[comp.binaries.ibm.pc.d] New papers on IBMPC viruses

w8sdz@WSMR-SIMTEL20.ARMY.MIL (Keith Petersen) (12/05/89)

[--forwarded message--]
From: jwright@atanasoff.cs.iastate.edu (Jim Wright)

Two papers have been added to the SIMTEL20 anti-viral archives.

<msdos.trojan-pro>
SOLOMON.LST     List & description of less common viruses
MSDOSVIR.A89    Virus catalog, with extensive information

Detailed descriptions:

SOLOMON.LST
	A description of some of the more recent and obscure viruses
	by Dr. Alan Solomon.  The viruses described include:
		Ogre
		Typo
		Dark Avenger
		Vacsina
		Mix1
		Fumble
		Dbase
	For each virus covered, the following topics are discussed.
		Recognition and detection
		How the virus copies itself
		What the virus does
		How to get rid of it
		Other information
		Technical details
	This information is extracted from the documentation for
	an anti-viral package, and was sent by the author.

MSDOSVIR.A89
	The autumn '89 issue of Dr. Klaus Brunnstein's virus catalog
	for MSDOS computers.  Viruses covered in this are:
		Autumn Leaves = Herbst = "1704" = Cascade A Virus
		"1701" = Cascade B Virus
		Bouncing Ball = Italian = Ping Pong = Turin Virus
		"Friday 13th" = South African Virus
		GhostBalls Virus
		Icelandic#1 = Disk Crunching = One-in-Ten Virus
		Icelandic#2 Virus
		Israeli = Jerusalem A Virus
		MachoSoft Virus
		Merritt = Alameda A = Yale Virus
		Oropax = Music Virus
		Saratoga Virus
		SHOE-B v9.0 Virus
		VACSINA Virus
		Vienna = Austrian = "648" Virus
	A typical entry would have the following sections and
	subsections:
		==== Computer Virus Catalog 1.2: ====
		Entry, Alias(es), Virus Strain, Virus detected when,
		where, Classification, Length of Virus
		---- Preconditions ----
		Operating System(s), Version/Release, Computer model(s)
		---- Attributes ----
		Easy Identification, Type of infection, Infection Trigger,
		Interrupts hooked, Damage, Damage Trigger, Particularities,
		Countermeasures, Countermeasures successful, Standard means
		---- Acknowledgement ----
		Location, Classification by, Documentation by, Date
		==== End of Virus ====
	An update scheduled for the beginning of the year should
	almost double the number of viruses cataloged.

Jim

[--end forwarded message--]

Thanks, Jim!

Keith Petersen
Maintainer of SIMTEL20's CP/M, MSDOS, & MISC archives [IP address 26.2.0.74]
Internet: w8sdz@WSMR-SIMTEL20.Army.Mil, w8sdz@brl.arpa  BITNET: w8sdz@NDSUVM1
Uucp: {ames,decwrl,harvard,rutgers,ucbvax,uunet}!wsmr-simtel20.army.mil!w8sdz