home
***
CD-ROM
|
disk
|
FTP
|
other
***
search
/
Amiga Plus Special 26
/
AMIGAplus Sonderheft 26 (2000)(Falke)(DE)(Track 1 of 2)[!].iso
/
Updates
/
Virus
/
Safe13.6
/
Safe.readme
< prev
Wrap
Text File
|
2000-07-18
|
2KB
|
56 lines
name: Safe
short: Safe v13.6 - virus dicovering system
author: Zbigniew `Zeeball` Trzcionkowski (zeeball@interia.pl)
uploader: Tomasz Wiszkowski (t_error@interia.pl)
version: 13.6 (20.06.2000)
requires: Amiga with OS 2.04+ (xvs.library strongly recommended)
type: util/virus
STATUS: FreeWare
FEATURES:
- system friendly, non resident, can discover new link viruses
- TCP newshell guard option
- ANTISTEALTH abilities and HEURISTIC vector check option
- can clear VBR
- added memory removals for NeuroticDeath1&2 viruses
(Thanks to Jan Andersen)
- added SAVEMEM option (for advanced users)
- can find and disable in memory PolishPower
(Thanks to Jan Andersen)
- tested with lot of viruses
(Thanks to Jan Andersen)
- not crashes with PatchControl!
(Thanks to Tomasz Wiszkowski for the show :)
- `Safe VECS` allows You to REMOVE ANY patches from
LoadSeg and NewLoadSeg vectors!
- added primitive memory check for rexxfunc trojan (more info below)
- added kit to discover unknown Vaginitis Clones
like TCP:2421 (more info below)
- added QUICKTEST tool to detect and remove new TCP: trojans!
- added memory removals for new Motaba-3 linkvirus
- added kit to find files infected with Motaba-3 linkvirus
(see `AntiMotaba` directory of Safe`s package)
- added DeMotaber tool to remove motaba-3 from files
NOTE THAT SAFE IS VIRUS DETECTOR (*) - NOT FILE CHECKER OR CLEANER!
IT ONLY INFORMS ABOUT ATTACK AND REMOVES VIRUS FROM MEMORY
IF POSSIBLE!
* - except QuickTest and DeMotaber tools
There is new linkvirus on wild!
Thanks to Jan Andersen for sending it!
The virus is entitled Motaba-3 and adds to
files about 880 bytes. No special abilities.
Just classic linkvirus. See my quick analyze
stored in dir AntiMotaba.
And kit to handle this bastard.
Speciality of this virus is that infected `lha` is crashing after run.