
    W32/Undertake.4964
    W32/Snowmoon
    W32/Sality
    W32/Neoval
    W32/Gant.c!vbs
    W32/Alisa.c
  Worm (18)
    W32/MoFei.worm
    W32/Spybot.worm.gi
    W32/Spybot.worm.do
    W32/Spybot.worm.dp
    W32/Spybot.worm.dn
    W32/Veedna.worm.f
    W32/Veedna.worm.d
    W32/Veedna.worm.b
    W32/Ismod.worm.a
    W32/Dafly.worm
    W32/Busan.worm.b
    W32/Veedna.worm.e
    W32/Veedna.worm.c
    W32/Veedna.worm.a
    W32/Sysdil.worm
    W32/Ismod.worm.b
    W32/Celebit.worm
    W32/Busan.worm.a

Enhanced Detections:

Program (138)
  Dialer (125)
    PornDial-85
    PornDial-83
    PornDial-82
    PornDial-80
    PornDial-67
    PornDial-65
    PornDial-64
    PornDial-63
    PornDial-62
    PornDial-49
    PornDial-41
    PornDial-37
    PornDial-87
    PornDial-81
    PornDial-79
    PornDial-78
    PornDial-76.a
    PornDial-74
    PornDial-72
    PornDial-71.a
    PornDial-69
    PornDial-61
    PornDial-60
    PornDial-58
    PornDial-56
    PornDial-55.b
    PornDial-88
    PornDial-86
    PornDial-84
    PornDial-76.b
    PornDial-75
    PornDial-73
    PornDial-71.b
    PornDial-70
    PornDial-68
    PornDial-59
    PornDial-57
    PornDial-55.c
    PornDial-55.a
    PornDial-54
    PornDial-53
    PornDial-52
    PornDial-50
    PornDial-48
    PornDial-47
    PornDial-46
    PornDial-45
    PornDial-44
    PornDial-42
    PornDial-39
    PornDial-89
    PornDial-43
    PornDial-93
    PornDial-92
    PornDial-91
    PornDial-90
    PornDial-95
    PornDial-94
    PornDial-96
    PornDial-98
    PornDial-97
    PornDial-100
    PornDial-99
    PornDial-105
    PornDial-102
    PornDial-104
    PornDial-103
    PornDial-107
    PornDial-116
    PornDial-114
    PornDial-111
    PornDial-110.a
    PornDial-117
    PornDial-115
    PornDial-113
    PornDial-110.b
    PornDial-109
    PornDial-120
    PornDial-132
    PornDial-131
    PornDial-130
    PornDial-127
    PornDial-125
    PornDial-123
    PornDial-121
    PornDial-129
    PornDial-128
    PornDial-126
    PornDial-124
    PornDial-122
    PornDial-141
    PornDial-140
    PornDial-139
    PornDial-138
    PornDial-137
    PornDial-136
    PornDial-135
    PornDial-101.b
    PornDial-101.a
    PornDial-144
    PornDial-146
    PornDial-145
    PornDial-147
    PornDial-150
    PornDial-148
    PornDial-149
    PornDial-151
    PornDial-154
    PornDial-153
    PornDial-156
    PornDial-162
    PornDial-161
    PornDial-160
    PornDial-159
    PornDial-158
    PornDial-166
    PornDial-164
    PornDial-170
    PornDial-165
    PornDial-171
    PornDial-169
    PornDial-168
    PornDial-174
    PornDial-173
    PornDial-176
  Dropper (2)
    PornDial-62.dr
    PornDial-104.dr
  Generic (2)
    Dialer-RAS.ah.gen
    Dialer-RAS.d.gen
  Joke (1)
    Burper joke
  Keylogger (3)
    Keylog-SC
    Keylog-WinPass
    Keylog-TraceBoy
  Malware Tool (1)
    VTool/vgn4
  PornDialer (1)
    PornDial-143
  Process (1)
    Keylog-Silent
  Spyware (1)
    KeyLog-Tiny101
  Win32 (1)
    NTServiceLoader
Trojan (18)
   (1)
    Raco.374
  Client (1)
    BackDoor-FB.cli
  Configurator (1)
    BackDoor-FB.cfg
  Downloader (1)
    Downloader-CF
  Dropper (1)
    Raco.dr
  Exploit (1)
    Exploit-FrameZone
  Generic (1)
    VBS/RunScript.gen6
  Internet Relay Chat (1)
    IRC-Hack
  Password (1)
    PWS-Yipper
  Remote Access (2)
    BackDoor-FB
    BackDoor-AKG
  Script (3)
    Bat/exw2
    Bat/exw4
    Bat/exw1
  Spyware (1)
    Mxsender
  Win31 (1)
    KillCMOS.g
  Win32 (2)
    DDoS-Gcomm
    Reboot-b
Virus (107)
   (26)
    HLLT.8016
    Engl.334
    ARCV.Jo.1125
    ARCV.Jo.916
    ARCV.Jo.912a
    ARCV.Jo.911a
    Amoeba.1392.d
    Amoeba.1392.c
    Amoeba.1392.b
    Amoeba.1392.a
    Alabama.1560.b
    Alabama.1560.c
    Alabama.1560.a
    Freza
    Nostar.2308
    Nostar.2255b
    Nostar.2255a
    Nostar.2222
    Nostar.2209
    Nostar.2190
    Nostar.1870
    Smoker.630
    Jungle.494
    Nostar.2188
    Nostar.2306
    Nostar.2147
  Companion (2)
    HLL.cmp.7216
    HLL.cmp.5792
  Damaged (2)
    W32/Bugbear.dam
    ARCV.Jo.911.dam
  Dropper (4)
    Minsk.dr
    ARCV.Jo.912b.dr
    ARCV.Jo.911b.dr
    Devils Dance.dr
  Email (2)
    W32/Mepog@MM
    JS/Netdex@M
  Macro (70)
    W97M/Wazzu.em
    W97M/Wazzu.r
    W97M/Wazzu.v
    W97M/Wazzu.cj
    W97M/Wazzu.f
    W97M/Wazzu.bo
    W97M/Wazzu.aw
    W97M/Wazzu.fg
    W97M/Wazzu.s
    W97M/Wazzu.o
    W97M/Wazzu.l
    W97M/Wazzu.eo
    W97M/Wazzu.df
    W97M/Wazzu.cy
    W97M/Wazzu.bz
    W97M/Wazzu.bp
    W97M/Wazzu.bi
    W97M/Wazzu.ai
    W97M/Wazzu.z
    W97M/Wazzu.p
    W97M/Wazzu.m
    W97M/Wazzu.h
    W97M/Wazzu.ez
    W97M/Wazzu.ey
    W97M/Wazzu.dd
    W97M/Wazzu.dc
    W97M/Wazzu.cz
    W97M/Wazzu.ct
    W97M/Wazzu.bt
    W97M/Wazzu.bq
    W97M/Wazzu.k
    W97M/Wazzu.be
    W97M/Wazzu.bc
    W97M/Wazzu.b
    W97M/Wazzu.av
    W97M/Wazzu.at
    W97M/Wazzu.an
    W97M/Wazzu.al
    W97M/Wazzu.ah
    W97M/Wazzu.af
    W97M/Wazzu.aa
    W97M/Wazzu.et
    W97M/Wazzu.ha
    W97M/Wazzu.n
    W97M/Wazzu.fr
    W97M/Wazzu.fq
    W97M/Wazzu.fo
    W97M/Wazzu.fn
    W97M/Wazzu.fh
    W97M/Wazzu.ff
    W97M/Wazzu.fe
    W97M/Wazzu.ex
    W97M/Wazzu.bd
    W97M/Wazzu.ar
    W97M/Wazzu.dn
    W97M/Wazzu.cp
    W97M/Wazzu.ca
    W97M/Wazzu.ed
    W97M/Wazzu.du
    W97M/Wazzu.dl
    W97M/Wazzu.dg
    W97M/Wazzu.cw
    W97M/Wazzu.cl
    W97M/Wazzu.bs
    W97M/Wazzu.bj
    W97M/Wazzu.ae
    W97M/Wazzu.x
    W97M/Wazzu.d
    W97M/Wazzu.c
    W97M/Wazzu.a
  Script (1)
    Bat/wom