home
***
CD-ROM
|
disk
|
FTP
|
other
***
search
/
Experimental BBS Explossion 3
/
Experimental BBS Explossion III.iso
/
virus
/
hawk220.zip
/
TESTME
< prev
Wrap
Text File
|
1993-04-03
|
9KB
|
207 lines
*****************************************************************
* BE CAREFUL, IT'S A JUNGLE IN THERE. PROCEED AT YOUR OWN RISK *
*****************************************************************
1. Select a Utility package of your choice to make adjustments
to your hard drive.
3. Prepare sample paths and files for testing before you do the
first runs of Filehawk and other security software. You will
need to create 1) an empty path 1# to be deleted
2) a dummy path 2# to be hidden
3) a dummy path 3# to be unhidden (use your
Utility package to change its attribute from
Normal to Hidden)
4) a dummy 1# .COM file to be deleted
5) a dummy 2# .COM file to change its contents
6) dummy 3# - #9 .COM files to change attributes
7) a dummy #10 .COM file (change its attribute
from Normal to Hidden)
8) a dummy .COM #11 file to match with an .EXE file
9) a dummy .COM #12 full of a few hundred 20H
space characters.
2. Make sure that you have properly installed and completed the
runs for the software that you are testing, both Filehawk and
any other software that you wish to test Filehawk against.
HARD DRIVE FEATURE ADJUSTMENT LOCATION/DESCRIPTION
================== ========== ====================
Partition Sector Change 1 byte In a data field - try
offset 196
*Safety Recommendation* Do not reboot until the sector has
been restored.
-FH comment "! Partition Boot Sector Has Changed !"
HARD DRIVE FEATURE ADJUSTMENT LOCATION/DESCRIPTION
================== ========== ====================
Dos Boot Sector Change 1 byte In a data field - try
offset 48
*Safety Recommendation* Do not reboot until the sector has
been restored.
-FH comment "!!! Dos Boot Sector Has Changed !!!"
HARD DRIVE FEATURE ADJUSTMENT LOCATION/DESCRIPTION
================== ========== ====================
FAT Table 2 Change 1 byte At the end of Fat Table
2# in a section of zeroes
*Safety Recommendation* Do not change Fat table 1. Only change
a spot where a block of zeroes appear. Change 1 byte only.
Do not forget to restore the byte to zero when testing has
concluded. The demo version does not offer a Fat Table Restoration
Feature, so you will have to restore by hand.
-FH comment "FATS do not Match [+0.01 Meg]"
HARD DRIVE FEATURE ADJUSTMENT LOCATION/DESCRIPTION
================== ========== ====================
PATH delete the empty
path 1# that you
created for this
test
-FH comment "PATH DELETED \PATH\PATHNAME"
HARD DRIVE FEATURE ADJUSTMENT LOCATION/DESCRIPTION
================== ========== ====================
PATH create a new path
-FH comment "NEW PATHNAME \PATH\PATHNAME"
HARD DRIVE FEATURE ADJUSTMENT LOCATION/DESCRIPTION
================== ========== ====================
PATH hide the dummy 2# Use your Utilities pkg
path that you to change attribute from
created for this Normal to Hidden
test
-FH comment "!PATH HIDDEN! \PATH\PATHNAME"
HARD DRIVE FEATURE ADJUSTMENT LOCATION/DESCRIPTION
================== ========== ====================
PATH unhide the dummy Use your Utilities pkg
#3 path that you to change attribute from
created for this Hidden to Normal
test
-FH comment "Path Visible \PATH\PATHNAME"
HARD DRIVE FEATURE ADJUSTMENT LOCATION/DESCRIPTION
================== ========== ====================
FILE del dummy 1# file
-FH comment "FILE DELETED \PATHNAME\FILENAME"
HARD DRIVE FEATURE ADJUSTMENT LOCATION/DESCRIPTION
================== ========== ====================
FILE edit dummy 2# file
1 or 2 bytes only
-FH comment "FILE CHANGED! \PATHNAME\FILENAME"
HARD DRIVE FEATURE ADJUSTMENT LOCATION/DESCRIPTION
================== ========== ====================
FILE create a new file
-FH comment "NEW FILENAME \PATHNAME\FILENAME"
HARD DRIVE FEATURE ADJUSTMENT LOCATION/DESCRIPTION
================== ========== ====================
FILES change attributes DUMMY3#: Norm -> Read Only
DUMMY4#: Norm -> Hidden
DUMMY5#: Norm -> System
DUMMY6#: Norm -> Archive
DUMMY7#: Norm -> RO & Hdn
DUMMY8#: Norm -> Sys & Arc
DUMMY9#: Norm -> RO Hdn Sys Arc
DUMMY10#: Hdn -> Normal
-FH comment "ATTRIBUTES CHANGED TO ----> READ ONLY"
-FH comment "ATTRIBUTES CHANGED TO ----> -HIDDEN-"
-FH comment "ATTRIBUTES CHANGED TO ----> *SYSTEM*"
-FH comment "ATTRIBUTES CHANGED TO ----> +ARCHIVE+"
-FH comment "ATTRIBUTES CHANGED TO ----> READ ONLY -HIDDEN-"
-FH comment "ATTRIBUTES CHANGED TO ----> *SYSTEM* +ARCHIVE+"
-FH comment
"ATTRIBUTES CHANGED TO ----> READ ONLY -HIDDEN- *SYSTEM* +ARCHIVE+"
-FH comment "ATTRIBUTES CHANGED TO ----> NORMAL"
HARD DRIVE FEATURE ADJUSTMENT LOCATION/DESCRIPTION
================== ========== ====================
FILE create an .EXE It must have the same
file from dummy filename but with an .EXE
#11 .COM file extension and must be in
the same directory.
-FH comment
"*WARNING* Executable Files of the same name are in the same directory:"
\PATHNAME\FILENAME.COM
\PATHNAME\FILENAME.EXE
HARD DRIVE FEATURE ADJUSTMENT LOCATION/DESCRIPTION
================== ========== ====================
FILE create another It must have the same
#11 .COM file filename and extension
in another exactly, but it must be
directory in another directory.
-FH comment "Dup filename \PATHNAME\FILENAME
\OTHER PATH\FILENAME"
HARD DRIVE FEATURE ADJUSTMENT LOCATION/DESCRIPTION
================== ========== ====================
FILE Change .COM #12
by adding a few
dozen samples of
profanity.
-FH comment
"<+> Caution: a virus keyword can be found in the line:
xxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxx
located in: \PATHNAME\FILENAME"
OTHER TESTS:
============
If you have any files containing viruses, please include them in
your testing.
Every effort has been made in the attempt to identify viruses or
files containing new viruses. But as this researcher has limited
resources, not all viruses or combination will be contained herein.
It should be remembered that the function of Filehawk is to give the
user additional information concerning the safety of his software.
It is not meant to replace existing anti-viral software for which
more extensive personnel and resources may exist.