home *** CD-ROM | disk | FTP | other *** search
/ CD-ROM Magazine 23 / CDRmag23-0.iso / INDISP / Tbav / tbdos707 / WHATSNEW.707 < prev   
Text File  |  1997-01-10  |  23KB  |  525 lines

  1.  
  2. Update report of Thunderbyte Anti-Virus utilities.
  3.     Prefixes:
  4.     '-'     indicates a change that does not require user attention.
  5.     '->'    indicates a modification that requires user attention, such as a
  6.             change in program invocation, etc.
  7.  
  8.  
  9. 7.07 Product update
  10. -------------------
  11.  
  12. TbScan:
  13.     -   Small bugfix with scanning very small COM files
  14.  
  15.     -   The 'FatCheck' option now works correctly on drives with very
  16.         big cluster sizes.
  17.  
  18.     -   TbScan no longer reports clusters which are marked bad as "lost
  19.         clusters", but reports them now correctly as "bad marked clusters".
  20.  
  21.     -   TbScan now makes use of 32bit instructions. The main reason for this
  22.         is to be able to decrypt viruses which make use of 32bit instructions.
  23.         In the future, this also allows us to utilize the memory better, and
  24.         to speed up some processes. In order to maintain compatibility with
  25.         non-32bit processors there are now two versions of TbScan, one for
  26.         the 16bit processors (TBSCAN16.EXE) and one for 32bit processors
  27.         (TBSCAN32.EXE). TbScan.Exe itself is now a program which determines
  28.         the processor type and invokes the correct TbScan version.
  29.  
  30.     ->  TbGenSig.Exe is no longer part of the TBAV package. The newer
  31.         generation of viruses require much more complex signatures, and
  32.         to create these signatures is no longer a do-it-yourself job.
  33.         The idea to enable the end user to create signatures comes from the
  34.         time when the distribution of virus samples between Anti-Virus
  35.         developers, independant researchers, universities, government
  36.         agencies, etc. was not organised at all. These days, we are able
  37.         to respond to a new outbreak in a couple of hours. It is far easier
  38.         for you, the end user, to download a new signature file from us than
  39.         to try to create a signature for a polymorphic virus, or to locate a
  40.         word macro virus (and thus a signature) in a huge document file.
  41.         A second reason for the omission of TbGenSig is that we are in the
  42.         process of revising our existing signature structures, and that we
  43.         are working on automated signature construction. This gives us a
  44.         leading edge in the future when the amount of viruses keeps growing,
  45.         and ensures more reliable signatures and a higher response time from
  46.         us on new viruses. The tools required to generate these signatures
  47.         are very complex and not suitable for the users at all.
  48.  
  49.  
  50. Viruses:
  51.     -   The next viruses had a change of name only:
  52.  
  53.         From:                           To:
  54.         ================================================================
  55.         _302                            MDS.302
  56.         _514                            Osel.514
  57.         _524                            Quell.524
  58.         _573                            Ludwig.573
  59.         _586                            Exemplary.586
  60.         _613                            Uncomplete.613
  61.         _641                            Ush.641
  62.         _699                            Ever_Willing.699
  63.         _768                            Dandelion.768
  64.         _789                            Dayton.789
  65.         _1097                           Elementary.1097
  66.         _1315                           Zibbert.1315
  67.         _1320                           Undesirable.1320
  68.         _1391                           Quantrain.1391
  69.         _1689                           Quiff.1689
  70.         10_past_3                       10_past_3.748/789
  71.         2-up                            2-up.6000
  72.         3_Month                         Three_Months.509
  73.         3Y                              3Y.853
  74.         4res                            4res.1049
  75.         4_Seasons.1514                  4_Seasons.1514/1534
  76.         5lo                             5lo.1025
  77.         5_volt                          5_volt.2659
  78.         A&A                             A&A.506
  79.         Abal                            Abal.758
  80.         Abba                            Carzy.9894
  81.         Abraxas.1171                    Abraxas.1170-1214 (1170/1171/1214)
  82.         Abraxas.1508                    Abraxas.1508/1518
  83.         Accept                          Accept.3619/3773
  84.         Ache                            Ache.338/352
  85.         Acvt                            Acvt.1243
  86.         Ada                             Ada.2600
  87.         Adin                            Adin.1488/3026
  88.         Admiral.334                     Yam.334
  89.         Adolf                           Adolf.475
  90.         AEP                             AEP.626
  91.         Agena                           Agena.723
  92.         Ahav                            Ahav.336-383
  93.         Aids.872                        Quod.872
  94.         Akuku                           Akuku.891
  95.         Alabama                         Alabama.1560
  96.         Albania                         Albania.429-606 (429/506/575/606)
  97.         Albanian                        Albanian.1991
  98.         Alfo.1536                       Alfons.1536
  99.         Alien                           Alien.1976
  100.         Alien.1364                      Alien.1356
  101.         AlphaStrike                     AlphaStrike.2000
  102.         Am.1281                         Aman.1281
  103.         Aman                            Aman.10716
  104.         Amazone_Queen.468/479           Amazone_Queen.467-479
  105.         Ambulance                       Ambulance.795/796
  106.         Amoeba                          Amoeba.1089/1392
  107.         Amt                             Amt.3000/4000
  108.         Andreev                         Andreew.805/851
  109.         Andromeda.1536                  Andromeda.1536.B
  110.         Andromeda.1024                  Andromeda.1024.B/C
  111.         Angarsk                         Angarsk.238
  112.         Angel                           Angel.1000
  113.         Annihilator.809                 VCS.809
  114.         AntiCMOS.726                    Anti-C.726
  115.         AntiGus                         AntiGus.1570
  116.         Antimon                         Antimon.1450
  117.         Anti-SabaDos                    Anti-SabaDos.815
  118.         Antitrace.1334                  Antitrace.1334/2122
  119.         AntiWin.933                     AntiWin.633
  120.         AOS                             AOS.581-863 (581/736/744/752/758
  121.                                                         /833/847/854/863)
  122.         Apocalipse                      Apocalipse.1685
  123.         Apparition                      Apparition.700
  124.         Appelscha                       Appelscha.2161
  125.         Arab                            Arab.834
  126.         Aragorn                         Aragorn.1522
  127.         Arale                           Arale.1526
  128.         Arara                           Arara.1054/1735
  129.         Arcv.Zaphod                     Zaphod.399
  130.         Areopag                         Areopag.480
  131.         ARJworm                         ARJworm.5164
  132.         Arriba                          Arriba.1590
  133.         Arusiek                         Arusiek.692/817
  134.         Ash                             Ash.270-743 (270/280/302/441/449/
  135.                                                 451/704/708/712/737/743)
  136.         Atas_II                         Atas_II.3215-3321 (3215/3233/3321)
  137.         Axe                             Andromeda.1024.A
  138.         Aztech.1200                     Sybille.1200
  139.         Beech                           Beech.439
  140.         Black_Peter                     Old_Yankee.1835
  141.         BoxBox.1750                     BoxBox.1591/1750
  142.         COD                             COD.572
  143.         Coib                            Coib.702
  144.         Com2S                           Com2S.1798
  145.         Cosenza                         Cosenza.2027-3222 (2027/2034/3205/3222)
  146.         Cuidado.391                     Bell.391
  147.         Cybertech.419                   Nightbird.419
  148.         Czech_Happy                     Czech.1687
  149.         Dash-em                         Dash-em.1876
  150.         Delight                         Delight.935
  151.         Digi_Poll                       Pollute.823
  152.         Disk_Plus_1                     Disk_Plus_1.1385
  153.         Disk_Spoiler                    Disk_Spoiler.1308
  154.         Dodg.825                        Dodger.825
  155.         Drug                            Drug.985
  156.         Ear                             Ear.1024/1026
  157.         Ear.Quake-o                     Ear.960
  158.         Ear.Suicide                     Ear.2048
  159.         Earle                           Earle.1244
  160.         Eight_Tunes                     Eight_Tunes.1971
  161.         Fonx.1958                       Fonx.1958/1867
  162.         Frajer                          Frajer.649
  163.         Gemand                          Andromeda.1536.A
  164.         Grune.1241                      Grune.1241
  165.         Ha!.1224                        Zmiana.1224.B
  166.         HBT                             HBT.394
  167.         Heur_message                    Heur_message.1150-1329
  168.                                                         (1150/1328/1329)
  169.         HLLC.Christman                  HLLC.15264
  170.         HLLC.Christman  (diet-packed)   HLLC.15264 (diet-packed)
  171.         HLLO.Zalman                     HLLO.5520
  172.         Hopefull                        Hopefull.484
  173.         Inquis                          Inquis.2653
  174.         Japanese_Xmas                   Japanese_Xmas.600-722 (600/653/722)
  175.         Jerusalem.1448                  Jerusalem.1446/1448
  176.         Kolumna2                        Kolumna.1100/2048
  177.         Komar                           Arusiek.691
  178.         Kubik.1968                      Kubik.912/1968
  179.         Lastyear                        Lastyear.604/743
  180.         LeapFrog                        LeapFrog.516
  181.         Leprosy.Spam                    Leprosy.1306
  182.         Leprosy.Xabaras                 Leprosy.1972
  183.         Lines                           Lines.1792
  184.         Listopadu                       Velvet.1400
  185.         Lost.604                        Div0.604
  186.         Maffy_II                        Maffy_II.491
  187.         Malaga                          Malaga.A
  188.         Mange_Tout                      Mange_Tout.1099
  189.         Milan.Vivisex                   Milan.683
  190.         Month_4-6                       Month_4-6.1536
  191.         MP1024                          Quiz.1024
  192.         My_Breed                        Ass.4834
  193.         Neuville                        Jumper
  194.         News                            Quinine.343
  195.         NRLG.1096                       Xuxa.1096
  196.         Nuts                            Ear.308
  197.         Old_Yankee                      Old_Yankee.1624-2051
  198.                                                  (1624/1641/1755/1961/2051)
  199.         Omud                            Omud.512
  200.         Page                            Vlad.1221
  201.         Pottie                          Leprosy.880
  202.         Qdris                           Jack.416/436
  203.         Quartz                          Quartz.1345
  204.         Quicky                          Quicky.1376
  205.         Reklama                         Reklama.2723
  206.         Reset.352                       WVP.352/382
  207.         Roost                           WXYC
  208.         Russian_Anarchy.2048            Grob.2048
  209.         Senorita                        Senorita.885
  210.         Seventh_Son                     Seventh_Son.284-473
  211.                                                 (284/332/334/350/426/428/473)
  212.         Shizu                           Careful.568
  213.         Silent_Night                    Silent_Night.1111/1827
  214.         Specified                       Specified.2048
  215.         Stupid                          Stupid.583/919/1355
  216.         Syslock                         Syslock.2232-3551 (2232/2764/3551)
  217.         Teleco                          Vico.1000
  218.         Thanksgiving                    Thanksgiving.1253
  219.         Thirteen_minutes                Thirteen_minutes.699
  220.         Thirty-Three                    Thirty-Three.525
  221.         Three_Tunes                     Three_Tunes.1784
  222.         Tib                             Tib.713
  223.         Traveller_Jack                  Traveller_Jack.812/979/980.A/982
  224.         Traveller_Jack.854              Traveller_Jack.854/868/883
  225.         Traveller_Jack.1008             Traveller_Jack.980B/1008
  226.         Trelew                          Trelew.232
  227.         Uddy                            Uddy.2617
  228.         Udm.559                         Wart.559
  229.         Ufa                             Ufa.1201
  230.         Ugur                            Ugur.1297/1320
  231.         Unlce                           Unc.1377/1410
  232.         Unerase.329                     MDS.329
  233.         UnEXE                           UnEXE.425
  234.         UnGame                          UnGame.766/770
  235.         Unhandled                       Unhandled.424
  236.         Unite                           VS.3900
  237.         Unskip.1908                     Unskip.1908/1909
  238.         Urphin.317                      Urfin.317
  239.         Uruguay.1                       Uruguay.2379
  240.         Uruguay.2                       Uruguay.2313
  241.         Uruguay                         Uruguay.2456-6396
  242.                                                 (2456/2623/4268/4879/6344/
  243.                                                         6262/4906/6396)
  244.         USSR.414                        Quail.414
  245.         Uvst                            Uvst.5700
  246.         Uzzy                            Uzzy.548
  247.         V-388                           MDS.388
  248.         V.670                           UTA.670
  249.         V-756                           Peep.756
  250.         V3000                           Quango.3000
  251.         Valentine                       Valentine.2332
  252.         Vampiro                         Vampiro.1492-1623
  253.                                                 (1492/1542/1619/1621/1623)
  254.         Vampirus                        Vampirus.1499
  255.         Vandor                          Vandor.1024
  256.         VComm                           VComm.633-637 (633/636/637)
  257.         VCS                             VCS.1077
  258.         VCL.ABX                         VCLO.508
  259.         Vdead                           Is_Dead.2308
  260.         Velvet                          Velvet.2000
  261.         Vengence                        Vengence.252-613
  262.                                                 (252/390/453/613/639/659)
  263.         Vico.1000                       Vico.500/1000
  264.         Victor                          Victor.2442
  265.         Vindicator                      Vindicator.734
  266.         Violetta                        Violetta.1024/3840
  267.         Viros11.429                     Viros.429
  268.         VirTrap                         Vidmess.934
  269.         Virus.286                       Bell.286
  270.         VirusC.496                      Quaver.496
  271.         Vivat                           Vivat.9382
  272.         VME                             VME.966-2261 (966/1699/1703/2261)
  273.         Voice                           Voice.1495
  274.         Voronezh.600                    Voronezh.370/600
  275.         Vote                            Vote.1000
  276.         VP                              VP.909
  277.         Vriest                          Vriest.1280
  278.         Vrn                             Voronezh.1536/1584
  279.         Walker                          Walker.3846
  280.         Wally                           Wally.1029
  281.         Wanderer.411/484                Wanderer.400-484 (400/403/411/484)
  282.         Warrior                         Warrior.1024
  283.         Wasp                            Wasp.623/903
  284.         Wasp.1655                       Wasp.1647
  285.         Wave                            Wave.373/454
  286.         Weak                            Weak.1253
  287.         We're_Here                      We're_Here.836
  288.         Wharps                          Wharps.572.A
  289.         Wilbur                          Wilbur.512.A-C (A/B/C)
  290.         Wilbur.D                        Wilbur.512.D
  291.         Wildfire                        Wildfire.2222/2371
  292.         Wildy                           Wildy.354
  293.         Willow                          Willow.1870/2013
  294.         Witcode                         Witcode.966
  295.         Wizard                          Wizard.268/312
  296.         Wolfman                         Wolfman.2064
  297.         WZ                              WZ.499
  298.         XAM                             XAM.797
  299.         Xeram                           Xeram.1664
  300.         XTAC                            XTAC.1564
  301.         Yafo                            Yafo.328
  302.         Yam                             Yam.3596/3599
  303.         Yammath                         Yam.1136
  304.         Yog-Sothoth                     Yog.794
  305.         Youth                           Youth.580-991 (580/640/968/970/991)
  306.         ZeroHunter.411-422              ZeroHunter.411-422 (411/415/422)
  307.         Ziuck                           Ziuck.1279/1372
  308.         Zmiana.1224                     Zmiana.1224.A
  309.         Zol                             Zol.316/799
  310.         Zombie                          Zombie.747
  311.         Zulu                            Zulu.1390
  312.  
  313.     -   The next viruses had the indicated changes:
  314.  
  315.         Name                            Changes
  316.         ================================================================
  317.         Ammit770b                       Removed
  318.         Anti_MIT.764                    New signature
  319.         Anti_MIT.770.A                  Removed
  320.         Anti_MIT.770.B                  Removed
  321.         Antimit.770.b                   Removed
  322.         Anarchy.6503                    New signature
  323.         Arg.1206                        New signature
  324.         Armagedon ->                    Name change and variant detection
  325.                 Armagedon.1065-1079
  326.                 (1065/1066/1074/1079)
  327.         Beer -> Beer.645-3612 (0645/    Name change and variant detection
  328.                 2473/2620/2794/2850/
  329.                 2920/2984/3164/3192/
  330.                 3307/3399/3434/3441/
  331.                 3490/3552/3612)
  332.         Democracy ->                    Name change and new signature
  333.                 Democracy.3806/3959
  334.         InDos -> InDos.522              Name change and new signature
  335.         Klubb                           Removed
  336.         Michael.1458                    New signature
  337.         NoPM.494                        New signature
  338.         Ox.475                          New signature
  339.         Satan -> Satan.512-612          Name change and variant detection
  340.                 (512/599/602/612)
  341.         SillyC.190.A                    New signature
  342.         Skew.458                        New signature
  343.         Stardot.1100                    New signature
  344.         Stardot.unknown                 Removed
  345.         Sum.1441                        New signature
  346.         UESTC.888                       New signature
  347.         USSR-707 -> Quartile.706/707    Name change and variant detection
  348.         UU.1200 -> Prodigy.1200         Name change and new signature
  349.         V-475                           Removed
  350.         V.1441                          Removed
  351.         Vector.441                      New signature
  352.         Veronika -> Veronika.1549       Name change and variant detection
  353.         Zarm.2322 -> Zarm.2322/2389     Variant detection
  354.         Zipper -> Zipper.2778/2779      Variant detection
  355.  
  356.     -   Added trojan signatures:
  357.  
  358.         Nukex
  359.  
  360.     -   Added bootsector signatures:
  361.  
  362.         15_Years.C
  363.         3-Devils.A
  364.         3-Devils.B
  365.         Den_Zuk.3
  366.         Malaga.B
  367.         Quiz.1024 {mbr}
  368.         Redeye
  369.         Stoned.Ypm
  370.         Thanksgiving.1253 {mbr}
  371.         Triple_X
  372.         Ufro
  373.         Varna.1536 {mbr}
  374.         Zaboot
  375.  
  376.     -   Added file virus signatures:
  377.  
  378.         ACE.1872
  379.         AGA.3000
  380.         Akuku.1111
  381.         AllFools.659
  382.         Andris.843
  383.         Angel.662
  384.         Angry.393
  385.         ANSIbomb.881
  386.         Antitrace.1864
  387.         AntiWin.2330
  388.         Apparition.7035
  389.         Asch.794
  390.         Asmodeus.1160
  391.         Asmodeus.1343
  392.         Asmodeus.1437
  393.         Asmodeus.1450
  394.         Asmodeus.1829
  395.         Asmodeus.1833
  396.         Assignation.653
  397.         AWME:Demo
  398.         AWME related
  399.         Burglar.777-833 (777/820/824/833)
  400.         Burglar.877
  401.         Burglar.1004
  402.         Burglar.1029
  403.         Burglar.1050
  404.         Burglar.1365
  405.         BW.815
  406.         Change.663
  407.         Cialocin.807
  408.         CLL.947
  409.         Corea.926
  410.         Corea.941
  411.         Corea.998
  412.         Corea.1036
  413.         Eddy.1039
  414.         Eddy.1316
  415.         Eddy.1326
  416.         Eddy.1333
  417.         Eddy.1422-1567 (1422/1444/1457/1463/1478/1482/1542/1551/1567)
  418.         Eventide.1061
  419.         Jerusalem.Wanderer.1455-1768 (1455/1570/1589/1591/1768)
  420.         Jerusalem.Wanderer.1598
  421.         Kiwi.550/1000
  422.         KOV.1403
  423.         KOV.1592
  424.         KOV.1712/1722
  425.         KOV.1785/1798
  426.         KsTro.1029
  427.         KsTro.1087
  428.         KsTro.1332
  429.         Malatinec.2367
  430.         MDS.703
  431.         Miny.218
  432.         Miny.256
  433.         Miny.300-444 (300/321/333/444)
  434.         Miny.500
  435.         Miny.543-666 (543/566/666)
  436.         Miny.651
  437.         Miny.845/850
  438.         Orion.262/365
  439.         Overnopped.895
  440.         Peel.334
  441.         QAWO.719
  442.         Quadfive.625
  443.         Quibble.948
  444.         Quintessence.992
  445.         Rosebud.912
  446.         Rotator.864
  447.         Serre.337
  448.         Skvernuk.594
  449.         Sluknov.873
  450.         Smile.1113
  451.         Spaghetti.1259
  452.         Stupid.1024
  453.         Tai-Pan.513
  454.         Tenerife.1550
  455.         TSB.1121
  456.         Ufo.1469
  457.         Umbrella.3173
  458.         Unfo.9594
  459.         Unhandled.495
  460.         Uniq.308/309
  461.         Unkempt.1342
  462.         Unlucky.2008
  463.         UnSpeed.920
  464.         Unwanted.550
  465.         Urodyne.773
  466.         Vampiro.1000
  467.         Varna.1536
  468.         VCM.493
  469.         VCS2.799
  470.         Vesna.1614
  471.         Viaggio.1051
  472.         Video.109
  473.         Vienna.1164
  474.         Viktoria.480
  475.         Viktoria.550
  476.         Vorbis.155/166
  477.         Vortex.1584-1608 (1584/1588/1592/1596/1600/1604/1608)
  478.         Vota.591
  479.         VSoft.655
  480.         VXT.550
  481.         Wadim.531
  482.         Walhala.1283
  483.         Wanderer.1757/1783
  484.         Wanderer.1811-1884 (1811/1845/1852/1862/1884)
  485.         Warsaw.850
  486.         Wasp.1313
  487.         Weekday.1614
  488.         WG.728
  489.         Wharps.572.B
  490.         Whiskey.372/382
  491.         White_Lion.942
  492.         Wildy.399
  493.         Wildy.402
  494.         Wildy.421
  495.         Wittering.974
  496.         WMA.424
  497.         WMA.448/451
  498.         WSI.853
  499.         WSur.1730
  500.         WW.658
  501.         WZ.436
  502.         X-Ray.2050
  503.         XGH.1906
  504.         Xinix.533 (Garbage)
  505.         Xute.1182
  506.         Xuxa.1037
  507.         Xuxa.1045/1088
  508.         Xuxa.2058
  509.         Yosha.761
  510.         Yosha.975
  511.         Youth.577
  512.         Zamoy.587
  513.         Zarina.509
  514.         Zibbert.1268
  515.         Zub.792
  516.         Zver.512
  517.         ZYX.5685 {1}
  518.         ZYX.5685 {2}
  519.  
  520.     -   Added macro virus signatures and removal for:
  521.  
  522.         ExcelMacro/Sofa
  523.         WordMacro/ShowOff
  524.         WordMacro/Chandi
  525.