Macro.Word.NF
Description Macro.Word.NF
It is an extremely silly encrypted virus containing nothing except infection routines. Summary length of its two macros (nf, autoclose) is just 286 bytes. Both virus macros contains infection routines. First macro infects global area while closing an infected document (it is named "autoclose" in infected documents and "nf" in NORMAL.DOT), second macro infects documents that are closed (it is named "nf" in infected documents and "autoclose" in NORMAL.DOT). So the virus exchanges names of these macros as several macro viruses do - while infecting a file or global area it copies "nf" macro with name "autoclose", and "autoclose" with name "nf". NORMAL.DOT Infected files Macro1 nf autoclose Macro1 autoclose nf
While infecting the system the virus displays the string "Infected!", while infecting a file the virus displays "Traced!".
Check other viruses! Be aware! Use Antiviral Software
Gergana.182
Description Gergana.182
These are primitive dangerous not memory resident viruses that overwrite all .COM-files in current directory. "Gergana.450,512" types messages. "Gergana.512" cures the host file if one of more files are infected while the host file execution. These viruses contain the text "*.Com" and: "Gergana.182": Gergana" "Gergana.222": Gergana II -BUL3" "Gergana.300": Gergana / âÑ_úáá -III" "Gergana.450": Gergana / âÑ_úáá -IV Free This file is infected. Press [Enter] to continue "Gergana.512": Gergana V For nice time call [359][032] 557-643. [Enter] to continue
Geri.476
Description Geri.476
This is a harmless, non-memory resident encrypted parasitic virus. It searches for .COM files in the current directory, then writes itself to the end of the file. The virus contains the following text strings: *.COM v 1.1 by Geri$oft, 95.01.28.
|