home
***
CD-ROM
|
disk
|
FTP
|
other
***
search
/
Gold Medal Software 3
/
Gold Medal Software - Volume 3 (Gold Medal) (1994).iso
/
virus
/
redal15.arj
/
EXAMPLE.DOC
< prev
next >
Wrap
Text File
|
1993-12-10
|
6KB
|
116 lines
The following messages were all produced by Red Alert! and refer to known
viruses and trojans. Hopefully this will give you some idea of what to look
for when testing a suspect file.
[6]WARNING! D:\ANTIV.EXE may contain a call to DOS 'rename file' function
[7]WARNING! D:\ANTIV.EXE may contain a call to DOS 'delete file' function
[8]YELLOW ALERT! D:\ANTIV.EXE may contain a call to DOS 'exec' function
[14]RED ALERT! D:\ANTIV.EXE contains a reference to 'format.com'
[19]WARNING! D:\ANTIV.EXE contains a reference to 'virus'
[9]YELLOW ALERT! D:\MI2SOLVE.EXE may contain a call to dos 'set file
date/time' function
RED ALERT! D:\MI2SOLVE.EXE is probably infected with a virus
[9]YELLOW ALERT! D:\BOOTING.COM may contain a call to dos 'set file date/time'
function
[15]YELLOW ALERT! D:\BOOTING.COM contains a reference to '*.COM'
[20]RED ALERT! D:\BOOTING.COM contains a reference to '[VCL]'
[21]RED ALERT! D:\BOOTING.COM contains known virus commands RED ALERT!
D:\BOOTING.COM is probably infected with a virus
[25]RED ALERT! D:\BOOTING.COM is encrypted
[28]RED ALERT! D:\BOOTING.COM searches directories for *.COM
[9]YELLOW ALERT! D:\CODEZERO.COM may contain a call to dos 'set file
date/time' function
[12]RED ALERT! D:\CODEZERO.COM contains code known to lock the keyboard
[15]YELLOW ALERT! D:\CODEZERO.COM contains a reference to '*.COM'
[20]RED ALERT! D:\CODEZERO.COM contains a reference to '[VCL]'
[21]RED ALERT! D:\CODEZERO.COM contains known virus commands
RED ALERT! D:\CODEZERO.COM is probably infected with a virus
[25]RED ALERT! D:\CODEZERO.COM is encrypted
[28]RED ALERT! D:\CODEZERO.COM searches directories for *.COM
[9]YELLOW ALERT! D:\DONTELLO.COM may contain a call to dos 'set file
date/time' function
[12]RED ALERT! D:\DONTELLO.COM contains code known to lock the keyboard
[15]YELLOW ALERT! D:\DONTELLO.COM contains a reference to '*.COM'
[20]RED ALERT! D:\DONTELLO.COM contains a reference to '[VCL]'
[21]RED ALERT! D:\DONTELLO.COM contains known virus commands
RED ALERT! D:\DONTELLO.COM is probably infected with a virus
[25]RED ALERT! D:\DONTELLO.COM is encrypted
[28]RED ALERT! D:\DONTELLO.COM searches directories for *.COM
[9]YELLOW ALERT! D:\EARTHDAY.COM may contain a call to dos 'set file
date/time' function
[12]RED ALERT! D:\EARTHDAY.COM contains code known to lock the keyboard
[15]YELLOW ALERT! D:\EARTHDAY.COM contains a reference to '*.COM'
[17]YELLOW ALERT! D:\EARTHDAY.COM may contain a call to DOS 'absolute disk
write' function
[19]WARNING! D:\EARTHDAY.COM contains a reference to 'virus'
[20]RED ALERT! D:\EARTHDAY.COM contains a reference to '[VCL]'
[21]RED ALERT! D:\EARTHDAY.COM contains known virus commands
RED ALERT! D:\EARTHDAY.COM is probably infected with a virus
[25]RED ALERT! D:\EARTHDAY.COM is encrypted
RED ALERT! D:\INCSPD.COM is probably infected with a virus
RED ALERT! D:\INCSPD.COM may open a file handle to command.com
[32]RED ALERT! D:\INCSPD.COM may open a file handle to ibmdos.com
[28]RED ALERT! D:\INCSPD.COM searches directories for *.COM
[8]YELLOW ALERT! D:\INFECT.COM may contain a call to DOS 'exec' function
[9]YELLOW ALERT! D:\INFECT.COM may contain a call to dos 'set file date/time'
function
RED ALERT! D:\INFECT.COM is probably infected with a virus
[33]RED ALERT! D:\INFECT.COM may capture interrupt 21
[25]RED ALERT! D:\INFECT.COM is encrypted
[5]YELLOW ALERT! D:\INFECT.COM may remain resident in memory
[8]YELLOW ALERT! D:\INFECT2.COM may contain a call to DOS 'exec' function
[22]YELLOW ALERT! D:\INFECT2.COM is a PKLITE packed file.
[9]YELLOW ALERT! D:\KINISON.COM may contain a call to dos 'set file date/time'
function
[12]RED ALERT! D:\KINISON.COM contains code known to lock the keyboard
[15]YELLOW ALERT! D:\KINISON.COM contains a reference to '*.COM'
[19]WARNING! D:\KINISON.COM contains a reference to 'virus'
[20]RED ALERT! D:\KINISON.COM contains a reference to '[VCL]'
[21]RED ALERT! D:\KINISON.COM contains known virus commands
RED ALERT! D:\KINISON.COM is probably infected with a virus
[25]RED ALERT! D:\KINISON.COM is encrypted
[9]YELLOW ALERT! D:\PEARLHBR.COM may contain a call to dos 'set file
date/time' function
[12]RED ALERT! D:\PEARLHBR.COM contains code known to lock the keyboard
[20]RED ALERT! D:\PEARLHBR.COM contains a reference to '[VCL]'
[25]RED ALERT! D:\PEARLHBR.COM is encrypted
[29]RED ALERT! D:\PEARLHBR.COM searches directories for *.EXE
[11]RED ALERT! D:\RICHARDS.COM contains code known to destroy drive C: FAT data
[17]YELLOW ALERT! D:\RICHARDS.COM may contain a call to DOS 'absolute disk
write' function
[25]RED ALERT! D:\RICHARDS.COM is encrypted
[8]YELLOW ALERT! D:\TORUN.COM may contain a call to DOS 'exec' function
[23]RED ALERT! Both .COM and .EXE forms of D:\TORUN.EXE
[9]YELLOW ALERT! D:\VMESSIAH.COM may contain a call to dos 'set file
date/time' function
[12]RED ALERT! D:\VMESSIAH.COM contains code known to lock the keyboard
[15]YELLOW ALERT! D:\VMESSIAH.COM contains a reference to '*.COM'
[20]RED ALERT! D:\VMESSIAH.COM contains a reference to '[VCL]'
RED ALERT! D:\VMESSIAH.COM contains commands usually only found in a virus
[25]RED ALERT! D:\VMESSIAH.COM is encrypted
[28]RED ALERT! D:\VMESSIAH.COM searches directories for *.COM
[29]RED ALERT! D:\VMESSIAH.COM searches directories for *.EXE
[9]YELLOW ALERT! D:\YANKEE2.COM may contain a call to dos 'set file date/time'
function
[15]YELLOW ALERT! D:\YANKEE2.COM contains a reference to '*.COM'
[20]RED ALERT! D:\YANKEE2.COM contains a reference to '[VCL]'
[21]RED ALERT! D:\YANKEE2.COM contains known virus commands
RED ALERT! D:\YANKEE2.COM is probably infected with a virus
[28]RED ALERT! D:\YANKEE2.COM searches directories for *.COM