Content

DAT Readme

Download the latest anti virus definitions for McAfee® VirusScan®. Ensure your McAfee® product contains the most up-to-date detection and prevention.
http://www.mcafee.com/apps/downloads/security_updates/dat.asp

DAT Version 4322
DAT Release Date 02/04/2004
Threats Detected 85469
New Detections 212
Enhanced Detections 108

Enhanced detections are those that have been modified for this release. Detections are enhanced to cover new variants, optimize performance, and correct incorrect identifications.

Noteworthy threats are those that had an Avert risk assessment of Low-Profiled, Medium, Medium-On-Watch, High, or High-Outbreak at the time of DAT release.

Noteworthy Threats:

Name Corporate Risk Assessment Home Risk Assessment
There are no noteworthy threats in this release

New Detections:

Program (101)
   (28)
    VMag32
    VMag30
    VMag28
    VMag26
    VMag24
    VMag22
    VMag20
    VMag18
    VMag16
    VMag15
    VMag14
    VMag12
    VMag10
    VMag5
    Tool/nosh
    VMag31
    VMag29
    VMag27
    VMag25
    VMag23
    VMag21
    VMag19
    VMag17
    VMag13
    VMag11
    VMag9
    Tool/zipcr
    Generator.Hatred
  Dialer (17)
    HTool/dialhk16
    HTool/dialhk14
    HTool/dialhk13
    HTool/dialhk12
    HTool/dialhk11
    HTool/dialhk10
    HTool/dialhk8
    HTool/dialhk6
    HTool/dialhk4
    HTool/dialhk2
    HTool/dialhk18
    HTool/dialhk17
    HTool/dialhk15
    HTool/dialhk9
    HTool/dialhk7
    HTool/dialhk5
    HTool/dialhk3
  Downloader (1)
    Adware-XPlugin.dldr
  Dropper (1)
    Keylog-Hothook.dr
  Joke (1)
    Catchme joke
  Malware Tool (51)
    VTool/vli2
    VTool/virug
    VTool/sla
    VTool/vli
    VTool/sph
    VTool/sdne3
    VTool/sdne1
    VTool/s2h
    VTool/redarc
    VTool/pinfo
    VTool/pfo
    VTool/nedump
    VTool/mcb
    VTool/ipe
    VTool/gre
    VTool/filcu
    VTool/ecto
    VTool/duk22
    VTool/duk21
    VTool/dsd2
    VTool/dat11
    VTool/dat10
    VTool/cra2
    VTool/cor
    VTool/bsvc
    VTool/av35
    VTool/av33
    VTool/av31
    VTool/av30
    VTool/av29
    VTool/av27
    VTool/sdne4
    VTool/sdne2
    VTool/crypt3
    VTool/cmon
    VTool/av37
    VTool/av34
    VTool/av32
    VTool/av28
    VTool/asm3
    HTool/thc5
    HTool/thc4
    HTool/thc3
    HTool/thc2
    HTool/mat
    HTool/kgn3
    HTool/ipc2
    HTool/hyp
    VTool/av26
    VTool/alt
    HTool/hdd
  Tool (1)
    Htool/dialhk
  Win32 (1)
    Del-444
Trojan (46)
   (2)
    Fire2
    Inor
  Application extension (1)
    Downloader-EN.b.dll
  Configurator (2)
    MultiDropper-JA.cfg
    Downloader-HD.cfg
  Demonstration (1)
    JS/Exploit-ScriptSrc.demo
  Dialer (1)
    QDial19
  Downloader (8)
    Downloader-HD
    Downloader-HC
    Downloader-HB
    Downloader-HA
    Downloader-GY
    BackDoor-CBZ.dldr
    Downloader-GZ
    Downloader-EN.b
  Dropper (4)
    MultiDropper-JC
    MultiDropper-JB
    MultiDropper-JA
    MultiDropper-IZ
  Generic (3)
    JS/Exploit-ScriptSrc.gen
    PWS-Polk.gen
    Perl/Exploit.gen
  Internet Relay Chat (1)
    IRC/Chipat
  Password Stealer (1)
    PWS-Polk
  ProcKill (1)
    ProcKill-BM
  Proxy (1)
    Proxy-Inspir
  Remote Access (7)
    BackDoor-CCB
    BackDoor-CCA
    BackDoor-CBX
    BackDoor-CBV
    BackDoor-CBZ
    BackDoor-CBY
    BackDoor-CBW
  Script (6)
    VBS/Thead
    JS/Revcon
    Perl/MmDump
    VBS/Kavint
    PHP/Faces
    Bat/set5
  StartPage (1)
    StartPage-BG
  Tool (1)
    Tool-Emcrack
  Win32 (5)
    Carfi
    Tormon
    DoS-FtpFk
    DDoS-Asm
    Blackout
Virus (65)
   (2)
    VICE5
    Generator.VRG
  Companion (1)
    W32/Zerogav.cmp.c
  Generic Worm (1)
    W32/Anig.worm.gen
  Internet Relay Chat (1)
    W32/Sanker!irc
  Internet Relay Chat Worm (1)
    W32/Milol.worm.d!irc
  Macro (2)
    W97M/Disco
    W97M/Ortant
  Open Share Worm (1)
    W32/Eyeveg.worm.c
  Overwriting (1)
    Odessa.ow.405
  Parasitic (1)
    W32/HLLP.Ped
  Script (3)
    VBS/Umbriel
    PHP/RainBow
    JS/Lowle
  Win32 (5)
    W32/Relu
    W32/Porex.c
    W32/NGVCK.989
    W32/Seppuku.k
    W32/Sality.h
  Worm (46)
    W32/Gaobot.worm.ix
    W32/Gaobot.worm.iu
    W32/Gaobot.worm.iw
    W32/Gaobot.worm.il
    W32/Gaobot.worm.ii
    W32/Gaobot.worm.hz
    W32/Gaobot.worm.iy
    W32/Gaobot.worm.iz
    W32/Gaobot.worm.iv
    W32/Gaobot.worm.im
    W32/Gaobot.worm.ik
    W32/Gaobot.worm.ig
    W32/Gaobot.worm.hx
    W32/Spybot.worm.abo
    W32/Spybot.worm.abl
    W32/Spybot.worm.abj
    W32/Spybot.worm.abg
    W32/Spybot.worm.abq
    W32/Spybot.worm.abm
    W32/Spybot.worm.abk
    W32/Spybot.worm.abi
    W32/Spybot.worm.aax
    W32/Tupeg.worm
    W32/Spybot.worm.aaw
    W32/Pokibat.worm
    W32/Gaobot.worm.hy
    W32/Randon.worm.ai
    W32/Gaobot.worm.ja
    W32/Gaobot.worm.is
    W32/Gaobot.worm.iq
    W32/Gaobot.worm.in
    W32/Gaobot.worm.ij
    W32/Gaobot.worm.if
    W32/Gaobot.worm.ib
    W32/Gaobot.worm.ir
    W32/Gaobot.worm.io
    W32/Gaobot.worm.ie
    W32/Gaobot.worm.ic
    W32/Eyeveg.worm.b
    W32/Eyeveg.worm.a
    W32/Anig.worm.c
    W32/Anig.worm.a
    W32/Anig.worm.b
    W32/Spybot.worm.abs
    W32/Spybot.worm.aav
    W32/Spybot.worm.aau

Enhanced Detections:

Virus (66)
   (19)
    Aav.8224
    OC/di
    OC/dg
    OC/cz
    OC/cp
    OC/cr
    OC/co
    Nauru.320
    OC/dh
    OC/da
    OC/cw
    Uruguay 2
    OC/cs
    OC/cn
    OC/ico
    Uruguay 5
    Uruguay 6
    Uruguay 1
    OC/cl
  Application extension (1)
    W32/Sality.dll
  Application extension Worm (1)
    W32/Dfcsvc.worm.dll
  Dropper (1)
    Uruguay-6.dr
  Dropper Worm (1)
    W32/Sdbot.worm.dr
  Floppy Worm (1)
    W32/Listas.worm
  Generic Worm (2)
    W32/Randon.worm.d.gen
    W32/Randon.worm.a.gen
  Internet Relay Chat Worm (3)
    W32/Milol.worm.b!irc
    W32/Milol.worm.c!irc
    W32/Milol.worm.a!irc
  Internet Worm (1)
    W32/Tufast.worm
  Macro (1)
    W97M/Tuna
  Overwriting (1)
    Bat/limi.ow
  Peer To Peer Worm (1)
    W32/Kazeus.worm!p2p
  Win32 (12)
    New Win32.g5
    W32/Porex.b
    W32/Porex.a
    W32/Rads
    W32/NGVCK.5041
    W32/Sality.a
    W32/Sality.c
    W32/Sality.b
    W32/Sality.d
    W32/Sality.f
    W32/Sality.e
    W32/Sality.g
  Worm (21)
    W32/Randon.worm.p
    W32/Randon.worm.ae
    W32/Randon.worm.i
    W32/Randon.worm.h
    W32/Randon.worm.g
    W32/Randon.worm.c
    W32/Randon.worm.b
    W32/Randon.worm.j
    W32/Randon.worm.k
    W32/Randon.worm.l
    W32/Randon.worm.o
    W32/Randon.worm.r
    W32/Randon.worm.q
    W32/Randon.worm.v
    W32/Randon.worm.u
    W32/Randon.worm.t
    W32/Randon.worm.s
    W32/Randon.worm.ac
    W32/Randon.worm.ab
    W32/Randon.worm.aa
    W32/Randon.worm.af
Trojan (27)
   (1)
    Fire
  - (2)
    QHosts-2
    IRC/Flood.bi
  Application extension (1)
    Downloader-EO.dll
  Configurator (1)
    Downloader-EO.cfg
  Denial Of Svc (1)
    IRC/Flood.s
  Downloader (5)
    Downloader-DC
    Downloader-DZ
    Downloader-EO
    Downloader-HE
    IRC/Flood.am.ldr
  Dropper (3)
    Keylog-Keylf.dr
    PWS-Progent.dr
    IRC/Flood.am.dr
  Generic (2)
    PWS-LegMir.gen.b
    BackDoor-ALP.gen
  Internet Relay Chat (2)
    IRC/Izzik
    IRC/Flood.am
  Java Applet (1)
    JV/Xideo
  JavaScript (1)
    JS/CardStealer
  mIRC client (1)
    IRC/Flood.am.mirc
  Password (1)
    Keylog-Keylf
  ProcKill (1)
    ProcKill-AW
  Proxy (1)
    Proxy-MCP
  Remote Access (1)
    BackDoor-CBQ
  Script (1)
    VBS/DelSys
  Win32 (1)
    Generic Downloader
Malware (1)
  Exploit (1)
    Exploit-PhpBB
Program (14)
   (2)
    Tool/raoff
    VObj1
  Adware (1)
    Adware-MyWay
  Malware Tool (11)
    VTool/mag8
    VTool/cry
    VTool/mag2
    VTool/mag3
    VTool/mag4
    VTool/mag1
    VTool/cmo
    VTool/mag6
    VTool/sea
    VTool/crypt
    VTool/mag7