Content

DAT Readme

Download the latest anti virus definitions for McAfee® VirusScan®. Ensure your McAfee® product contains the most up-to-date detection and prevention.
http://www.mcafee.com/apps/downloads/security_updates/dat.asp

DAT Version 4285
DAT Release Date 08/13/2003
Threats Detected 78372
New Detections 213
Enhanced Detections 71

Enhanced detections are those that have been modified for this release. Detections are enhanced to cover new variants, optimize performance, and correct incorrect identifications.

Noteworthy threats are those that had an Avert risk assessment of Low-Profiled, Medium, Medium-On-Watch, High, or High-Outbreak at the time of DAT release.

Noteworthy Threats:

Name Corporate Risk Assessment Home Risk Assessment
W32/Lovsan.worm.b Low-Profiled Low-Profiled
W32/Lovsan.worm.c Low-Profiled Low-Profiled

New Detections:

Internet Worm (1)
  P2P Worm (1)
    W32/Spybot.worm.lk
Program (22)
  Adware (1)
    Adware-Adtomi
  Generic (2)
    Dialer-RAS.be.gen
    Dialer-RAS.bf.gen
  Malware Tool (13)
    VTool/zim
    VTool/vrg
    HTool/wrt11
    HTool/wrt10
    HTool/wrt9
    HTool/wrt8
    HTool/wrt7
    HTool/wrt6
    HTool/wrt5
    HTool/wrt4
    HTool/wrt3
    HTool/wrt2
    HTool/wrt1
  Win32 (6)
    Spy007
    Sniff-NT110
    PortScan-Susca
    LopBadElmo
    RpcDcom
    Aardcook
Trojan (60)
   (7)
    Edda
    Bypass.b
    B2C.RMDirs
    B2C.RenAut
    B2C.Patcha
    B2C.Killw
    B2C/dt1
  - (2)
    CoolFool
    Ladmin
  Application extension (1)
    CoolFool.dll
  Disk erasing (1)
    QZap330
  Downloader (2)
    Galorion
    Downloader-DO
  Dropper (1)
    MultiDropper-HA
  Exploit (3)
    Exploit-NoCheat
    Exploit-Generic
    W32/Exploit-DcomRpc
  Generic (1)
    Exploit-DcomRpc.gen
  Internet Relay Chat (4)
    IRC-Onwe
    IRC/Generic Flooder
    IRC/Flood.cy
    IRC/Flood.cx
  Linux (5)
    Linux-Wiween
    Linux-LnxKerExp
    Linux-BsdKerExp
    Linux-nRg
    Linux-Polite
  Malware Tool (5)
    Kit-Sevenc
    Residuo.kit
    Black Circle.kit
    IPV.kit
    Spam-Shadow
  Password Stealer (1)
    PWS-Takeabyte
  Remote Access (8)
    Linux/BackDoor-Cym
    BackDoor-AXY
    Linux/BackDoor-Note.b
    Linux/BackDoor-Note.a
    Linux/BackDoor-Small
    BackDoor-AYA
    BackDoor-AXZ
    BackDoor-AXX
  Script (14)
    VBS/Winrun
    VBS/SevenC
    Bat/Moab
    VBS/Appchild
    Bat/qd101
    Bat/pas2
    Bat/koo
    Bat/hip
    JS/Liebe
    VBS/Diehad
    Bat/qd100
    Bat/pas3
    Bat/kaz2
    Bat/adm4
  Trojan (1)
    IRC/Fyle
  Win32 (4)
    Flood-Smash
    AIM-Flood.b
    FakeICF
    Sniff-Systrim.b
Virus (130)
   (5)
    OC/jac.12416
    HLLT.7793
    HLLT.5984
    HLL.sub.9860
    HLL.5840
  Application extension Worm (2)
    W32/Spybot.worm.dll
    W32/Aritima.worm.dll
  Companion (2)
    Linux/Califax
    HLL.cmp.8582
  Companion Dropper (2)
    Insufficient.cmp.dr
    Mariano.cmp.dr
  Damaged (2)
    W95/Punch.dam
    W32/Chiton.dam
  Dropper (37)
    Rag-Doll.dr
    Riot.Multiplex.dr
    YD.2881.dr
    VRN.dr
    Vienna.367.dr
    Tron.dr
    Sterculius.dr
    ShiftObj.dr
    Shake.dr
    Pixel.k.dr
    Pixel.g.dr
    Pixel.a.dr
    Loz.2000.dr
    Lapis.dr
    Katie's.dr
    Joan.dr
    Guppy.dr
    Gergana.dr
    Eddy.dr
    DNA.dr
    Dementia.dr
    Carpe Diem.dr
    Brain.dr
    Alicino.dr
    Pony.dr
    Ping-Pong.dr
    OC/x.dr
    Miny.256.dr
    Medical.dr
    Leapfrog.dr
    Kilroy.dr
    Joan.dd.dr
    IT.dr
    Exebug.dr
    CPXK.1000.dr
    ARCV.Scroll.800.dr
    AlphaStrike.2000.dr
  Dropper Generic (1)
    Winstart.gen.dr
  Dropper multipartite (5)
    QMU.mp.dr
    Narcosis.mp.dr
    MCE.mp.dr
    Anthrax.mp.1024.dr
    Digress.mp.dr
  Dropper Overwriting (1)
    Archinf.ow.dr
  Dropper Parasitic (1)
    Buger.cav.dr
  Dropper Worm (1)
    W32/Lovsan.worm.b.dr
  Email (3)
    Yougdos.b@MM
    Yougdos.a@MM
    W32/Nofear.g@MM
  Email Generic (1)
    W32/Predec.gen@MM
  Generic Worm (2)
    W32/Renol.worm.gen
    W32/Byzer.worm.gen
  Internet Relay Chat (1)
    IRC-Fyle
  Internet Relay Chat Worm (1)
    Loth.worm!irc
  Internet Worm (3)
    W32/Lovsan.worm.b
    W32/Lovsan.worm.c
    W32/Spybot.worm.lz
  Macro (2)
    X97M/Rippet
    W97M/Zonda
  Overwriting (3)
    W32/Wabrex.ow
    HLL.ow.3584
    W32/Borler.ow
  P2P Worm (2)
    W32/Antinny.worm
    W32/Darby.worm.a
  Parasitic (2)
    HLLP.7858
    HLLP.7126
  Peer To Peer Worm (1)
    W32/Generic.worm.b!p2p
  Script (10)
    VBS/Zonda
    VBS/Decobe
    VBS/Boomreg
    Bat/pat
    Bat/mzf.598
    Bat/mzf.434
    Bat/adi
    VBS/Triunfo
    VBS/Bisquit
    Bat/mzp.515
  Win32 (3)
    W32/Sankei
    W32/Emlinf
    W32/Casal
  Worm (37)
    W32/Spybot.worm.lo
    W32/Spybot.worm.kt
    W32/Spybot.worm.lb
    W32/Spybot.worm.lu
    W32/Spybot.worm.ls
    W32/Spybot.worm.lq
    W32/Spybot.worm.ld
    W32/Spybot.worm.kv
    W32/Spybot.worm.ln
    W32/Tzet.worm.b
    W32/Tzet.worm.a
    W32/Spybot.worm.kz
    W32/Spybot.worm.ll
    W32/Spybot.worm.li
    W32/Spybot.worm.lg
    W32/Spybot.worm.lf
    W32/Spybot.worm.lm
    W32/Spybot.worm.lj
    W32/Spybot.worm.lh
    W32/Spybot.worm.md
    W32/Spybot.worm.lx
    W32/Spybot.worm.lt
    W32/Spybot.worm.lr
    W32/Spybot.worm.lp
    W32/Spybot.worm.lc
    W32/Spybot.worm.kw
    W32/Spybot.worm.ku
    W32/Spybot.worm.ks
    W32/Spybot.worm.le
    W32/Spybot.worm.la
    W32/Spybot.worm.ky
    W32/Spybot.worm.kx
    HLLW.Shizomur
    W32/Loof.worm
    W32/Gotorm.worm
    W32/Darby.worm
    W32/Aritima.worm

Enhanced Detections:

Program (3)
  Dropper (1)
    Dialer-RAS.aj.dr
  Malware Tool (1)
    VTool/dvq
  Tool (1)
    Tool-Teso212
Trojan (33)
   (2)
    Morfeus
    Bypass
  AOL Password (1)
    AIM-Flood
  Application extension (1)
    PWS-Xilon.dll
  Downloader (2)
    IRC/Flood.ae.ldr
    IRC/Flood.r.ldr
  Dropper (7)
    IRC/Flood.ba.dr
    PWS-Hooker.dr
    IRC/Flood.i.dr
    IRC/Flood.ae.dr
    IRC/Flood.r.dr
    MultiDropper-GV
    Bat/zza.dr
  Exploit (1)
    UNIX/Exploit-Webmin
  Flooder (1)
    FDoS-MBomb
  Internet Relay Chat (1)
    IRC-Mutin
  mIRC client (1)
    IRC/Flood.ae.mirc
  Password (1)
    PWS-Winter
  Password Stealer (1)
    PWS-Sysrat
  Remote Access (9)
    Backdoor-AXR
    BackDoor-AUI
    BackDoor-ALQ
    BackDoor-ATO
    BackDoor-ATT
    BackDoor-AWI
    BackDoor-DR
    BackDoor-AXF
    BackDoor-PK
  Script (2)
    Bat/zz99
    Bat/zza
  Win32 (3)
    DDoS-Patty
    HK
    DDoS-Soldier
Virus (35)
   (11)
    HLLT.5776
    VICE.630
    VICE.629dr
    VICE.629
    VICE.4b.Icem
    VICE.3b.Icem
    VICE.2b.Icem
    VICE.4b.Iceb
    VICE.2b.Iceb
    VICE.2b.IvKill
    BootDr53
  - (1)
    MPCG2.kit
  Boot (1)
    Yale
  Damaged (2)
    W32/Pate.dam
    VICE.Iceb.dam
  Email Generic (1)
    W32/Nofear.gen@MM
  Email Overwriting (2)
    W32/Avupd.ow.c@M
    W32/Avupd.ow.a@M
  File Infector (1)
    Baron
  Generic (1)
    Bat/ke.gen
  Generic Worm (1)
    W32/Ronoper.worm.gen
  Internet Worm (1)
    W32/Avupd.ow.b@M
  Malware Tool (3)
    VCL.kit
    MBC.kit
    Bat/ke.Kit
  Script (6)
    Bat/zzq
    VBS/Tamac
    Bat/kg
    Bat/bg.351
    Bat/zs
    Bat/s
  Win32 (3)
    W32/Evol
    W32/Lamfest
    W32/Pesin
  Worm (1)
    W32/MoFei.worm