home
***
CD-ROM
|
disk
|
FTP
|
other
***
search
/
PC World 2001 October
/
PCWorld_2001-10_cd.bin
/
Software
/
Antiviry
/
nav16
/
0907i16.exe
/
whatsnew.txt
< prev
Wrap
Text File
|
2001-09-07
|
44KB
|
763 lines
**********************************************************************
** **
** What's New in the NAV Virus Definitions Files WHATSNEW.TXT **
** **
** Symantec AntiVirus Research Center (SARC) September 07, 2001 **
** **
**********************************************************************
This document contains the following topics:
* Virus Alerts
* New Technologies
* Changes Incorporated Into This Update
* Enabling Scanning Features
* Additional Information
**********************************************************************
** Virus Alerts **
**********************************************************************
The ten most commonly reported viruses, worldwide:
1 W95.Hybris.worm
2 W95.MTX
3 Wscript.KakWorm
4 W32.HLLW.Bymer
5 W32.Magistr.24876@mm
6 W32.Badtrans.13312@mm
7 W32.Navidad.16896
8 Happy99.Worm
9 VBS.LoveLetter
10 W32.HLLW.Qaz
**********************************************************************
** New Technologies **
**********************************************************************
DATE Technologies Added
---- ------------------
02/18/99 * Detection and repair of macro viruses in Word and Excel
2000 documents.
05/15/99 * Added repair for PowerPoint viruses.
* Improved heuristics to detect more WORD 97 related
viruses.
06/10/99 * Menu repair technology for WORD macro viruses that change
command bar customizations in NORMAL.DOT.
07/12/99 * Added support for scanning of Ichitaro 8/9 documents.
(Ichitaro is a Japanese word processing program).
08/19/99 * Added detection and repair for embedded documents inside
PowerPoint 97.
11/22/99 * Added detection and repair for Trojans embedded in OLE
files, such as Windows scrap files and MS Office
documents.
* Added detection for viruses which infect Microsoft
Project documents (P98M.Corner.A, for example).
02/10/00 * Added support for scanning of UNIX executables.
* Added detection for infected Visio documents.
12/18/00 * Added heuristics for for 32-bit Windows viruses.
* Added a script scanner which increases our capabilities for
detecting script based threats.
08/02/01 * Engine Update 08/02/01
* All products that use the NAVEX 1.5 architecture
(in other words, most major Symantec products released over
the last 3 - 4 years) will receive the new functionality.
* This enhanced technology provides improved script scanning
as well as more proactive detection of unknown script-based
threats.
**********************************************************************
** Changes Incorporated Into This Virus Definitions Update **
**********************************************************************
DATE
----
New virus definitions (sorted by Virus Name):
Virus Name Infection Type Date added
---------- -------------- ----------
Alad.2293 File infector 09/05/01
Altx.1264 File infector 08/29/01
Altx.1264 (2) File infector 08/29/01
Altx.1264 (3) File infector 08/29/01
Altx.1264 (4) File infector 08/29/01
Altx.1264 (x) File infector 08/29/01
Altx.1264 (x)(2) File infector 08/29/01
Altx.1264 (x)(3) File infector 08/29/01
Altx.1309 File infector 08/29/01
Altx.1309 (2) File infector 08/29/01
Altx.1309 (3) File infector 08/29/01
Altx.1309 (4) File infector 08/29/01
Altx.1309 (x) File infector 08/29/01
Altx.1309 (x)(2) File infector 08/29/01
Altx.1309 (x)(3) File infector 08/29/01
Altx.1751 File infector 08/29/01
Altx.1751 (2) File infector 08/29/01
Altx.1751 (3) File infector 08/29/01
Altx.1751 (4) File infector 08/29/01
Altx.1751 (x) File infector 08/29/01
Altx.1751 (x)(2) File infector 08/29/01
Altx.1751 (x)(3) File infector 08/29/01
Altx.2283 File infector 08/29/01
BAT.Trojan File infector 08/13/01
Backdoor.Death File infector 08/20/01
Backdoor.G_Door File infector 08/29/01
Backdoor.Kaitex File infector 08/17/01
Backdoor.Mandi File infector 08/29/01
Backdoor.Moonpie.135 File infector 08/29/01
Backdoor.Penrox File infector 08/22/01
Backdoor.Trojan.dr(3) File infector 08/29/01
Backdoor.Trojan.dr(4) File infector 08/29/01
Backdoor.Trojan.dr(5) File infector 09/05/01
Backdoor.Way File infector 08/30/01
Backdoor.Y3KRat File infector 08/20/01
Backdoor.Y3KRat.12 File infector 09/06/01
Bat.Winstart.900 File infector 08/20/01
BugHunter.200 File infector 09/06/01
BugHunter.206 File infector 09/06/01
Bw.kit.gen File infector 08/17/01
Eumel.363.A File infector 08/20/01
Eumel.383 File infector 08/20/01
Eumel.383 (2) File infector 08/20/01
HLL.IRC.Merlin File infector 09/06/01
HLLW.Killer.7372 File infector 08/29/01
HLP.Macro File infector 08/24/01
Hacktool.Nuker File infector 08/22/01
HiTechAssasin.453 File infector 09/06/01
Hllp.5808 File infector 08/31/01
Hllw.17892 File infector 09/05/01
Hllw.Naston.19000 File infector 09/05/01
IRC.Bitmap.Worm File infector 08/29/01
IRC.Forca.Worm File infector 09/05/01
IRC.Shiver File infector 09/06/01
JS.Clid.A@mm File infector 08/27/01
JS.Emin.A@mm File infector 08/28/01
JS.Iam.intd File infector 08/15/01
JV.BrownOrifice.Class File infector 08/20/01
JV.Exception.Exploit File infector 08/17/01
Linux.ADM.Worm File infector 08/17/01
O97M.Coco.A File infector 09/05/01
PHP.Alf File infector 08/28/01
PS-MPC.kit.gen File infector 08/29/01
Perl.Findfile File infector 08/28/01
Rachael.813 File infector 08/20/01
Sailor.1108 File infector 08/20/01
Sailor.834 File infector 08/13/01
SillyC.200.e File infector 09/06/01
Solaris.BoxPoison.Worm File infector 08/20/01
Trivial.178.B File infector 08/20/01
Trivial.194 File infector 08/17/01
Trojan.Badmacro File infector 09/05/01
Trojan.Bat.Season.A File infector 08/13/01
Trojan.Error File infector 08/24/01
Trojan.Hackin File infector 09/05/01
Trojan.Hackin File infector 09/06/01
Trojan.IRC.Noob.gen File infector 08/20/01
Trojan.JS.Clid.gen File infector 08/22/01
Trojan.JS.Cover File infector 08/22/01
Trojan.JS.Wipe File infector 08/20/01
Trojan.JavaApp.Stars File infector 08/29/01
Trojan.Kingnoon.int File infector 09/05/01
Trojan.Linux.Fork File infector 08/29/01
Trojan.Offensive File infector 08/20/01
Trojan.Picshow File infector 08/29/01
Trojan.Sadist File infector 08/29/01
Trojan.Vovan.236 File infector 08/20/01
Trojan.W97M.Flush.A File infector 08/15/01
Trojan.W97M.Minus File infector 08/20/01
Trojan.W97M.Thief.A File infector 08/13/01
Trojan.WSH.Deltree File infector 08/13/01
Trojan.X97M.Loser.A File infector 08/13/01
Trojan.Xtratank File infector 08/20/01
Trojan.Zeraf File infector 08/22/01
Trojan.Zeraf.dr(1) File infector 08/22/01
Trojan.Zeraf.dr(2) File infector 08/22/01
VBS.Cosa.A@mm File infector 09/04/01
VBS.Cuerpo.A@mm File infector 08/30/01
VBS.European.A@mm File infector 08/17/01
VBS.Fiber.B File infector 08/13/01
VBS.Fiber.C File infector 08/28/01
VBS.Freelinks.C@mm File infector 08/10/01
VBS.Gorum.B@mm File infector 08/10/01
VBS.Hotdog.gen File infector 09/06/01
VBS.IO.A@mm File infector 08/17/01
VBS.Iam.intd File infector 08/15/01
VBS.Infort.A File infector 08/20/01
VBS.ItPoem.A@mm File infector 08/29/01
VBS.Lennium File infector 08/10/01
VBS.Loding.A@mm File infector 08/16/01
VBS.Loveletter.CQ File infector 09/06/01
VBS.Mensa.A@mm File infector 08/20/01
VBS.Nap.A@mm File infector 08/20/01
VBS.NetLog.I File infector 08/10/01
VBS.Peace.Worm File infector 08/17/01
VBS.Reality.C File infector 09/05/01
VBS.SNights File infector 08/22/01
VBS.Stertor File infector 08/10/01
VBS.Trappy@mm File infector 09/06/01
VBS.Trojan.IRW File infector 08/29/01
VBS.Trojan.Icon File infector 08/29/01
VBS.Trojan.Lariara File infector 08/29/01
VBS.VBSWG.P@mm File infector 08/20/01
VBS.Vbswg2.D@mm File infector 08/29/01
VBS.XPMsg@mm File infector 08/20/01
Vkit.gen File infector 08/20/01
W2K.Outa@mm File infector 08/27/01
W2KM.Outa File infector 08/27/01
W2KM.Outa.src File infector 08/27/01
W32.Abotus.Worm@m File infector 08/29/01
W32.Allgro@mm File infector 08/20/01
W32.Apost.Worm@mm File infector 09/04/01
W32.BlueCode.Worm File infector 09/07/01
W32.Bumper.Worm File infector 08/22/01
W32.FamMovie.Worm File infector 08/22/01
W32.Fruit.C.Mirc File infector 08/22/01
W32.FunFlash.Worm File infector 08/22/01
W32.HLLW.Hai File infector 08/13/01
W32.HLLW.Remat File infector 08/20/01
W32.Invictus.dll File infector 08/22/01
W32.LXD.Mirc.dr File infector 08/13/01
W32.Magistr.39921@mm File infector 09/04/01
W32.Magistr.trojan File infector 09/04/01
W32.Modnar.Worm@mm File infector 08/15/01
W32.Pet_Tick.Intd File infector 08/22/01
W32.Qint@mm File infector 08/30/01
W32.Ralvek.int File infector 08/22/01
W32.Youzer.Worm@m File infector 08/15/01
W32.Zoek@mm File infector 08/22/01
W32.Zorro@mm File infector 08/30/01
W95.Apop File infector 09/06/01
W95.CIH.corrupt File infector 09/06/01
W95.Dead File infector 08/24/01
W95.Dead.B File infector 08/24/01
W95.Frone File infector 08/20/01
W95.Tariprox.Worm File infector 08/15/01
W97M.Arm.A File infector 09/05/01
W97M.Astia.BR File infector 08/29/01
W97M.Automat.AGH File infector 09/05/01
W97M.Bablas.BW File infector 09/06/01
W97M.Been.A File infector 09/05/01
W97M.Boluc.A@mm File infector 08/10/01
W97M.CaptainL File infector 09/06/01
W97M.Chack.AG File infector 08/20/01
W97M.Chack.AT File infector 08/20/01
W97M.Day File infector 08/28/01
W97M.Dus.A File infector 08/20/01
W97M.FiveA.C:Ru File infector 08/28/01
W97M.Galero.C File infector 08/20/01
W97M.Gub File infector 08/20/01
W97M.InAdd.A File infector 08/20/01
W97M.JSMP.kit File infector 08/13/01
W97M.Luar.A File infector 08/27/01
W97M.MWVCK.kit File infector 08/13/01
W97M.Marker.JG File infector 08/27/01
W97M.Melissa.BO@mm File infector 08/30/01
W97M.Melli.A.gen File infector 08/10/01
W97M.Minimal.BW File infector 08/20/01
W97M.Minimal.BX File infector 08/20/01
W97M.Nostyle.gen File infector 08/20/01
W97M.Ostrich.B File infector 08/29/01
W97M.Prince.A File infector 08/20/01
W97M.Rash.B File infector 08/20/01
W97M.SBVM.kit File infector 08/13/01
W97M.Sops.kit File infector 08/13/01
W97M.Thus.EN File infector 08/13/01
W97M.Thus.FA@mm File infector 08/28/01
W97M.VMPCK1.CQ File infector 08/16/01
W97M.VMPCK1.CS File infector 08/16/01
W97M.VMPCK1.gen File infector 09/04/01
W97M.Verlor.K.vbs File infector 09/05/01
W97M.Vovan.A File infector 08/20/01
W97M.Vovan.B File infector 08/20/01
WM.NJ-WMVCK2.O File infector 08/10/01
X97M.Hopper.AD File infector 08/22/01
X97M.Laroux.MB:Jp File infector 08/15/01
X97M.Nostyle.E File infector 08/20/01
X97M.Smack File infector 08/20/01
XM.Robocop.B File infector 09/04/01
Yosha.761 File infector 08/20/01
ZipInst File infector 08/22/01
New virus definitions (sorted by Date added):
Virus Name Infection Type Date added
---------- -------------- ----------
W32.BlueCode.Worm File infector 09/07/01
Backdoor.Y3KRat.12 File infector 09/06/01
HLL.IRC.Merlin File infector 09/06/01
IRC.Shiver File infector 09/06/01
Trojan.Hackin File infector 09/06/01
VBS.Hotdog.gen File infector 09/06/01
VBS.Loveletter.CQ File infector 09/06/01
W95.Apop File infector 09/06/01
W95.CIH.corrupt File infector 09/06/01
W97M.CaptainL File infector 09/06/01
BugHunter.200 File infector 09/06/01
BugHunter.206 File infector 09/06/01
HiTechAssasin.453 File infector 09/06/01
SillyC.200.e File infector 09/06/01
VBS.Trappy@mm File infector 09/06/01
W97M.Bablas.BW File infector 09/06/01
Alad.2293 File infector 09/05/01
Backdoor.Trojan.dr(5) File infector 09/05/01
Hllw.17892 File infector 09/05/01
Hllw.Naston.19000 File infector 09/05/01
IRC.Forca.Worm File infector 09/05/01
O97M.Coco.A File infector 09/05/01
Trojan.Badmacro File infector 09/05/01
Trojan.Hackin File infector 09/05/01
Trojan.Kingnoon.int File infector 09/05/01
VBS.Reality.C File infector 09/05/01
W97M.Arm.A File infector 09/05/01
W97M.Automat.AGH File infector 09/05/01
W97M.Been.A File infector 09/05/01
W97M.Verlor.K.vbs File infector 09/05/01
VBS.Cosa.A@mm File infector 09/04/01
W32.Apost.Worm@mm File infector 09/04/01
W32.Magistr.39921@mm File infector 09/04/01
W32.Magistr.trojan File infector 09/04/01
W97M.VMPCK1.gen File infector 09/04/01
XM.Robocop.B File infector 09/04/01
Hllp.5808 File infector 08/31/01
W32.Qint@mm File infector 08/30/01
W32.Zorro@mm File infector 08/30/01
W97M.Melissa.BO@mm File infector 08/30/01
Backdoor.Way File infector 08/30/01
VBS.Cuerpo.A@mm File infector 08/30/01
Altx.1264 File infector 08/29/01
Altx.1264 (2) File infector 08/29/01
Altx.1264 (3) File infector 08/29/01
Altx.1264 (4) File infector 08/29/01
Altx.1264 (x) File infector 08/29/01
Altx.1264 (x)(2) File infector 08/29/01
Altx.1264 (x)(3) File infector 08/29/01
Altx.1309 File infector 08/29/01
Altx.1309 (2) File infector 08/29/01
Altx.1309 (3) File infector 08/29/01
Altx.1309 (4) File infector 08/29/01
Altx.1309 (x) File infector 08/29/01
Altx.1309 (x)(2) File infector 08/29/01
Altx.1309 (x)(3) File infector 08/29/01
Altx.1751 File infector 08/29/01
Altx.1751 (2) File infector 08/29/01
Altx.1751 (3) File infector 08/29/01
Altx.1751 (4) File infector 08/29/01
Altx.1751 (x) File infector 08/29/01
Altx.1751 (x)(2) File infector 08/29/01
Altx.1751 (x)(3) File infector 08/29/01
Altx.2283 File infector 08/29/01
Backdoor.G_Door File infector 08/29/01
Backdoor.Mandi File infector 08/29/01
Backdoor.Moonpie.135 File infector 08/29/01
Backdoor.Trojan.dr(3) File infector 08/29/01
Backdoor.Trojan.dr(4) File infector 08/29/01
HLLW.Killer.7372 File infector 08/29/01
IRC.Bitmap.Worm File infector 08/29/01
PS-MPC.kit.gen File infector 08/29/01
Trojan.JavaApp.Stars File infector 08/29/01
Trojan.Linux.Fork File infector 08/29/01
Trojan.Picshow File infector 08/29/01
Trojan.Sadist File infector 08/29/01
VBS.ItPoem.A@mm File infector 08/29/01
VBS.Trojan.IRW File infector 08/29/01
VBS.Trojan.Icon File infector 08/29/01
VBS.Trojan.Lariara File infector 08/29/01
VBS.Vbswg2.D@mm File infector 08/29/01
W32.Abotus.Worm@m File infector 08/29/01
W97M.Astia.BR File infector 08/29/01
W97M.Ostrich.B File infector 08/29/01
JS.Emin.A@mm File infector 08/28/01
PHP.Alf File infector 08/28/01
Perl.Findfile File infector 08/28/01
VBS.Fiber.C File infector 08/28/01
W97M.Day File infector 08/28/01
W97M.FiveA.C:Ru File infector 08/28/01
W97M.Thus.FA@mm File infector 08/28/01
JS.Clid.A@mm File infector 08/27/01
W2K.Outa@mm File infector 08/27/01
W2KM.Outa File infector 08/27/01
W2KM.Outa.src File infector 08/27/01
W97M.Luar.A File infector 08/27/01
W97M.Marker.JG File infector 08/27/01
HLP.Macro File infector 08/24/01
Trojan.Error File infector 08/24/01
W95.Dead File infector 08/24/01
W95.Dead.B File infector 08/24/01
Hacktool.Nuker File infector 08/22/01
Trojan.JS.Clid.gen File infector 08/22/01
Trojan.JS.Cover File infector 08/22/01
W32.Fruit.C.Mirc File infector 08/22/01
W32.Invictus.dll File infector 08/22/01
W32.Ralvek.int File infector 08/22/01
Backdoor.Penrox File infector 08/22/01
Trojan.Zeraf File infector 08/22/01
Trojan.Zeraf.dr(1) File infector 08/22/01
Trojan.Zeraf.dr(2) File infector 08/22/01
VBS.SNights File infector 08/22/01
W32.Bumper.Worm File infector 08/22/01
W32.FamMovie.Worm File infector 08/22/01
W32.FunFlash.Worm File infector 08/22/01
W32.Pet_Tick.Intd File infector 08/22/01
W32.Zoek@mm File infector 08/22/01
X97M.Hopper.AD File infector 08/22/01
ZipInst File infector 08/22/01
Eumel.363.A File infector 08/20/01
Eumel.383 File infector 08/20/01
Eumel.383 (2) File infector 08/20/01
Trojan.Vovan.236 File infector 08/20/01
Trojan.W97M.Minus File infector 08/20/01
VBS.Infort.A File infector 08/20/01
VBS.Mensa.A@mm File infector 08/20/01
W97M.Gub File infector 08/20/01
W97M.Minimal.BW File infector 08/20/01
W97M.Minimal.BX File infector 08/20/01
W97M.Nostyle.gen File infector 08/20/01
W97M.Vovan.A File infector 08/20/01
W97M.Vovan.B File infector 08/20/01
X97M.Nostyle.E File infector 08/20/01
Backdoor.Death File infector 08/20/01
Backdoor.Y3KRat File infector 08/20/01
Bat.Winstart.900 File infector 08/20/01
JV.BrownOrifice.Class File infector 08/20/01
Rachael.813 File infector 08/20/01
Sailor.1108 File infector 08/20/01
Solaris.BoxPoison.Worm File infector 08/20/01
Trivial.178.B File infector 08/20/01
Trojan.IRC.Noob.gen File infector 08/20/01
Trojan.JS.Wipe File infector 08/20/01
Trojan.Offensive File infector 08/20/01
Trojan.Xtratank File infector 08/20/01
VBS.Nap.A@mm File infector 08/20/01
VBS.VBSWG.P@mm File infector 08/20/01
VBS.XPMsg@mm File infector 08/20/01
Vkit.gen File infector 08/20/01
W32.Allgro@mm File infector 08/20/01
W32.HLLW.Remat File infector 08/20/01
W95.Frone File infector 08/20/01
W97M.Chack.AG File infector 08/20/01
W97M.Chack.AT File infector 08/20/01
W97M.Dus.A File infector 08/20/01
W97M.Galero.C File infector 08/20/01
W97M.InAdd.A File infector 08/20/01
W97M.Prince.A File infector 08/20/01
W97M.Rash.B File infector 08/20/01
X97M.Smack File infector 08/20/01
Yosha.761 File infector 08/20/01
Backdoor.Kaitex File infector 08/17/01
Bw.kit.gen File infector 08/17/01
JV.Exception.Exploit File infector 08/17/01
Linux.ADM.Worm File infector 08/17/01
Trivial.194 File infector 08/17/01
VBS.European.A@mm File infector 08/17/01
VBS.IO.A@mm File infector 08/17/01
VBS.Peace.Worm File infector 08/17/01
VBS.Loding.A@mm File infector 08/16/01
W97M.VMPCK1.CQ File infector 08/16/01
W97M.VMPCK1.CS File infector 08/16/01
JS.Iam.intd File infector 08/15/01
Trojan.W97M.Flush.A File infector 08/15/01
VBS.Iam.intd File infector 08/15/01
W32.Modnar.Worm@mm File infector 08/15/01
W32.Youzer.Worm@m File infector 08/15/01
W95.Tariprox.Worm File infector 08/15/01
X97M.Laroux.MB:Jp File infector 08/15/01
BAT.Trojan File infector 08/13/01
Sailor.834 File infector 08/13/01
Trojan.W97M.Thief.A File infector 08/13/01
Trojan.X97M.Loser.A File infector 08/13/01
VBS.Fiber.B File infector 08/13/01
W32.LXD.Mirc.dr File infector 08/13/01
W97M.JSMP.kit File infector 08/13/01
W97M.MWVCK.kit File infector 08/13/01
W97M.SBVM.kit File infector 08/13/01
W97M.Sops.kit File infector 08/13/01
W97M.Thus.EN File infector 08/13/01
Trojan.Bat.Season.A File infector 08/13/01
Trojan.WSH.Deltree File infector 08/13/01
W32.HLLW.Hai File infector 08/13/01
VBS.Freelinks.C@mm File infector 08/10/01
VBS.Gorum.B@mm File infector 08/10/01
VBS.Lennium File infector 08/10/01
VBS.NetLog.I File infector 08/10/01
VBS.Stertor File infector 08/10/01
W97M.Boluc.A@mm File infector 08/10/01
W97M.Melli.A.gen File infector 08/10/01
WM.NJ-WMVCK2.O File infector 08/10/01
Name Changes (sorted by Old Virus Name):
Old Virus Name New Virus Name Date changed
-------------- -------------- ------------
Backdoor.Mandi to Backdoor.WebDL.C 08/29/01
BAT.ForDo.gen to BAT.Silly.B.gen 07/25/01
Bat.Fakedrive.273 to Bat.Count.A.273 07/20/01
ConCon.Trojan to Trojan.VBS.Concon 09/04/01
JS.Clid.A@mm to VBS.Loding.B@mm 08/29/01
JV.Exception.Exploit to JS.Exception.Exploit 08/22/01
Krafo.615 to Pixel.851(2) 07/31/01
Pixel.851(2) to Krafo.615 07/31/01
Trojan.Billrus.Texto to HLLW.Billrus.f 07/31/01
Trojan.Error to Trojan.Pounds 08/29/01
Trojan.Offensive to Trojan.JS.Offensive 08/22/01
VBS.AutoExec.Trojan to Trojan.VBS.Never 08/29/01
VBS.Fakedrive@mm to VBS.Count.A.int 07/20/01
VBS.Fujim.A@mm to VBS.Informer.A@mm 08/10/01
VBS.Fujimori.A@mm to VBS.Fujim.A@mm 08/08/01
VBS.Heather.A.Int to VBS.SChild.Int 07/25/01
VBS.IO.A@mm to VBS.Thea.A 08/22/01
VBS.Ketip.A@mm to VBS.Pet_Tick.A@mm 07/17/01
VBS.Ketip.A@mm (2) to VBS.Pet_Tick.A@mm (2) 07/17/01
VBS.Ketip.A@mm.ini to VBS.Pet_Tick.A@mm.ini 07/17/01
VBS.Mensa.A@mm to VBS.Proud.A@mm 08/22/01
VBS.Merlin.C.Int to VBS.XPJunexp.C.Int 08/10/01
VBS.Merlin.D@mm to VBS.Merlin.C@mm 08/10/01
VBS.Parrot@mm to VBS.Crackly@mm 07/31/01
VBS.Peace.Worm to VBS.Elimence.A 08/31/01
VBS.Rewind.A@mm to VBS.SSIWG.gen@mm 08/17/01
VBS.Ruzz to VBS.Fiber.A 08/13/01
VBS.SNights to VBS.Zync.A 08/22/01
VBS.VBSWG.N to VBS.VBSWG.N@mm 07/17/01
VBS.Wordsworth to VBS.Yello 08/13/01
VBS.Yang@mm to VBS.XPJunexp.intd 07/20/01
VBS.Zulu.pdf@mm to VBS.PeachyPDF@mm 08/08/01
W32.Cryptolab.vbs to VBS.Heyya.Worm 07/25/01
W32.Parrot@mm to W32.Crackly@mm 07/31/01
W32.Pimpo@mm to W32.Pimpol.B@mm 08/05/01
W32.Ralvek.int to W32.Pet_Tick.M 08/24/01
W97M.Epik.A to O97M.Epik.A 09/06/01
W97M.Minimal.AX.gen to W97M.Minimal.AX 08/13/01
W97M.Thus.FA@mm to W97M.Cruson.A@mm 08/29/01
WNT.Segaf.Worm.intd to X97M.BDoc2 07/31/01
X97M.Yawn.gen to XM.Yawn 08/17/01
Name Changes (sorted by Date changed):
Old Virus Name New Virus Name Date changed
-------------- -------------- ------------
W97M.Epik.A to O97M.Epik.A 09/06/01
ConCon.Trojan to Trojan.VBS.Concon 09/04/01
VBS.Peace.Worm to VBS.Elimence.A 08/31/01
Backdoor.Mandi to Backdoor.WebDL.C 08/29/01
JS.Clid.A@mm to VBS.Loding.B@mm 08/29/01
Trojan.Error to Trojan.Pounds 08/29/01
VBS.AutoExec.Trojan to Trojan.VBS.Never 08/29/01
W97M.Thus.FA@mm to W97M.Cruson.A@mm 08/29/01
W32.Ralvek.int to W32.Pet_Tick.M 08/24/01
JV.Exception.Exploit to JS.Exception.Exploit 08/22/01
Trojan.Offensive to Trojan.JS.Offensive 08/22/01
VBS.SNights to VBS.Zync.A 08/22/01
VBS.IO.A@mm to VBS.Thea.A 08/22/01
VBS.Mensa.A@mm to VBS.Proud.A@mm 08/22/01
VBS.Rewind.A@mm to VBS.SSIWG.gen@mm 08/17/01
X97M.Yawn.gen to XM.Yawn 08/17/01
VBS.Ruzz to VBS.Fiber.A 08/13/01
VBS.Wordsworth to VBS.Yello 08/13/01
W97M.Minimal.AX.gen to W97M.Minimal.AX 08/13/01
VBS.Fujim.A@mm to VBS.Informer.A@mm 08/10/01
VBS.Merlin.C.Int to VBS.XPJunexp.C.Int 08/10/01
VBS.Merlin.D@mm to VBS.Merlin.C@mm 08/10/01
VBS.Fujimori.A@mm to VBS.Fujim.A@mm 08/08/01
VBS.Zulu.pdf@mm to VBS.PeachyPDF@mm 08/08/01
W32.Pimpo@mm to W32.Pimpol.B@mm 08/05/01
Krafo.615 to Pixel.851(2) 07/31/01
Pixel.851(2) to Krafo.615 07/31/01
Trojan.Billrus.Texto to HLLW.Billrus.f 07/31/01
W32.Parrot@mm to W32.Crackly@mm 07/31/01
VBS.Parrot@mm to VBS.Crackly@mm 07/31/01
WNT.Segaf.Worm.intd to X97M.BDoc2 07/31/01
BAT.ForDo.gen to BAT.Silly.B.gen 07/25/01
VBS.Heather.A.Int to VBS.SChild.Int 07/25/01
W32.Cryptolab.vbs to VBS.Heyya.Worm 07/25/01
Bat.Fakedrive.273 to Bat.Count.A.273 07/20/01
VBS.Fakedrive@mm to VBS.Count.A.int 07/20/01
VBS.Yang@mm to VBS.XPJunexp.intd 07/20/01
VBS.Ketip.A@mm to VBS.Pet_Tick.A@mm 07/17/01
VBS.Ketip.A@mm (2) to VBS.Pet_Tick.A@mm (2) 07/17/01
VBS.Ketip.A@mm.ini to VBS.Pet_Tick.A@mm.ini 07/17/01
VBS.VBSWG.N to VBS.VBSWG.N@mm 07/17/01
Deletions (sorted by Virus Name):
Virus Name Infection Type Date removed
---------- -------------- ------------
A97M.Amg.A File infector 06/15/01
Backdoor.Teste File infector 08/24/01
CLS.Win.Joke.34520(1) File infector 07/17/01
CLS.Win.Joke.34520(2) File infector 07/17/01
Eumel.363.A File infector 08/20/01
Invalid Certificate File infector 05/14/01
MtE.Groove (5) File infector 06/05/01
Sailor.1108 File infector 08/22/01
Trojan.Billrus.Texto File infector 07/13/01
Trojan.VBS.Autoexec File infector 08/29/01
Unlucky.2008 (2) File infector 06/11/01
Unlucky.2008 (3) File infector 06/11/01
W32.Antiqfx.B.worm File infector 08/01/01
W32.Antiqfx.C.worm File infector 08/01/01
W32.Bedtime.2304 File infector 07/02/01
W95.Mul.2012 File infector 05/31/01
W95.Smoker.Worm@mm File infector 07/12/01
WM.Kam File infector 08/20/01
Yosha.761 File infector 08/22/01
Deletions (sorted by Date removed):
Virus Name Infection Type Date removed
---------- -------------- ------------
Trojan.VBS.Autoexec File infector 08/29/01
Backdoor.Teste File infector 08/24/01
Sailor.1108 File infector 08/22/01
Yosha.761 File infector 08/22/01
Eumel.363.A File infector 08/20/01
WM.Kam File infector 08/20/01
W32.Antiqfx.B.worm File infector 08/01/01
W32.Antiqfx.C.worm File infector 08/01/01
CLS.Win.Joke.34520(1) File infector 07/17/01
CLS.Win.Joke.34520(2) File infector 07/17/01
Trojan.Billrus.Texto File infector 07/13/01
W95.Smoker.Worm@mm File infector 07/12/01
W32.Bedtime.2304 File infector 07/02/01
A97M.Amg.A File infector 06/15/01
Unlucky.2008 (2) File infector 06/11/01
Unlucky.2008 (3) File infector 06/11/01
MtE.Groove (5) File infector 06/05/01
W95.Mul.2012 File infector 05/31/01
Invalid Certificate File infector 05/14/01
**********************************************************************
** Enabling Scanning Features **
**********************************************************************
Several scanning features can be enabled through the use of an INF
configuration file. For NAV for Windows 95/NT version 4.x and later,
or NAV for OS/2, this configuration file should be called NAVEX15.INF
and should be placed in the directory where NAV is installed (i.e.,
C:\Program Files\Norton AntiVirus). For NAV for Netware version 4.x,
the file should be called NAVEX15.INF and should be placed in the
directory where NAV 4.x is installed (i.e., sys:system\navnlm). For
NAV for Windows 95/NT version 2.0, NAV 4.x for Windows 3.1/DOS,
NAVIEG 1.x, or NAVFW 1.x, the file should be named NAVEX.INF and
should be placed in the directory where NAV is installed (i.e., C:\NAV).
If this configuration file does not exist, create one in the appropriate
directory if you want to change the default settings.
To enable a scanning feature for a particular component, one or more
entries need to be added to the configuration file under the correct
section. For each platform there is a corresponding section that is used
in the INF file. Below is a table of section names and platforms.
Section Name Platform
------------ --------
NAVW32 Windows 95/98/NT
NAVAP Windows 95/98/NT Auto-Protect
NAVDX DOS
NAVNLM Netware
NAVWIN Windows 3.1
NAVOS2 OS/2
NAVAIX AIX
NAVSOL Solaris
Entries are case insensitive. Below is a description of possible
entries.
1. Files can be excluded from scans by the NAVEX engine. To exclude a
specific file from the NAVEX engine scan, add an entry with the full
path and file name. This is case insensitive. No wildcards are allowed.
To exclude multiple files, add a separate entry for each file. To exclude
a file, add an entry like the one below where <PATH> is the full path
and file name.
ExcludeFile = <PATH>
2. Files within a directory can be excluded from scans by the NAVEX engine.
To exclude all files within a directory, add an entry with the full
directory path. This is case insensitive. No wildcards are allowed. This
does not exclude files located in subdirectories of the specified
directory. To exclude multiple directories, add a separate entry for each
directory. To exclude a directory, add an entry like the one below where
<DIRECTORY> is the full path.
ExcludeDirectory = <DIRECTORY>
The following example of an INF configuration file excludes two files,
NOSCAN.EXE and BIGFILE.DOC, from NAVEX scans for the Windows 95/98/NT
scanner. It excludes the D:\PRIVATE directory from Windows 95/98/NT
Auto-Protect.
[NAVW32]
ExcludeFile = C:\PROGRAM FILES\NOSCAN.EXE
ExcludeFile = C:\TEMP\BIGFILE.DOC
[NAVAP]
ExcludeDirectory = D:\PRIVATE
**********************************************************************
** Additional Information **
**********************************************************************
Additional information regarding this virus definitions update can be
found in UPDATE.TXT and TECHNOTE.TXT.