Content

DAT Readme

Download the latest anti virus definitions for McAfee® VirusScan®. Ensure your McAfee® product contains the most up-to-date detection and prevention.
http://www.mcafee.com/apps/downloads/security_updates/dat.asp

DAT Version 4312
DAT Release Date 12/31/2003
Threats Detected 84111
New Detections 107
Enhanced Detections 133

Enhanced detections are those that have been modified for this release. Detections are enhanced to cover new variants, optimize performance, and correct incorrect identifications.

Noteworthy threats are those that had an Avert risk assessment of Low-Profiled, Medium, Medium-On-Watch, High, or High-Outbreak at the time of DAT release.

Noteworthy Threats:

Name Corporate Risk Assessment Home Risk Assessment
W32/Jitux.worm Low-Profiled Low-Profiled
W32/Quis@MM Low-Profiled Low-Profiled

New Detections:

Internet Worm (1)
  Worm (1)
    W32/Cissi.worm
Program (13)
  Adware (2)
    Adware-Datei
    Adware-NSearch
  Downloader (1)
    Adware-Xupiter.dldr
  Generic (1)
    Dialer-RAS.cm.gen
  Joke (2)
    Spin joke
    Prnscr joke
  Malware Tool (4)
    VTool/spa4
    VTool/spa2
    VTool/spa3
    VTool/spa
  Win32 (3)
    Keygen-Proud
    Reboot-AA
    BloodScroller
Trojan (47)
   (2)
    Banshee
    B2E.dt
  - (1)
    IRC-Bun
  Application extension (2)
    BackDoor-CBB.dll
    Downloader-EO.dll
  Client (2)
    BackDoor-CBB.cli
    BackDoor-CBC.cli
  Configurator (1)
    BackDoor-CBB.cfg
  Damaged (1)
    Downloader-DI.dam
  Disk erasing (2)
    QZap352
    QZap353
  Downloader (1)
    IRC-Bun.dldr
  Dropper (2)
    BackDoor-CBC.dr
    IRC-Bun.dr
  Exploit (2)
    Perl/Exploit-Sqlinject
    Linux/Exploit
  Internet Relay Chat (2)
    IRC/Flood.eb
    IRC/Flood.ea
  Linux (1)
    Linux/DoS-Arang
  Malware Tool (2)
    PWS-Sincom.kit
    QQuse.kit
  Password Stealer (2)
    PWS-Hellhound
    PWS-HotSteal
  Remote Access (3)
    SunOS/Rootkit-A
    BackDoor-CBD
    BackDoor-CBC
  Script (6)
    Bat/qd161
    Reg/Lozak
    Bat/zsp
    VBS/Hange
    Bat/qz70
    Bat/qd160
  Server (1)
    BackDoor-CBC.svr
  VbScript (1)
    VBS/Mextan
  Win32 (13)
    Proxy-Cidra
    Wobwhor
    Teaker
    Del-432
    Del-430
    Obsorb
    Hevol
    AdClicker-AD
    WKill
    Del-431
    Lostor
    ExitWin-H
    AdClicker-AE
Virus (46)
   (6)
    Messiah.4419
    SME.961
    Belial
    SME
    SME.955
    Belial.519
  Boot dropper (1)
    BtDr.Unk2
  Companion (1)
    W32/Emotion.cmp.g
  Damaged (1)
    W97M/Aleja.dam
  Damaged Worm (1)
    W32/Bodiru.worm.dam
  Dropper (4)
    ARCV.Scroll.dr
    Joan.762.dr
    Coconut.dr
    Hara.dr
  E-mail worm (2)
    W32/Quis@MM
    VBS/Vipina
  Email (1)
    JS/Radeja@MM
  Email Generic (2)
    W32/Gluber.gen@MM
    W32/Sober.gen@MM
  Intended (1)
    VBS/Smile.intd
  Linux (1)
    Linux/Satyr.b
  Macro (2)
    X97M/Xchg
    W97M/Yber
  Overwriting (2)
    Bat/limi.ow
    Bat/vma.ow
  PowerPoint Macro (1)
    PP97M/Daol
  Script (9)
    Bat/smilp
    Bat/laduj
    Bat/clo2
    Bat/Fubi
    Bat/lorel
    PHP/Feast
    BAT/Baclan
    Bat/fbi
    Bat/a.cs
  Source code (1)
    W97M/Alicia.src
  Win32 (1)
    W32/Chiton.r
  Worm (9)
    W32/Jitux.worm
    W32/Spybot.worm.wb
    W32/Randon.worm.ah
    W32/Opaserv.worm.ai
    W32/Spybot.worm.vz
    W32/Spybot.worm.xy
    W32/Lafon.worm
    W32/Infor.worm
    W32/Bodiru.worm.p2p

Enhanced Detections:

Malware (1)
  Denial Of Svc (1)
    FDoS-Phasma
Program (6)
   (2)
    NLM/Burglar
    VObj6
  Application extension (1)
    KeyHook.dll
  Win32 (3)
    Reboot-X
    HideRun
    SkServer
Trojan (102)
   (3)
    Must Die
    BDLogger
    Lockdir
  Configurator (5)
    Downloader-EM.cfg
    Downloader-CZ.cfg
    Downloader-FI.cfg
    Downloader-EN.cfg
    MultiDropper-CB.cfg
  Demonstration (1)
    Exploit-ObjectData.demo
  Denial Of Svc (1)
    IRC/Flood.ca
  Downloader (8)
    Downloader-EN
    Downloader-DW
    Downloader-DQ
    Downloader-FV
    Downloader-EM
    Downloader-EL
    Downloader-DV
    Downloader-DB
  Dropper (10)
    Gaslide.dr
    CoreFlood.dr
    BackDoor-AUA.dr
    MultiDropper-IT
    MultiDropper-IH
    MultiDropper-HT
    Trioj.dr
    IRC/Flood.br.dr
    MultiDropper-IJ
    MultiDropper-GZ
  Exploit (2)
    Exploit-DarkKnight
    Exploit-EFCommander
  File deleting (2)
    QDel398
    QDel394
  Flooder (10)
    FDoS-Bigfly
    FDoS-Atho.f
    FDoS-Atho.d
    FDoS-Atho.c
    FDoS-Liammaps
    FDoS-Atho.g
    FDoS-Atho.e
    FDoS-Atho.a
    FDoS-SpecEd
    FDoS-Atho.b
  Generic (2)
    Keylog.gen
    Keylog-Fearless.gen
  Internet Relay Chat (1)
    IRC/Flood.do
  Keylogger (2)
    Keylog-Fin
    Keylog-Tjm
  Malware Tool (2)
    Kit-Nevec
    Nuke-VB
  Password Stealer (1)
    PWS-Engel
  ProcKill (3)
    ProcKill-BB
    ProcKill-AR
    ProcKill-AY
  Remote Access (1)
    BackDoor-ANL
  StartPage (1)
    StartPage-V
  Tool (2)
    Tool-SWBPS
    Tool-Biweaver
  Trojan (1)
    QDel392
  VbScript (1)
    VBS/BootConf
  Win32 (43)
    Funboy
    ExitWin-C
    Flood-Smash
    ExitWin-G
    Disabler
    Aileen
    AdClicker-Z
    AccLock
    Generic PWS.d
    AIM-Flood.b
    AddShare-D
    AdClicker-X
    RunStud
    Del-429
    Del-425
    Del-423
    Del-416
    PassKill
    Laoren
    Klizer
    ICQlock
    Uploader-K
    Spvr
    Sitebloq
    Sarka
    Del-418
    DiskFill-K
    DDoS-HeiBei
    Westell
    Trioj
    Tooner
    Slayvax
    Saster
    Sadic
    QQuse
    Del-427
    Del-424
    Del-413
    Rannoc
    Lulugren
    Kittex
    Jkid
    Hackubomb
Virus (24)
  Companion (6)
    W32/Emotion.cmp.f
    W32/Emotion.cmp.d
    W32/Emotion.cmp.b
    W32/Emotion.cmp.e
    W32/Emotion.cmp.c
    W32/Emotion.cmp.a
  Dropper (3)
    Jeru.Sunday.dr
    SmallME.dr
    W95/Evil.dr
  Generic (2)
    W32/Sober.gen
    W97M/Remplace.gen
  multipartite (1)
    Saturn.mp
  Script (2)
    VBS/Smile
    W32/Habaku.bat
  VbScript (1)
    VBS/Hatred.gen
  Win9x (9)
    W95/Caw.1424
    W95/Caw.1525
    W95/Caw.1493
    W95/Caw.1531
    W95/Caw.1262
    W95/Caw.1335
    W95/Caw.1457
    W95/Caw.1419
    W95/Caw.1416