home
***
CD-ROM
|
disk
|
FTP
|
other
***
search
/
ShareWare OnLine 2
/
ShareWare OnLine Volume 2 (CMS Software)(1993).iso
/
virus
/
vc50_jan.zip
/
VC.HLP
< prev
next >
Wrap
Text File
|
1993-01-24
|
34KB
|
462 lines
THIS IS THE HELP FILE FOR VICTOR CHARLIE
\ /
(o o)
v
+++
This file may be customized for your individual needs. The Victor Charlie
manual explains how to do this, but here is a brief summary.
This section of the file is never displayed by Victor Charlie. You can make
any notes in here that you wish, or delete it entirely.
When Victor Charlie displays a message like "Press `H' for Help", it then
will search this file for the relevant message to display. You can see the
current help messages below. The name of this help file MUST be VC.HLP.
The actual help to display is decided by a sequence of characters. This
sequence is $n<return>, where n = the appropriate digit or letter and <return>
is a carriage return. These three characters must be together, with no spaces.
The display halts at the next $ character. You can see below how these key
sequences are arranged.
You may change any messages between the two lines of equal signs (======).
To avoid confusion, we recommend you do not change these actual lines, however.
To customize the messages, make a backup copy of VC.HLP under another
name to try to circumvent Murphy's Law. Load this file into any editor
or word processor which produces ASCII output. Type in your new or
edited message between the two lines of equal signs. Save the file to
disk as VC.HLP, in Victor Charlie's Home Directory.
For best results, keep your messages to a maximum of 19 lines. Margins may
be a maximum of 0 (left) and 80 (right). You can test your messages for
appearance with the "VC1 DEMO" command.
Here is a quick summary of the codes used in the help file,
and what they indicate:
Code VC
$ + Program Trouble Indicated
---- ------- -----------------
0 ALL TYPE 1 FILE INFECTOR DETECTED
1 VC1 TROUBLE IN PARTITION (INITIALIZATION)
2 VC1 CHANGED COMMAND.COM
3 VC1 CHANGED [VC1.CFG]
4 VC1 CHANGED PARTITION SECTOR (NORMAL RUN)
5 VC1 CHANGED BOOT SECTOR
6 VC1 CHANGED HIDDEN SYSTEM FILE
7 VC1 BOOT PROCESS ALTERED
8 VC1 MISSING VC1.CFG
9 VC1 PROTECTED FILE CHANGED [VC1.CFG]
m VC1 MEMORY PARASITE
B VCHECK BAD FLOPPY BOOT SECTOR
C VCHECK COMMAND HELP (PAGE 1)
c VCHECK COMMAND HELP (PAGE 2)
D VCHECK DEMO FILE DISPLAY SIMULATION
T VCHECK TIMEOUT (RECURSIVE DIRECTORY)
b DEMO MODE BEGIN
e DEMO MODE END FOR VC1, VC2
E DEMO MODE END FOR VCHECK
$=======DEMO MODE MESSAGE (BEGIN)==========================================$b
███████████████████████████████████████████████████████████████████████████████
██│ ! │██▒▒▀██▒▒▀██▒▒▒▒▒▒▀██▒▒▒▒▒▒▀███▌VICTOR ▐██████╔═════════════╗███████████
██│ D │██▒▒ ██▒▒ ██▒▒ ▄▄▄▄██▒▒ ▄▄▄▄███▌CHARLIE▐██████║ DEMO MODE ║███████████
██│ E │██▒▒ ██▒▒ ██▒▒ ██████▒▒▒▒▒▒▀███▌GENERIC▐██████║ No checking ║███████████
██│ M │███▒▒▐▒▒ ▄██▒▒ ████████▄▄▒▒ ███▌ PC Virus▐████║ No changes ║███████████
██│ O │████▒▒▒ ████▒▒▒▒▒▒▀██▒▒▒▒▒▒ ███▌ Detector▐████╚═════════════╝███████████
██│ ! │█████▄▄▄█████▄▄▄▄▄▄███▄▄▄▄▄▄███▌ & Killer▐██████████████████████████████
███████████████████████████████████████████████████████████████████████████████
We will now run a SIMULATION DEMO of VC operation. We'll simulate every
kind of virus attack, so you can see how VC will behave when trouble strikes.
All possible messages will display, and you can try the user responses.
┌───────────────────────────────────┬─────────────────────────────────────────┐
│All virus types will be simulated. │ This demo will actually do nothing to │
│It is unlikely that any real virus │ your disk, even though it may say it │
│would infect ALL these things, but │ is doing things. You can run this demo │
│we'll show them all to you anyway. │ for practice any time you want. │
└───────────────────────────────────┴─────────────────────────────────────────┘
This is a DEMO mode only. It will NOT do any virus checking. Be sure
to run the program in normal mode after you are done with this demo.
▄ Let's repeat: this is a SIMULATION. ▄
▓ No changes actually will be made. ▓
▀ Messages are all for demonstration. ▀
$=======DEMO MODE MESSAGE (END FOR VC1, VC2)===============================$e
This is the end of the SIMULATION DEMO. If you have not done so already, you
may also want to run the simulation of VCHECK, Victor Charlie's hunter-killer
program for file-infector (Type 1) viruses: VCHECK DEMO.
Remember, this demo did NOT do any actual virus checking. Be sure
to run Victor Charlie in normal mode now!
$=======ALL: TYPE 1 FILE INFECTOR =========================================$0
║ ┌▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀┐ ║
║ \ / ▒▒▒▒ You are under attack by a Type 1 (File Infector) virus! ▒▒▒▒ ║
║(o o) └▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄┘ ║
║ v Victor Charlie has ALREADY automatically saved a signature ║
║ +++ of this virus in your library. We can track this virus down. ║
║ A Type 1 virus infects programs by attaching parasitic code. ║
║ This virus is harmless at this moment. But it may contain a bomb aimed ║
║ any place on your computer. You probably have several infected programs ║
║ already. It is vital to stop this virus NOW! We will first deactivate ║
║ the virus, and then track and kill all sources of infection. ║
║ ║
║ Victor Charlie has already suicided, If you ordered Victor Charlie to ║
║ deleted itself to avoid becoming a protect your favorite or crucial ║
║ virus carrier. It will continue to programs, we can cure them at a ║
║ run and help you cure this attack. keystroke. But . . . ║
║ ║
║ There is no generic way to cure infected programs. We must identify all ║
║ infections and Wipe Them Out. They must be replaced from clean backups. ║
║ ║
║ Use VC's [B]itcheck option to track and kill this virus. ║
║ (You may also use the command "VCHECK -" from the command line.) ║
║ █ See Victor Charlie Reference Manual on Type 1 Viruses for further help █ ║
$=======VC1: TROUBLE IN PARTITION SECTOR (INITIALIZATION)==================$1
┌─────────────────────────────────────────╖
│ Victor Charlie has found something that ║
│ appears dangerous in your hard disk's ║
│ partition sector. This could very well ║
│ be a virus or bomb. ╔════════════╩════════════════╗
╘════════════════════════════╣ !!! BUT NOTE !!! ║
║ If you have an unusual hard ║
║ disk installation, this ║
║ might be normal! ║
╚═════════════════════════════╝
┌──────────────────────────────────────────────────────────────╖
│ Victor Charlie does not want to back this up. He recommends ║
│ you QUIT now and refer to the manual about this situation. ║
╘══════════════════════════════════════════════════════════════╝
You may want to repair this before you go on with the specialty utility
PTRESQ.COM
(Please see the VC manual for instructions on how to use this program.)
We repeat, unless you have a good reason, and know what you are doing,
we recommend that you QUIT now and fix this problem before proceeding.
$==========================================================================$
$=======NOTE ABOUT A SPECIAL CHARACTER IN THE MESSAGES BELOW===============$
$==========================================================================$
The program that displays these messages will replace the character "~"
(tilde) with the actual current file name of "VC1.CFG," which you should
have renamed, for maximum security.
$=======VC1: CHANGED COMMAND.COM===========================================$2
████████████████████████████████████████████████████████████████████████████
██░░░░░░░░░░░░░ NO NORMAL SOFTWARE EVER CHANGES COMMAND.COM! ░░░░░░░░░░░░░██░░
██░ Unless you have changed it yourself, Maybe you have, by accident, ██░░
██░ Victor Charlie believes you have a overwritten COMMAND.COM with ██░░
██░ virus. Many known viruses use this a different version. You may ██░░
██░ program to replicate and spread, have changed it on your own. ██░░
██░ from disk to disk, and even from You may have installed a new ██░░
██░ computer to computer. DOS version. ██░░
██░ But, if you haven't changed it yourself, ██░░
██░ Please let Victor Charlie fix it now. ██░░
██░ ██░░
██░ IF YOU CHANGE YOUR DOS IN ANY WAY, YOU REMEMBER: If you are using ██░░
██░ MUST RE-INITIALIZE Victor Charlie! COMMAND.COM in a different ██░░
██░ Choose I[N]itialize in the VC menu. place or a command program ██░░
██░ with another name ██░░
██░ If you have NOT changed it, please Tell VC about it in ██░░
██░ let VC fix COMMAND.COM now. "~"
██░ VC watches this file! ██░░
████████████████████████████████████████████████████████████████████████████░░
░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░
$=======VC1: CHANGED [VC1.CFG]=============================================$3
The file below is listed in ~
to receive special protection from Victor Charlie. Now it's changed!
████████████████████████████████████████████████████████████████████████████
██░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░██░░
██░ Victor Charlie made the backup, This file now has changed! ██░░
██░ as requested, and bitchecked the If you have not changed it, ██░░
██░ original each time it conducted Let Victor Charlie ██░░
██░ a regular anti-virus check. restore it for you ██░░
██░ ██░░
██░ There may be no indication of a virus attack. ██░░
██░ But by whatever means, this file has been changed. ██░░
██░ Restoring it is probably a good idea. ██░░
██░ ██░░
██░ NOTE: If you have changed this file, yourself, you must tell ██░░
██░ Victor Charlie about it by changing the .CFG file. ██░░
████████████████████████████████████████████████████████████████████████████░░
░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░
[ If you see "(file spec) HAS BEEN ALTERED" it only means you are
in demo mode and there is no actual ~ ]
$=======VC1: CHANGED PARTITION SECTOR (NORMAL RUN)=========================$4
████████████████████████████████████████████████████████████████████████████
██░░░░░░░░░░░ NORMAL PROGRAMS DON'T ALTER THE PARTITION SECTOR! ░░░░░░░░░░██░░
██░ This is a VITAL part of your hard disk. It tells the machine details ██░░
██░ of the disk including the boot drive, and other essential information ██░░
██░ Only DOS FDISK or some very special disk utilities might change it. ██░░
██░ UNDER NO CIRCUMSTANCES should there be change unless YOU ordered it. ██░░
██░ If you've done nothing to your fundamental disk ██░░
██░ setup, then certainly some evil software has ██░░
██░ changed this table for its nefarious purposes. ██░░
██░ ██░░
██░ In particular, the partition sector Victor Charlie recommends: ██░░
██░ is part of the boot process. Known Virus is probable! ██░░
██░ viruses use it to spread to other Repair this when prompted ██░░
██░ disks or then to other computers. to fix the BOOT PROCESS. ██░░
██░ ██░░
██░ (The partition sector is sometimes called the "Master ██░░
██░ Boot Record," or more informally, the "Partition ██░░
██░ Table." It is not part of DOS logical space.) ██░░
██░ ██░░
████████████████████████████████████████████████████████████████████████████░░
░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░
$=======VC1: CHANGED BOOT SECTOR===========================================$5
████████████████████████████████████████████████████████████████████████████
██░░░░░░░░░░░ NORMAL PROGRAMS DON'T EVER ALTER THE BOOT SECTOR! ░░░░░░░░░░██░░
██░ Unless you changed it, Victor Charlie believes you have a virus. ██░░
██░ ██░░
██░ Many known viruses infect disk You almost certainly picked up this ██░░
██░ and diskette boot sectors, and virus from an infected floppy ██░░
██░ spread to other drives and diskette. The virus then "jumped" ██░░
██░ disks through this sector. from the diskette to this drive. ██░░
██░ ██░░
██░ You will therefore want to check out your floppies carefully. ██░░
██░ Victor Charlie recommends: ██░░
██░ Use the exclusive [S]terilize Diskette option at the VC menu ██░░
██░ to view and fix boot sectors on all data and backup diskettes. ██░░
██░ ██░░
██░ Meanwhile, unless you have changed this boot sector yourself, ██░░
██░ Victor Charlie also recommends: Repair it when prompted to ██░░
██░ fix the BOOT PROCESS. ██░░
██░ ██░░
██░ Victor Charlie will kill this type of virus immediately! ██░░
████████████████████████████████████████████████████████████████████████████░░
░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░
$=======VC1: CHANGED HIDDEN SYSTEM FILE====================================$6
████████████████████████████████████████████████████████████████████████████
██░░░░░░░░░░ NORMAL PROGRAMS DON'T EVER ALTER THE DOS PROGRAMS! ░░░░░░░░░░██░░
██░ This is one of two files which are, essentially, DOS itself. ██░░
██░ Unless you changed it, it is highly likely you are under virus attack ██░░
██░ ██░░
██░ The two DOS files are found in the This pair of files could have ██░░
██░ root of any bootable disk, and are any names. The most common are ██░░
██░ hidden from view by attributes set IBMBIO.COM, IBMDOS.COM ██░░
██░ to hidden, system, and read-only. or ██░░
██░ VC watches over both. IO.SYS, MSDOS.SYS ██░░
██░ NO NORMAL PROCEDURE should alter these files! ██░░
██░ The only thing that could do this beyond a virus would be if ██░░
██░ you changed the version of your operating system by installing ██░░
██░ new DOS, or with a SYS command from a different DOS. ██░░
██░ ██░░
██░ Victor Charlie recommends: ██░░
██░ 1. Unless you've installed a 2. If you have installed a new DOS, ██░░
██░ new DOS, fix this problem re-Initialize Victor Charlie so ██░░
██░ when prompted. we can protect you properly again ██░░
████████████████████████████████████████████████████████████████████████████░░
░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░
$=======VC1: BOOT PROCESS ALTERED==========================================$7
████████████████████████████████████████████████████████████████████████████
██░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░██░░
██░ As noted, one or more of the four elements of your boot process ██░░
██░ have been altered. This could very well be a type 2 virus. ██░░
██░ The four elements of the boot process are: ██░░
██░ PARTITION SECTOR, BOOT SECTOR, TWO HIDDEN SYSTEM FILES. ██░░
██░Victor Charlie Recommends: ██░░
██░ Unless you have good reasons, described in individual help screens, ██░░
██░ we recommend that you repair these now. Repairing all bad boot ██░░
██░ elements at the same time will ensure a coherent boot. ██░░
██░ ██░░
██░ If you elect NOT to repair these Please note that there is no ██░░
██░ items, please see the manual for easy or graceful manual repair ██░░
██░ ways to repair them manually. for the partition sector! ██░░
██░ ██░░
██░ AND PLEASE NOTE: If you change your DOS in any way, you MUST ██░░
██░ re-initialize Victor Charlie. This may be done at the VC menu. ██░░
████████████████████████████████████████████████████████████████████████████░░
░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░
$=======VC1: MISSING VC.CFG================================================$8
The file listed above is supposed to be your "VC1.CFG" file.
For some reason, VC1 expected to find this file, and it could not.
Remember, if you rename VC1.COM, it will look for a "CFG" file with a
corresponding name. You should rename the CFG file to match.
With the current name you've selected for VC1,
this file should be renamed to "~".
$=======VC1: CHANGED [VC1.CFG]=============================================$9
The file above is listed in ~
to receive special attention from Victor Charlie.
████████████████████████████████████████████████████████████████████████████
██░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░██░░
██░ ██░░
██░ You asked Victor Charlie to watch it, but not to back it up. ██░░
██░ Now, this program is changed! ██░░
██░ ██░░
██░ Victor Charlie recommends: ██░░
██░ ■ Take a note of this file. ██░░
██░ ■ Unless you have changed it, restore it from your ██░░
██░ clean backup as soon as you leave Victor Charlie. ██░░
██░ ██░░
██░ NOTE: If you are in demo mode right now, you may see only ██░░
██░ "(file spec) HAS BEEN ALTERED" ██░░
██░ This simply means you do not have a .CFG file. ██░░
██░ If this is the case, you might consider asking ██░░
██░ Victor Charlie to watch your special programs ██░░
██░ and warn you this way of any changes. ██░░
████████████████████████████████████████████████████████████████████████████░░
░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░
$=======VC1: MEMORY CHECK==================================================$m
████████████████████████████████████████████████████████████████████████
██░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░██▓▓
██░ Some parasite has captured part of ██▓▓░
██░ your memory and hidden it from DOS. ██▓▓░
██░ Most normal programs do not do this, so ... ██▓▓░
██░ This may very well be a virus or other hostile software. ██▓▓░
██░ If Victor Charlie has detected other troubles, ██▓▓░
██░ correct those and this problem may go away. ██▓▓░
██░ ┌────────────────────────────────────────────────────────────┐ ██▓▓░
██░ │ NOTE: Use of Desqview will produce this "error." If you │ ██▓▓░
██░ │ are using Desqview, you probably have nothing wrong. │ ██▓▓░
██░ └────────────────────────────────────────────────────────────┘ ██▓▓░
██░ If this is the ONLY trouble message you get: ██▓▓░
██░ 1. Boot from a write-protected DOS floppy diskette. ██▓▓░
██░ 2. Change to the Victor Charlie Home Directory. ██▓▓░
██░ 3. Run VC (or VC1) again. ██▓▓░
██░ In case this problem continues, please run the VC5 utility ██▓▓░
██░ PTRESQ.COM from the VC distribution diskette for further help. ██▓▓░
████████████████████████████████████████████████████████████████████████▓▓░
▓▓▓▓▓▓▓▓▓▓▓▓▓▓▓▓▓▓▓▓▓▓▓▓▓▓▓▓▓▓▓▓▓▓▓▓▓▓▓▓▓▓▓▓▓▓▓▓▓▓▓▓▓▓▓▓▓▓▓▓▓▓▓▓▓▓▓▓▓▓▓▓░
░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░
$==========================================================================$
$=======VCHECK: NOTE ABOUT DISPLAYS BELOW==================================$
$==========================================================================$
SPECIAL CHARACTERS: The messages for VCHECK reserve certain special
characters. When the messages are displayed, these will be substituted, so
don't use them in your normal text.
"|" - displays a graphic block character or a diamond (Thai version)
"`" - (backquote or accent grave) causes 1/3 second pause in display.
"@" - makes a bell sound.
"~" - (tilde) displays the timeout time in minutes for your version.
$=======VCHECK: COMMAND HELP (PAGE 1)======================================$C
████████████████████████████████████████████████████████████████████████████
██░░░░░░░░░░░░░░░░░░░░░░░░░░░░░ VCHECK ░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░██░░
██░ This is your main defense line for viruses. It will search for known ██░░
██░ viruses and make Audit lists to detect changes at a later date. ██░░
██░ ██░░
██░ Full command summary: ██░░
██░ VCHECK [!][HUSH][ONLY][HELP][DEMO][.][-][/outfile][D ][filespec..] ██░░
██░ ^---Checks network drives. For network versions ONLY. ██░░
██░ This is also your virus locator. It will search all hard drives, and ██░░
██░ then offer to look at floppy diskettes in search of viral infection. ██░░
██░ It uses Victor Charlie's virus signature library, which is ██░░
██░ automagically updated EACH time you contract a Type 1 virus. ██░░
██░ ─────────── 0 ───────────── ██░░
██░ VCHECK will alarm and show a "!!!" warning in case a virus ██░░
██░ signature is found in a file. It will display "DT!" in case of ██░░
██░ a very unusual date or time stamp on the file (62 seconds; 100 ██░░
██░ years in the future, etc). EXAMPLES: ██░░
██░ C:\MYPATH\INFECTED.EXE 232,765 1AF324C1 !!! ██░░
██░ C:\NEWDIR\BADTIME.COM 14,388 B45830D6 DT! ██░░
██░ ██░░
██░ [ Hit Enter for more help... ] ██░░
████████████████████████████████████████████████████████████████████████████░░
░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░
$=======VCHECK: COMMAND HELP (PAGE 2)======================================$c
████████████████████████████████████████████████████████████████████████████
██░░░░░░░░░░░░░░░░░░░░░░░░░░░░░ VCHECK ░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░██░░
██░ BASIC COMMANDS: ██░░
██░ VCHECK <Enter> Checks files for size, bitcheck, and virus. ██░░
██░ All "fixed" drives. Uses signature library. ██░░
██░ VCHECK - <Enter> As above, but only displays infected files. ██░░
██░ VCHECK . <Enter> Checks files in current directory only. ██░░
██░ VCHECK filespec [filespec...] <Enter> Checks files you specify. ██░░
██░ VCHECK d <Enter> Checks drive "d". Note you do not need a colon. ██░░
██░ VCHECK /AUDIT.REF Creates file "AUDIT.REF" with Bitcheck list ██░░
██░ ██░░
██░ Commands may be "chained" to gain speed and/or power. For example: ██░░
██░ "VCHECK .-" <Enter> ██░░
██░ Checks only in current directory; displays only infected files ██░░
██░ "VCHECK e - *.com *.pif <Enter>" ██░░
██░ would check all *.COM and *.PIF files on the E: drive ██░░
██░ "VCHECK . *.*" ██░░
██░ searches all files in the current directory ██░░
██░ "VCHECK /AUDITCOM.REF c *.com <Enter>" ██░░
██░ makes a file called AUDITCOM.REF containing a list of ██░░
██░ Bitchecks of all .COM files from the C: drive ██░░
████████████████████████████████████████████████████████████████████████████░░
░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░
$=======VCHECK: INFECTED FILES HELP========================================$V
████████████████████████████████████████████████████████████████████████████
██░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░██░░
██░ Victor Charlie's Real-Time Signature Capture feature has found ██░░
██░ serious problems on your machine. ██░░
██░ ██░░
██░ Files marked with !!! have a virus signature. They almost certainly ██░░
██░ are infected program. ██░░
██░ Victor Charlie recommends: Wipe them Out NOW! ██░░
██░ There is no good reason to keep The "Wipe Out" is more than a ██░░
██░ them. If ever anyone executes delete. The infected files will ██░░
██░ one of these programs, it will be overwritten by random data, ██░░
██░ activate or re-activate a virus. then deleted. Nothing can revive ██░░
██░ WIPE THEM OUT IMMEDIATELY! a virus killed this way! ██░░
██░ ██░░
██░ Files marked DT! have very strange date-time stamps. These ██░░
██░ may not be evident with a DIR listing. Examine such files ██░░
██░ VERY carefully. Viruses often use such secret signalling. ██░░
██░ ██░░
██░ File infector (Type 1) viruses can take any form. Changes ██░░
██░ they make to your files can vary. There is no generic cure. ██░░
████████████████████████████████████████████████████████████████████████████░░
░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░
$=======VCHECK: DEMO FILE DISPLAY SIMULATION===============================$
$=======(SEE NOTE ABOVE)===================================================$D
`````````C:\COMMAND.COM `` 35,012 9F5B6E58
C:\BIN\FORMAT.COM ` 16,166 3B92BB2F
C:\BIN\VIRUS.COM ` 17,486 2F3391D8 !!!@
C:\BIN\BIGPROG.EXE ````` 525,818 0BD6C6B6
C:\BIN\EXTRA\BADTIMES.EXE ```` 84,926 B48987BC !DT@
C:\BIN\WOW\REALBIG.EXE ``````` 2,897,143 F7E4DE5A
C:\DOS\FORMAT.COM ` 18,909 94B69204 !FS@
`````` | NORMAL files display with a blank right-hand column. |
DEMO | VIRUS-INFECTED files display with !!! after them, and a bell. | DEMO
ONLY | These files contain a virus signature as captured by VC1 or VC2. | ONLY
| If you ever see !FS (above) it means the directory size does |
NOT | not match the actual size. The file is bad. It may have been | NOT
REAL | a virus, but it most probably is some other kind of accident. | REAL
| Try CHKDSK to cure it, but be prepared to delete it and |
DEMO | replace it from a fresh backup or original disk. | DEMO
MODE | The !DT display means that the file has a very strange and | MODE
| "illegal" date or time stamp. It may not be a virus, but |
| you should carefully examine any such file. |
$=======VCHECK: BAD FLOPPY BOOT SECTOR=====================================$B
████████████████████████████████████████████████████████████████████████████
██░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░██░░
██░ ┌────────────────────────────────────────────────────────────────╖ ██░░
██░ │ The boot sector of the floppy under test DON'T BOOT FROM ║ ██░░
██░ │ shows signs of a possible virus infection. THIS FLOPPY !!! ║ ██░░
██░ ╘═════════════╦═════════════════════════════════════╦════════════╝ ██░░
██░ ┌─────────╨─────────────────────────────────────╨─────────┐ ██░░
██░ │ Even a non-bootable "data" floppy might infect │ ██░░
██░ │ your machine if you inadvertently try to boot from it. │ ██░░
██░ └─────────────────────────────────────────────────────────┘ ██░░
██░ Viruses are spread by accidentally leaving a data diskette ██░░
██░ in the disk drive when you start or re-start your computer. ██░░
██░ A simple five-second power outage could do this. ██░░
██░ Victor Charlie Advises: ██░░
██░ The BEST THING to do is ██░░
██░ Data Disks: Choose [S]terilize Diskettes at the VC Menu ██░░
██░ DOS Disks: - Format a fresh, bootable floppy (FORMAT /S). ██░░
██░ - Copy all files from this diskette to the new one. ██░░
██░ - Reformat this suspect floppy for safe re-use. ██░░
████████████████████████████████████████████████████████████████████████████░░
░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░
$=======VCHECK: TIMEOUT MESSAGE (~ replaced by number of minutes)==========$T
!!! WARNING !!!
VCHECK has now run for ~ minutes. That is far too long for any normal
situation. VCHECK strongly suspects you have a kind of directory corruption
called a "recursive directory loop" that causes VCHECK or any other directory
searching program to keep cycling the same series of directories over and
over.
Please see the manual about this kind of problem. It can be repaired, but
that repair will require the services of an expert and special utility
software.
Possibly you are checking some huge number of files, perhaps even on
an optical disk. If so, you may elect to continue. But if you do, please
watch the display carefully. If you see the same directories and files
repeat, then you surely do have a directory structure problem, and you
should end the program (hit any key) and call that expert!
$=======DEMO MODE MESSAGE (END FOR VCHECK)=================================$E
| This is the end of the VCHECK DEMO. Remember, this demo did NOT do any |
| actual virus checking. Be sure to run Victor Charlie in normal mode now. |
$==========================================================================$