Content

DAT Readme

Download the latest anti virus definitions for McAfee® VirusScan®. Ensure your McAfee® product contains the most up-to-date detection and prevention.
http://www.mcafee.com/apps/downloads/security_updates/dat.asp

DAT Version 4297
DAT Release Date 10/08/2003
Threats Detected 81046
New Detections 201
Enhanced Detections 108

Enhanced detections are those that have been modified for this release. Detections are enhanced to cover new variants, optimize performance, and correct incorrect identifications.

Noteworthy threats are those that had an Avert risk assessment of Low-Profiled, Medium, Medium-On-Watch, High, or High-Outbreak at the time of DAT release.

Noteworthy Threats:

Name Corporate Risk Assessment Home Risk Assessment
There are no noteworthy threats in this release

New Detections:

Program (24)
  - (2)
    IGetNet.dr
    Proxy-Daemonize
  Adware (7)
    Adware-NetPals
    Adware-NavHelper
    Adware-Huntbar
    Adware-SAHAgent
    Adware-SideSearch
    Adware-Trix
    Adware-BookedSpace
  Application extension (2)
    Keylog-Kana.dll
    Keylog-GSmon.dll
  Demonstration (1)
    Demo-Finjokan
  Exploit (2)
    Exploit-IIS
    Exploit-NT
  Generic (2)
    Dialer-RAS.bw.gen
    Dialer-RAS.bv.gen
  Joke (2)
    Zapp Joke
    LOL joke
  Keylogger (2)
    Keylog-Kana
    Keylog-GSmon
  Spyware (2)
    Keylog-Kiirogaa
    Keylog-KeyLoggerJ
  Win32 (2)
    Prova!SWF
    RpcDcom.b
Trojan (64)
   (4)
    BDLogger
    CasKade
    Saboteur-2
    B2C.Delwin3
  - (1)
    Parlay
  Application extension (5)
    BackDoor-BAE.dll
    BackDoor-WB.dll
    Keylog-Mico.dll
    PWS-Alavar.dll
    BackDoor-AZR.dll
  Client (4)
    BackDoor-AZS.cli
    BackDoor-AZI.cli
    MacOS/BackDoor-Xover.cli
    Unix/Sub7.cli
  Configurator (1)
    BackDoor-AZS.cfg
  Damaged (1)
    W32/Randon.dam
  Demonstration (2)
    Exploit-ObjectData.demo
    Exploit-Sadmind.demo
  Downloader (3)
    Downloader-EH
    Downloader-DZ
    Downloader-EK
  Dropper (3)
    IRC/Flood.dh.dr
    Keylog-Mico.dr
    IRC-Yoink.dr
  Exploit (1)
    VBS/Psyme
  Generic (2)
    Keylog.gen
    PWS-Harvester.gen
  Internet Relay Chat (1)
    IRC/Flood.dh
  Malware Tool (1)
    Kit-Bshwg
  Password (1)
    PWS-Alavar
  ProcKill (3)
    ProcKill-AR
    ProcKill-AQ
    ProcKill-AP
  Remote Access (17)
    BackDoor-BAE
    BackDoor-AZV
    BackDoor-UK.gen
    BackDoor-AZT
    BackDoor-AZR
    BackDoor-AZQ
    BackDoor-AZP
    BackDoor-AZO
    BackDoor-AZN
    BackDoor-AZM
    BackDoor-AZL
    BackDoor-AZK
    BackDoor-AZH
    Unix/BackDoor-RTD
    BackDoor-AZJ
    BackDoor-AZI.srv
    BackDoor-WhoDoor
  Script (6)
    IIS/BackDoor-ACE
    VBS/DDoS-iFrameNet
    Bat/logo
    VBS/Exposed
    Bat/green
    VBS/Parlay
  Server (2)
    BackDoor-AZS.svr
    MacOS/BackDoor-Xover.svr
  Tool (1)
    Backdoor-AZU
  Win32 (5)
    Keylog-Mico
    Laoren
    PassKill.b
    Nulnuler
    Nucscan
Virus (113)
   (36)
    ARCV.Scroll.817
    LollaRack
    Werewolf
    Whiplash.3165
    Trim
    Sip
    Ripe
    Puebla.684
    OC/vein
    Sting
    Maradona.301
    Loren.1387
    Imagina.3758
    Flim.388
    Dood.1343
    Ches.2016
    BootDr261
    Berlin
    Ballbreaker
    Asesinada.1837
    Zipper.pvb
    Whiplash.1904
    VCC.c
    Sydo
    Spoiler.177
    RipHD.1647
    PXLL.948
    Plovdiv.1001
    Maripuri.1942
    KOV.2033
    Ermin
    Darkness.803
    Anti-Cleric.877
    A2KM/Barama
    A2KM/Retro
    A2KM/Julie
  Application extension Worm (1)
    W32/Licia.worm.dll
  Companion (4)
    W32/Mocar.cmp.c
    W32/Mocar.cmp.a
    W32/Mocar.cmp.d
    W32/Mocar.cmp.b
  Damaged (2)
    Jeru.MS.dam
    W95/RainSong.dam
  Dropper (11)
    W32/Ingax.856.dr
    W32/Ingax.840.dr
    W32/Ingax.644.dr
    W32/Ingax.568.dr
    VPP.475.dr
    W32/Deemo.dr
    W32/Chiton.m.dr
    VCL.Kinnison.dr
    Ches.dr
    Ballbreaker.dr
    W32/Haharin.dr
  Dropper Generic (1)
    W32/Chiton.dr.gen
  Dropper Parasitic (1)
    Zoo.cav.dr
  Dropper Worm (1)
    W32/Amok.worm.dr
  Generic (1)
    VBS/Antisocial.gen
  Generic Worm (1)
    W32/Amok.worm.gen
  Internet Relay Chat (3)
    W32/Worm60!irc
    W32/Kromber!irc
    W32/Azrael!irc
  Internet Worm (1)
    W32/Gaobot.worm.ai
  mIRC Worm (1)
    W32/Protoride.worm
  Parasitic (1)
    HLLP.5567
  Peer To Peer (2)
    Bat/Cobat!p2p
    W32/Harex.b!p2p
  Peer To Peer Worm (2)
    W32/Specx.worm.c!p2p
    W32/Sdbot.worm!p2p
  Remote Access (1)
    BackDoor-AZG
  Script (3)
    VBS/Tripple
    Bat/Bomgen
    VBS/Seven.d
  Source code (1)
    W97M/Dropbox.src
  Universal (1)
    Univ/m
  Win32 (16)
    W32/Anvil.2044
    W32/Deemo.b
    W32/Deemo.a
    W32/Sality.f
    W32/NGVCK.1352dr
    W32/Ingax.840
    W32/Ingax.568
    W32/Chiton.l
    W32/Maya.4107
    W32/Ingax.644
    W32/GiDog
    W32/Chiton.m
    W32/Haharin
    W32/Anvil.2045
    W32/Anvil.2045dr
    W32/Anvil.2044dr
  Win9x (3)
    W95/Mogul.d
    W95/Mogul.c
    W95/Bytesv.1442
  Worm (19)
    W32/Spybot.worm.pe
    W32/Opaserv.worm.ae
    W32/Spybot.worm.pc
    W32/Spybot.worm.pb
    W32/Spybot.worm.pa
    W32/Spybot.worm.pd
    W32/Tilence.worm
    W32/Sachiel.worm.i
    W32/Randon.worm.v
    W32/Randon.worm.u
    W32/Randon.worm.t
    W32/Dhaka.worm
    W32/Randon.worm.s
    W32/Oblion.worm
    W32/Ayubin.worm
    W32/Apove.worm.c
    W32/Apove.worm.b
    W32/Apove.worm.a
    W32/Alcop.ba.worm

Enhanced Detections:

Internet Worm (2)
  Intended (1)
    VBS/Satanik
  Open Share Worm (1)
    W32/Sluter.worm
Program (4)
   (1)
    Generated.SDFE
  Dropper Joke (1)
    Finjokan.joke.dr
  Malware Tool (2)
    VTool/mix
    VTool/av17
Trojan (40)
   (1)
    Del-408
  Application extension (1)
    PWS-Sincom.dll
  Client (1)
    BackDoor-EX.cli
  Downloader (6)
    Downloader-U
    Downloader-DP
    Downloader-AI
    Downloader-AB
    Downloader-AH
    Downloader-AD
  Dropper (4)
    Downloader-DM
    IRC/Flood.y.dr
    Downloader-DP.dr
    Downloader-DM.dr
  Exploit (2)
    Exploit-LocalMail
    Exploit-Wordperf
  File Deletion (1)
    QDel350
  Generic (1)
    VBS/Rimko.gen
  Linux (1)
    Linux/SubSeven
  Malware Tool (4)
    WVE.kit
    UNIX/Spam-SMS.Chung
    Kit-Easygen.20
    Bat/gre.kit
  mIRC client (1)
    IRC/Flood.y.mirc
  Password (1)
    PWS-Netspurt
  Remote Access (9)
    UNIX/RootKit-L
    Backdoor-ARU
    BackDoor-UJ
    BackDoor-ACN
    BackDoor-Sub7.Upd
    BackDoor-AFS
    BackDoor-ADY
    BackDoor-ZN
    BackDoor-AJK
  Script (3)
    Bat/cob
    Bat/gre
    Bat/lis
  Server (1)
    BackDoor-ARR.svr
  VbScript (1)
    VBS/Atale
  Win32 (2)
    Uploader-G
    Pandora
Virus (62)
   (23)
    Burglar
    Anarchy.5838
    Werewolf.685b
    Werewolf.684b
    Werewolf.685a
    Werewolf.684a
    Whiplash
    Trinidad
    Jeru.MS.1719a
    Anarchy.5176
    Tiny
    GrnCat.1575.r
    Jeru.MS.1719d
    Jeru.MS.1719b
    Albania.429
    Ricketty.440
    GhostDog.182
    Anarchy.3153
    Daubique.519
    Miny
    Bubble.471
    Jeru.MS.1719c
    Ply
  Companion (1)
    Loadhi.cmp.1467
  Dropper (4)
    Werewolf.685b.dr
    Ultra Fire.dr
    Apparition.dr
    Smiley.1983.dr
  Email Generic (1)
    Kondrik.gen@MM
  File Infector (2)
    Ha
    Anarchy.6093
  Generic (1)
    VBS/Alchem.gen
  Generic Worm (1)
    IRC/Poison.worm.gen
  Internet Relay Chat (2)
    IRC/Azrael
    IRC/Worm60
  Internet Worm (1)
    W32/Pereban@MM
  Macro (5)
    XF/Sic.gen
    W97M/DropBox
    X97M/Toraja
    A97M/Astigma
    WM/Wazzu
  Malware Tool (1)
    Easygen.kit
  mIRC Worm (1)
    IRC/Zippy.worm
  Open Share Worm (1)
    W32/Eyeveg.worm
  Peer To Peer (1)
    W32/Harex!p2p
  Script (6)
    W32/Syney.bat
    VBS/Antisocial.g
    VBS/Seven.c
    VBS/Seven.b
    VBS/BSVP
    VBS/Antisocial.e
  Universal (1)
    Univ/n
  VbScript (3)
    VBS/Zeha
    VBS/Heart
    VBS/Seven.A
  Win32 (1)
    W32/Franriv
  Worm (6)
    W32/Lolol.worm
    IRC/Netlogon.worm.c
    IRC/Netlogon.worm.b
    IRC/Netlogon.worm.b2
    IRC/Netlogon.worm.a
    W32/Denit.worm