Macro.Office.Jerk.d
Description Macro.Office.Jerk.d
This is a multi-platform macro-virus infecting Office97 components: Word documents and Excel workbooks and sheets. The virus contains two auto-macros in Excel sheets and Word documents: Document_Close in Word documents, and Workbook_Deactivate in case of Excel workbook or Worksheet_Deactivate in case of Excel sheet. The virus replicates itself in Excel upon deactivating workbooks. In Word, the virus replicates upon document closing. Upon spreading, the virus infects not only "native" objects, but also exports its code to another Office component if it is installed in the system. The virus turns off the VirusProtection MS Office option. Each month from June to December on the 14th ,the virus displays the message: www.all.net V guvax <UserName> vf n ovt fghcvq wrex!
Check other viruses! Be aware! Use Antiviral Software
Metallica.1536.a
Description Metallica.1536.a
These are very dangerous nonmemory resident parasitic viruses. They search for COM and EXE files and write themselves to the end of the file. Sometimes they erase the disk sectors and display: "Metallica.1536.a": "METALLICA"-BEST GROUP OF THE WORLD!!! (METALLICA-virus realised after 22 infection) ALL GOOD. V 3.22
"Metallica.1536.b": "METALLICA"-BEST GROUP OF THE WORLD!!! (METALLICA-virus realised after 22 infection) HA-HA-HA! V 3.30
Metallica.1739
Description Metallica.1739
It is not a dangerous memory resident parasitic virus. It hooks INT 9, 10h, 21h and writes itself to the end of COM files. It duplicates the keys that are entered via keyboard. On selecting a new video mode the virus draws the grave. It contains the texts: .com .COM Manowar Metallica
This virus writes itself to the end of the file, and overwrites the second (not the first) file instruction to the 'call to virus' command: XXXX XXXX ; first file instruction CALL VIRUS ; jump to the virus body all. .....
To locate the address of second instruction the virus loads the file, and traces it.
|