home
***
CD-ROM
|
disk
|
FTP
|
other
***
search
/
Magnum One
/
Magnum One (Mid-American Digital) (Disc Manufacturing).iso
/
d23
/
tbscnx21.arc
/
TBVIRSIG.ARC
/
TBSCAN.DAT
< prev
Wrap
Text File
|
1991-03-02
|
32KB
|
1,198 lines
;---------------------------------------------------------------------------
;% Virus information file for TBSCAN and HTSCAN virus scanners
;% (C) Copyright 1989-1991 by Jan Terpstra of FIDONET 2:512/10.0
;% P.O. Box 66, 1462 ZH, Beemster, The Netherlands
;% Revision: 910218 (yymmdd)
;
; The info in this file is published under the following conditions: ;
; ;
; - you may freely distribute this file in UNMODIFIED FORM to any other ;
; private individual or non-commercial organisation. ;
; - you may modify this file for YOUR OWN PRIVATE/NO-COMMERCIAL USE. ;
; - you may NOT distribute modified copies of this file. ;
; - you may NOT include info from this file in your program, magazine ;
; article or any other published work without a written permission from ;
; the editor. ;
; - use of this file in any governemental or commercial environment is ONLY ;
; allowed after obtaining a written permission from the editor. ;
; ;
;NOTICE: This file carries a sanity check. Do NOT change the control info ;
; or any of the info above the sanity check line at the end of the ;
; file. ;
; If you need to add your own info to this file, do so BELOW the ;
; sanity control info line at the bottom of this file. ;
;---------------------------------------------------------------------------;
; Revision history: ;
; ;
; yymmdd description ;
; ------ ------------------------------------------------------------- ;
; 890815 First release of this file ;
; 890907 Added Palette Virus ;
; 890919 Added Icelandic Virus, FuManchu Virus ;
; 890925 Added SYSLOCK Virus, 2930 Virus ;
; 891012 Added HAHAHA Virus ;
; 891017 Added VACSINA, Vienna, OGRE and 2730 Viruses ;
; 891019 Changed sUMsDos signature for new variety ;
; 891021 Added Nichols Virus ;
; 891026 Added Fu Manchu B, Golden Gate and Typo Viruses ;
; Changed Icelandic/Saratoga to avoid confusion ;
; Renamed Palette Virus to ZERO-Bug Virus ;
; 891118 Added Sylvia Virus ;
; Added Lisbon 648 Virus (a newly discovered 648 variety) ;
; Ghost, dBASE, 867, Sunday, SURIV3, Alabama, Dark Avenger, ;
; Mix 1 / Mix 1B, PingPong/286 and Disk Killer ;
; Fixed typo in Icelandic/Saratoga II Virus signature ;
; 891126 Added DATACRIME IIb Virus ;
; Changed 1704 and 17Y4 to a single common signature ;
; Changed length of some signatures to circumvent problems in ;
; detecting varieties of certain viruses. ;
; 900227 Added Dropper Trojan (Father program of Twelve Tricks Trojan) ;
; Added Twelve Tricks Trojan ;
; Added "OGRE" id to Disk Killer virus ;
; 900304 Changed OGRE signature (was double) ;
; Added 4th Bulgarian (V512) virus ;
; 900313 Changed Brain signature to also recognize "Shoe" variety ;
; Changed Ohio signature to recognize a rumoured variety ;
; Changed Typo signature to prevent false alarms ;
; Changed PingPong/286 virus to unique identification ;
; Corrected error in 3066 signature ;
; Added EDV, 765, Do nothing, OROPAX, W13 family, 4096, VCOMM ;
; Added Yankee Doodle 2772, Devil's Dance and, 9800:0000 viruses ;
; Added BOOT modification signature for GHOST virus ;
; Added EXE2COM conversion signature for VACSINA virus ;
; 900403 Added Groen Link virus ;
; Added SURIV1 and SURIV2 (sUMsDos variants) ;
; Added 1392 Virus ;
; 900413 Added Companion (AIDS II, 8064) virus ;
; 900423 Changed Twelve Tricks signature to prevent false alarms ;
; 900425 Shoe, Ashar and Brain changed to common signature ;
; 900425 PingPong and Typo BOOT changed to common signature ;
; Added XA1 virus and XA1 "BOOT record zapped" signature ;
; Added LBC, Taiwan, December 24th, 847, KHETAPUNK, v2000. Solano ;
; SAT14, Pretoria, VP, Anarkia and PSQR (Wheew, don't they ;
; ever stop coming??) ;
; 900430 Added SHAKE virus ;
; 900505 Removed duplicate signature for Kethapunk (1392) virus ;
; Removed Groen Links virus, PLO/sUMsDos signature will find it ;
; Added 1554 as alias for 9800:0000 virus ;
; 900526 One time extra release including TBSCAN ;
; 900620 Added Anti-Pascal and Liberty virus ;
; 900621 Corrected blundering typo...... ;
; 900626 Added PrtSc, Form, ITAVIR, 333, Prudent, VIRDEM, HalloEchen, ;
; 1971, FISH(6), ;
; 900925 Added 537/541 Virus (Thanks to Righard Zwienenberg for the info) ;
; Filler & Armagedon viruses ;
; 900927 Changed Ohio signature to recognize Ohio0 variant ;
; Added Joshi, Stoned/2, MicroDot, Zapper, Flip, 1253, Nothing-2, ;
; SlowDown, v1024, Yankee-go-Home, Flash, Jojo-1701, Staff, ;
; 1624 and Sunday/2 viruses ;
; 900028 Added ANTHRAX virus (slipped in 900927 releease) ;
; 901005 Added Ambulance, Fellow, News Flash and Invader viruses ;
; 901014 Added Dark Avenger 3, Flip COM/EXE, Mirror viruses ;
; Changed v512 to recognize variant ;
; 901030 Changed Jerusalem to recognize several variants ;
; 901106 Added Monxla (Time), Polimer and 3445 virus ;
; 901125 Added TPxxVIR variants, Black monday, 5120, Aircop, DataLock ;
; Marti Bros, Murphy, V-512X, Victor, Whale RAM, July13, ;
; 333 Variant, DisCom, a list of 8 648 variants, Choinka, ;
; 30 Whale mutants and 9800-2 virus. ;
; Changed PSQR to recognize variant ;
; 901126 Corrected long line in this file that would render TBSCAN ;
; inoperable. No new signatures added. ;
; 901126a Added 555 virus. ;
; 901127 Added Turbo 448 Virus ;
; 910111 Added 3 additional WHALE mutants ;
; 910112 Added a whole list of viruses from the USSR. Thanks to Righard ;
; Zwienenberg for preparing that list ;
; 910122 Changed ownership and copyright notice because some people were ;
; making a buck out of MY efforts. ;
; 910124 Fixed KAMIKAZE virus to prevent false alarm. ;
; Added a Sanity Check Control over the contents of this file. ;
; 901218 Added data from the collection of RiZwi: AntiPascal I & II, ;
; Fake, 646, 1067, 2480, Carioca, Japan Christmas, Crazy Eddie, ;
; Guppy, Mobock, Protector, Scotts Valley, Telecom, tiny family, ;
; Eddie 3, VFSI, VP, Vriest, Wisconsin & Zero Hunt. (Pheeww) ;
;---------------------------------------------------------------------------;
; ==> You may NOT distribute modified copies of this file!!! <== ;
; ;
; This file contains a VERIFIED list of virus signatures and should be ;
; used as input for a suitable virus scanner. The MASTER copy of this file ;
; and various virus scanners are maintained and available for FileRequest ;
; or download on: ;
; ;
; Bamestra RBBS, The Netherlands (FIDO 2:512/10.0) ;
; phone: ++31 2998 3602 or ++31 2998 3603 (HST/CM) ;
; P.O. Box 66, 1462 ZH, Beemster, The Netherlands ;
; ;
; If you find a virus and want the info added to this file, leave a message ;
; on or send FIDO netmail to Sysop on Bamestra RBBS, 2:512/10.0 ;
; A working copy of the suspected virus for verification is appreciated. ;
; ;
; Several Bulletin Boards over the world have copies of this file and virus ;
; scanning programs available for download or file-request: ;
; ;
; VIRUSSIG.ZIP - latest VERIFIED version of VIRSCAN.DAT ;
; TBSCAN*.ZIP - Fast virus scanner with lots of options ;
; TBSCNX*.ZIP - Resident version of TBSCAN ;
; HTSCAN*.ZIP - Another good virus scanner ;
; ;
; Most Bulletin Boards get a fresh copy of this file within 48 hours after ;
; the Master Copy on 2:512/10.0 is updated. ;
; ;
; If you appreciate our efforts to keep this list up to date, then please ;
; consider a donation to a local AIDS or cancer research foundation. ;
; For commercial or governemental users: Contact the editor before use! ;
;---------------------------------------------------------------------------;
; ;
; Instructions for use: ;
; If you find a new virus that is not in this list, you can add its ;
; signature to this list BELOW the sanity check control line. ;
; ;
; NOTE: Signatures for BOOT record viruses wil sometimes trigger alarms in ;
; .EXE or .COM files and vice versa. Please check for proper usage of ;
; BOOT versus .COM and EXE signatures before you yell "VIRUS!". ;
; ;
; DO NOT DISTRIBUTE MODIFIED COPIES OF THIS FILE! ;
; Some unofficial versions of this file with wrong information, were ;
; distributed by some individuals. These wrong versions have caused some ;
; panic because perfectly healthy programs were accused of being infected ;
; by a Virus. Again: DO NOT DISTRIBUTE MODIFIED COPIES OF THIS FILE! ;
; ;
; Format of a Virus signature entry (3 lines, no comments in between): ;
; ;
; <Virus name> (max. 30 characters) ;
; <affected items> (COM, EXE, or BOOT; separated by blanks) ;
; <Virus signature> (hex string, no seperators, max 80 characters) ;
; ;
; Lines starting with a ';' are ignored by the virus scanners. ;
; ;
;NOTICE: This file carries a checksum control. Do NOT change the checksum ;
; and add your own info BELOW the cheksum line at the bottom of this ;
; file. ;
;---------------------------------------------------------------------------;
; Signatures collected by Jan R. Terpstra (SysOp Bamestra BBS) with special ;
; thaks to Dave Chess, Yuval Tal, Righard Zwienenberg, Bill Arnold, Mark ;
; Blom, John McAfee and Frans Veldman ;
;---------------------------------------------------------------------------;
Brain, Shoe or Ashar Virus
BOOT
F4A113042D0700A31304B106D3E08EC0BE007C
;
Stoned (Marihuana) Virus
BOOT
1E5080FC02721780FC0473120AD2750E33C08ED8A03F04A8017503E80700
;
Yale Virus
BOOT
BB40008EDBA11300F7E32DE0078EC00E1F81FF56347504FF0EF87D
;
PingPong or Typo Boot Virus
BOOT
8ED8A113042D0200A31304B106D3E02DC0078EC0BE007C8BFEB90001
;
Den Zuk Virus
BOOT
FA8CC88ED88ED0BC00F0FBB8787C50C3
;
Falling Letters Virus.
BOOT
31C0CD13B80202B90627BA0001BB00208EC3BB0001CD139A00010020
;
17XX Virus
COM
F6872A0101740F8DB74D01BC
;
1704(B) or 17Y4 Virus
COM
FA8BECE800005B81EB31012EF6
;
1704-C Virus
COM
F6872A0101740F8DB74D01BC850631343124464C77F8
;
April 1st EXE Virus
EXE
2EA31700BB17000E1FB4DECD21
;
April 1st COM Virus
COM
89263401B419CD2104412EA265
;
Jerusalem related Virus
COM EXE LOW HIGH
0510008EC00E1FB9??07D1E933F6
;
Jerusalem related virus
COM EXE LOW HIGH
50B8C50050CBFC062E8C0631002E8C0639002E8C063D002E8C
;
648 Virus
COM
FC8BF281C60A00BF0001B90300F3A48BF2B430CD213C007503E9C701
;
DATACRIME 1280 Virus
COM
8B36010183EE038BC63D00007503E90201
;
DATACRIME 1168 Virus
COM
8B36010183EE038BC63D00007503E9FE00
;
DATACRIME II Virus
COM EXE
5E81EE030183FE00742A2E8A94
;
Lehigh Virus
COM
505380FC4B740880FC4E7403E977018BDA807F013A75058A07EB07
;
405 Virus
COM EXE
B8000026A2490226A24B0226A28B0250B419CD2126A24902B4470401
;
3066 Virus
COM EXE
7106E82806B419CD2189B451018184510184088C8C5301
;
Zero-Bug (Palette) Virus
COM
5A45CD602EC606250601902E803E2606
;
Fu Manchu A Virus
COM EXE
72454D484F72
;
Fu Manchu (2086) B Virus
COM EXE
8ED0BC200950B8230250CBFC06
;
Icelandic/Saratoga Virus
COM EXE
A3030003D8438EC333F633FF0E1FB9D007
;
Icelandic/Saratoga II Virus
COM EXE
26C6067F03FFB452CD212E8C066D02268B47FE8EC026030603004040
;
Friday the 13th Virus
COM EXE
1E8BECC746100001E80000582DD700B104D3E88CCB03C32D100050
;
SYSLOCK Virus
COM EXE
D1E98AE18AC13306140031044646E2F25E5958C3
;
2930 Virus
COM EXE
2906E8E005B419CD218884E300E8CE048A95E2000E1F7509
;
HAHAHA Virus
COM
2A546869732046696C6520486173204265656E20496E66656374656420427920
;
VACSINA Virus
COM EXE
DA012E890E0800B8014380E1FECD2173
;
VACSINA EXE2COM conversion
COM EXE
03C8894FFB8B0E160103C8894FF78B0E1001894FF98B
;
Vienna "A" (DOS 62) Virus
COM EXE
8BFE81C71F008BDE81C61F00
;
Vienna "B" (DOS 62) Virus
COM EXE
8BFE83C71F908BDE83C61F90
;
2730 Virus
COM EXE
9177917AA4B7570056000000
;
Nichols Virus
BOOT
DD0DDF0FDD0FFF0A000ABA00
;
Golden Gate Virus - version C
BOOT
A717800FADBDAD5507173384
;
Golden Gate Virus version C2
BOOT
A717DDAFF001233907173385
;
Ohio Virus
BOOT
B106D3E08EC0BE007C33FFB90410FCF3A406B8000450
;
Sylvia Virus
COM EXE
8D36030133C933C0AC3C1A7404
;
Lisbon 648 Virus
COM
2FCD21895C00908C44029007BA5F009001F2B41A
;
Ghost Virus - COM version
COM
F281C60A00BF0001B90300F3A48BF2B430CD213C007503E9C601
;
Ghost virus - BOOT modifier
BOOT
7D83EA247211800EF77D0156579090905F5E8026F77DFE
;
dBASE Virus
COM
FB750A86E09DCFE9CE06E9810381FF0AFB742E3D004B
;
867 Virus
COM
D681C2050033C9B44FCD2173EF
;
Sunday Virus
COM EXE
C80510008ED0BC5D0650B8C40050CBFC062E8C063100
;
SURIV3 Virus
COM EXE
4F0026A0FE032EA2510026C706FC03F3A526C606FE03CB58
;
Alabama Virus
COM EXE
C606F900013CD375062EC606F90000BB40008EDB33DB8A4717240C3C0C7541
;
Dark Avenger Virus
COM EXE
49CD21BBFFFFB448CD2181EBE700727B8CC1F913CB
;
Mix 1 Virus
COM EXE
2933C08EC02680261704
;
Mix 1B Virus
COM EXE
2733C08EC02680261704
;
Yankee Doodle 2885 Virus
COM EXE
9F83C4049E7303E97A0233C933
;
Yankee Doodle 2772 Virus
COM EXE
9F83C4049E7303E9F002B8004233C933
;
PingPong/286 Virus
BOOT
7D807426BEBE81B90400807C0401740C807C04047406
;
Disk Killer Virus (OGRE)
BOOT
D2F7361A0088163F01A34101C3A14101
;
DATACRIME IIb Virus
COM EXE
2E8A0732C2D0CA2E880743E2F3
;
Twelve Tricks Trojan Dropper
COM EXE
BE640231944201D1C24E79F7
;
Twelve Tricks Trojan
BOOT
8CC88ED0BC007C8BF48EC08ED850
;
4th Bulgarian (V512) Virus
COM EXE
30CD21BE04008EDE80FC1EC5440872
;
EDV Virus
BOOT
DB8ED8C7078118813F8118740D2D00103D00B875ECB800A8
;
765 virus
COM
EF408EC70E1FB90004FCBF0000F3A481EC0004
;
Do Nothing virus
COM
C21ECD707219A36F02B442B0028B1E6F02B90000
;
OROPAX virus
COM
8200C7069C007D098C0E9E00C7068400EE088C0E8600FB2E803E070100
;
W13 family virus
COM
D681C60000FCB90300BF0001F3A48BFAB430CD213C007503
;
4096 Virus
COM EXE
875EECFCC383C30381FBCC0272E95BE8890AE421
;
Devil's Dance virus
COM
AD03F3A426C706000003015E1E068CC048
;
The 9800:0000 (1554) virus
COM EXE
9B00FFFF7203A39B00A19B003DFFFF741FB000
;
The VCOMM virus
EXE
7D02B440CD21E83E00A19B02A33602A19D02A334021E
;
SURIV Virus 1.01
COM
81F9C407721B81FA0104
;
SURIV Virus 2.01
EXE
81F9C407722881FA0104
;
KHETAPUNK (1392) Virus
COM EXE
2F01C3E80700E83A00E86600C3BF0001A10301
;
Companion (AIDSII,8064) Virus
COM EXE
5589E581EC0202BFCA050E57BF3E011E57
;
XA1 Virus (Tannenbaum)
COM
FA8BEC5832C08946028146002800
;
Durban (SAT14) Virus
COM EXE
9D02A4E2FD06B82135CD211F891E5302
;
Pretoria (June14) Virus
COM
C933D2E85BFFE81200B440BA0001
;
Boot record zapped by XA1
BOOT
5B83C30D8CC88ED8E81500EBFE
;
Solano Virus
COM
175858BF00012E893E2101582EA32301
;
Virus-90
COM
C5030133C033DBB909008D561289D6030043
;
LDV Virus
BOOT
A406B8330150CBBB4C008B0F8B5702
;
Taiwan Virus
COM
B90800BEBC03BF00F8FCF3A4B9C4028B364801
;
December 24th Virus
EXE
6803A32400A16A03051000A31C0090
;
847 Virus
COM
4FBA5F02CD217202EBA0BA8000B41A
;
V2000 (EDDIE 2) Virus
COM EXE
B413CD2F5A1F2E8994A7072E8C9CA9072E
;
Anarkia Virus
COM EXE
5C02B82125CD218E063100268E062C0033FFB9FF7F
;
VP Virus
COM
290332E43A062A037503E94902403D
;
PSQR
COM EXE
A526C606FE03CB580510008EC00E1FB9
;
Shake Virus
COM
5E50E800005EB80342CD213D34217503
;
Libert Virus
COM EXE
93E8CD0072C2BB13012E813F4D5A7505
;
Anti-Pascal I Virus
COM
33D2B80242CD21507230B9*2908D940601B440CD217222
;
Anti-Pascal II Virus
COM
1F3B06070174??50B000E8C0FFB440BA00018B0E??01CD21
;
PtrSc Virus
BOOT
DBB801038A365F01B90100CD6DE824005A595F5E5B
;
FORM Virus
BOOT
B9FF00FCF3A506B89A0050BBFE01B80102
;
ITAVIR Virus
COM EXE
9B00908A16D70B80FA02741B1E52B41CCD218A075A
;
333 Virus
COM
9452028BFAB90300CD21803DE97405E87E00F8
333 Virus variant
COM
EE0B018BACA00181C503018D94A20133C9B44ECD21727A
;
Prudent Virus
EXE
2F040175D00E0E1F07BED3042BC92E8A0446410AC0
;
VIRDEM Virus
COM
B200B40ECD21B43B8D16DF03CD21EB4C90B43B8D16DF03
;
HalloEchen Virus
COM EXE
4B00C7065B005555BA4900C706FB003000E8A1FEFF064A01
;
1971 Virus
COM EXE
B7003B445B7219B8907EE8C800B80835CD21895C5D
;
FISH(6) Virus
COM EXE
8F06DB0E2E8326DB0EFE2E803EDA0E0075112EFF36DB0E
;
Mother Fish (Whale) Virus
LOW HIGH
252E890E64255B2E8B0783C3025389C132ED2E302743E2FA
;
537 Virus
COM EXE
8A0789D3B90200B600CD26
;
541 Virus
COM EXE
8A078BDAB90200B600CD26
;
FILLER Virus
BOOT
26813F5224740BCD13
;
Armagedon Virus
COM
3DDADA7503E999000E1F
;
Joshi Virus
BOOT
022D2100BF0000BE007C03F003F8B979012BC8
;
Stoned/2 Virus
BOOT
120AD2750E33C08ED8A03F04A8017503E80700
;
MicroDot Virus
BOOT
010000C706D9010800C606DB0102B9040051
;
Zapper Virus
BOOT
FC02721780FC04731222D2750E33C08ED8A03F04A8017503
;
1253 Virus
BOOT COM
CA03562D751726813ECC03314C750E36C7068001000036
;
Nothing-2 Virus
COM
C21ECD707219A36F00B442B0028B1E6F00B90000
;
Taiwan-2 virus
COM
B90800BEDF03BF00F8FCF3A4B9E7028B364001
;
v1024 Virus
COM EXE
4A8EC233FFB943008B55022BD13BD0723CFA26294D03895502
;
Sunday/2 virus
COM EXE
C80510008ED0BCBE0650B8C40050CBFC062E8C063100
;
Yankee-Go-Home Virus
EXE
D80E1FBE370881EE030103F38904BE390881EE03
;
JoJo-1701 Virus
COM
6DB42CCD2180FD13720AB8CD20A3000153E9C702
;
Slowdown Virus
COM EXE
DE909081C61B00B990062E8034
;
sVIR (S for stupid) Virus
EXE
E788261900A11D00A32100A11B00A32300C7061B000000
;
Staff Virus
COM
E80AFFBA8F02E820FFE801FFB80057CD215152B000
;
1624 Virus
EXE
DE058CD80E1FBEE60681EE030103F38904BEE80681EE030103F3
;
FLASH Virus
COM EXE
4ACD218CDA03D3428EC2B455CD2156BF000183EE080E1FB9D002
;
ANTHRAX Virus
EXE COM BOOT
A58ED8BA270451535052CB8EC1B104BEB00583C60EAD3C80
;
Ambulance Virus
COM
BDF0FFBA0000B91000E83F0042E2FAE81600E87B00
;
Fellow Virus
EXE COM
FB039C0650EA0000000033C08ED88F0600008F060200FB
;
News Flash Virus
COM
B43BCD21463B36ED027CE1803EF00200740AB8BA0250
;
Plastique (Invader) Virus
EXE COM BOOT
1304B106D3E08ED8833E400EFE751AB8540F1E
;
Dark Avenger 3 Virus
COM EXE
49CD21*5CD2181EBE700727B8CC1F913CB
;
Flip Virus COM/EXE
COM EXE
0EBB*21FB9*2B2??81C1*2EB
;
Flip Virus - RAM Resident
LOW HIGH
505152B402CD1A80FD1075
;
Flip Virus BOOT
BOOT
FBB80300E81F0006B8420050B8C007
;
MIRROR Virus
COM EXE
CD215A59B80157CD21B43ECD21B82135CD21
;
Monxla (Time) Virus
LOW COM
B42ACD2180FA0D7530B42CCD2180FA3C
;
DisCom Virus
COM EXE
6B008CC88ED88EC0B43FCD21498BFABE0500F3A67507B43E
;
Suomi Virus
COM
DDBFA80390EB03*38B87EE03EB02*281C34400EB04*43101EB03
;
Polimer Virus
COM
8B0E6C018CD80500108ED8B440CD21
;
3445 Virus
COM EXE
5983E91F8CC8*5F7E303C183D200
;
TP06VIR Virus
COM
7A75772E833E1200069073922EA10C002EA3DD042E
;
TP16VIR Virus
COM
7A7403E98F002E803E16001073852E8A0E17002EA11000
;
TP23VIR
COM EXE
7A7406E98C00E9A201B417F6061B00027402FEC438262200
;
TP24VIR variant
COM EXE
7A7406E98C00E99601B4??F606??00027402FEC43826
;
TP41VIR variant
COM EXE
7A75*300807E00007507F606??000274014039060200
;
DataLock Virus
COM EXE
680001C3B4BECD213D3412C31EA12C00508CD8488ED8812E
;
Black Monday
EXE COM
AC009C0650EA0000000033C08ED88F0602008F060000FB
;
Murphy Virus
COM EXE
4BCD217203E9??015E568BFE33C0501FC4064C002E
;
5120 Virus
COM EXE
FBA10C002EA30001A10E002EA302018C1E2200
;
Victor Virus
COM EXE LOW HIGH
BCF308B42CCD2189167200B42CCD218ACA80E10FD3067200
;
Aircop Virus
BOOT
DD2EFF2EC001530EE8B1FF0EBB4C00E8ADFF5BCD12
;
Marti Bros Virus
BOOT
FA8CC88ED88ED0BC00F0FBE82700FA31C08ED8A113042D0700
;
V512X variant
COM LOW HIGH
CF8EC33B158E1D8B154A8EDA8BF18BD7B128F3A58EDB
;
July13 Virus
EXE
A012003490BE1200B9B1042E300446E2FA
;
1381 Virus
EXE
3FB91C008B1E27008D160900CD217211813E1B004D5A7409A11700
;
V627 Virus
COM
2FCD21891C8C440207BA5F009003D6B41ACD210656
;
VHP623 Virus
COM
2FCD21891C8C4402B82435CD21899C8F008C84910007B82425
;
VHP435
COM
5B83EB18FC8D37BF0001B90300F3A48BF3558BEC83EC7C
;
648 Virus Variant
COM
A5A58BF3B44E8D5690B103EB168A46EA241F3C1F740B836EEE0A
;
VHP348 virus
COM
5BBF00015750FC8D77FAA5A48BF38DAFD001B82435CD21
;
V345 Virus
COM
3FCD21055901902EA30F01813E5B014956741633C98BD1B80042
;
V299
COM
3FCD21052B012EA30F01813E2D014956742533C98BD1B80042
;
V277 Virus
COM
3FCD210515012EA30F01813E1701554D741633C98BD1B80042
;
;----- 30 possible mutants from the Whale virus -----
;
Whale Mutant #1
COM EXE
2907E2FA5B59EB2A5BFC53C30E1FE8F7FF81EBA323B9C111
;
Whale Mutant #2
COM EXE
371083C301E2F8585B5956BE6625F8FF14F85E43E82900
;
Whale Mutant #3
COM EXE
37261383C303E2F78BCB598BD959B460EB1D56E80200
;
Whale Mutant #4
COM EXE
3786F283C301E2F55AFB5B59FF166625E803004033DE
;
Whale Mutant #5
COM EXE
37964083C303E2F78CC0588BD859B450EB1E56FDE80200
;
Whale Mutant #6
COM EXE
49434975F7FF3666258F0699255B59EB03E82F00FF16
;
Whale Mutant #7
COM EXE
4983C30249C35AE8F4FF742EEBF9520E1FE8230081EA
;
Whale Mutant #8
COM EXE
49F61F83C30249C35DE8F4FF7430EBF9550EF81FE82300
;
Whale Mutant #9
COM EXE
5B415956BE6625FF14F85E42505A90E80100F85B81EB9F23
;
Whale Mutant #10
COM EXE
5B5955FF3666255D3EFFD55DE80000B984235B81EBB623
;
Whale Mutant #11
COM EXE
5B59B440E8BA01EB0C5B530E1FC3E82A0075FBEBEBE8F1FF
;
Whale Mutant #12
COM EXE
5BB44059E8BA01EB0C5B0E1F53C3E8290075FBEBEBE8F1FF
;
Whale Mutant #13
COM EXE
67254EFF14E8020033DE81F676185B5E81EB9F23B98523
;
Whale Mutant #14
COM EXE
852381EBA923FE0F43E2FB558BEB81C58E0033C03E807E0001
;
Whale Mutant #15
COM EXE
91FF166625EBEE5BB985230E81EB9F231F8A47FFFEC8
;
Whale Mutant #16
COM EXE
9383EB1DB9C3118A072847FF4B4BE2F7803E3324017416
;
Whale Mutant #17
COM EXE
93B9C31183EB1E8A170057FF4BF54BE2F6803E3324017415
;
Whale Mutant #18
COM EXE
CA8EDAE80300D7EBF65A81EA9D23F987DAB98A2CF881F10F0F
;
Whale Mutant #19
COM EXE
D7585B59FF166625E80300BB01565B81EB9F23B93489
;
Whale Mutant #20
COM EXE
DB1F81C361DCE81E00BA02008137060403DAE2F881C38D00
;
Whale Mutant #21
COM EXE
DB1F81C361DCE81F00B8020081379A239001C3E2F781C38D00
;
Whale Mutant #22
COM EXE
DB5B81EB9F23E81E00B802008137380101C3E2F881C38D00
;
Whale Mutant #23
COM EXE
DC5901CB0EB9C4111FFEC943812FFE0043E2F85689DE81C68D00
;
Whale Mutant #24
COM EXE
DC5958935891B43FFEC4E8810158EBD28CCB8EDB5A52C3
;
Whale Mutant #25
COM EXE
DCB986230E33C81F8037E801C32BC875F781C38F00FE0F
;
Whale Mutant #26
COM EXE
DCB9C1118B0743430107E2FA81C39200807F010174E106
;
Whale Mutant #27
COM EXE
DDEB2AE80100C359BB61DC01CB0EB9C3101FFEC5290F
;
Whale Mutant #28
COM EXE
DFE82B0087D381C361DCB9C311E8E0FFF6063324FE74E1
;
Whale Mutant #29
COM EXE
E6FF75FB585BFB59FF3666258F069A25FF169A25E80000
;
Whale Mutant #30
COM EXE
F9595B87CBE8B501EB078CC88ED8E80200EBF7582D9C23
; ----- 3 additional Whale mutants
Whale Mutant #31
COM EXE
FE0743E2FB5B59FF166625E800000E1F5B81EB9F23B985
;
Whale Mutant #32
COM EXE
FF16662590E800009C9D0E50581F265B240581EB9F2324
;
Whale Mutant #33
COM EXE
E8000095930E93951FFC5B161781EB9F23FC36B988239C802F03F8
;
Choinka or Monxla Virus
COM
B90080F2AEB90400ACAE75EEE2FA
;
Kukac Virus
COM
83EE03BAC10281EA000103F28B1C8B4C02
;
9800-2 Virus
COM EXE HIGH
83EE03BA860103F28B1C8B4C02
;
555 Virus
COM EXE
884600C60600004DB92300290E
;
Turbo 448 Virus
COM LOW
B80242B900008BD1E81F00BA0001B9C001B440E81400
;
Akuku Virus
COM EXE
89540433D2B97603B440CD2172608BD683C214B440B90400CD21
;
Attention Virus
COM
31D2B440CD218BD1B979010E1FB440CD21
;
Bebe Virus
COM
B8004233C933D28B1E1C00CD21B4408D160000B90E00
;
Best Wishes
COM
B8004231C931D2E84100B440C7C2CA045981C1CA03E83300
;
Destructor V4.00 Virus
COM EXE
BAA204E8CFFD72CBE858FF2EC7460C00012E81660E00002E8166030000
;
Dir Virus
COM
B4402E8B1E7D03B90600BA9503CD21B802422E8B1E7D0331C931D2CD21
;
Hybryd 1.0 Virus
COM
B440B91A058BD681EA8D02CD21??505683EE51908BFEB99202
;
Hymn Virus
COM EXE
33D2B9490790B440E877FE722733C875238BD1B80042E869FE
;
Int 13 Virus
COM EXE
B80242B9FFFF8BD1CD9EB43FB2538BFAF7D9CD9E
;
Justice Virus
COM
B440B9DA049C0EE870FC723881FEDDDD750A2EC7063D000155EB0F
;
Kamikaze Virus
EXE
BAEB008EDA8C063E0033ED8BC4051300
;
Kemerovo Virus
COM
BA0100B80242CD2172D15A5283EA04B90001B440CD21
;
LoveChild Virus
COM EXE
FA813D4D5A751A2EF6066C040675121E0E1F52BA7602B94000CD21
;
Lozinsky (AidsTest) Virus
COM
B90100BAC900CD217303E988002EA0B7032E3806C900747DB80242
;
MG Virus
COM
B440B9F401BA0102CDFF7213B8004231D28BCACDFF
;
MGTU Virus
COM
B4408D0E0D028D1600012BCA8BD581C20001CD21B440B904008D160901
;
Nina
COM
A1030053062D40008BD8B44ACD21B448BB3F00CD21
;
Red Diavolyata
COM
B440B93E030E1F33D2CD21FA5A1F7200B43ECD21FA
;
Russian Mirror Virus
COM
2EA3BE015B53B9E201BA0000B440CD21B800425B53B90000BA0000CD21
;
Sentinel
COM EXE
C47EE226C745100242C47EE231C02689450CC47EE231C02689450A
;
Stone'90 Virus
COM
B440B9C1038BD681EAFA02CD2172283DC1037523B80042B90000
;
SVC 3.1 Virus
COM EXE
33D2B92804B80040E84CFE3D2804751833C933D2B80042E83DFE
;
SVC 4.0 Virus
COM EXE
33D2B99906B80040E8F7FD72203D9906751B33C933D2B80042E8E6FD
;
Sverdlov Virus
COM EXE
B80042BA040333C9CD21B90026BA0404B440CD21B43ECD21
;
USSR 516
COM
B80242E8FFFEA3A900B90402B440E8F4FE722E2BC8752A
;
USSR 600
COM
B44051BB58038A0734BB880743E2F7595B53BA5803CD21
;
USSR 707
COM
B8004233C933D2E8A100B440B903008BD783C217E89400
;
USSR 948
COM EXE
8B4C04B80042CD212BD28BCEB440CD215A59B80157CD21
;
USSR 1049
COM EXE
B440EB02B43FE8090072023BC1C332C0B4422E8B1E3E00
;
USSR 2144
COM EXE
C43F50268B05D1E83598122E038415005883C304E2EA2EC684B70030
;
V-311 Virus
COM
B80157B9705A8B55FACD21B43ECD21B801435932ED8BD7CD21
;
V-644 Virus
COM
B440B984028BD681C21901CD21721D3D84027518B8004233C9
;
V-696 Virus
COM
BA0001B9B802B440CD2159880EB5031F33C933D2B80042CD21
;
V-704
COM
2E8B0EB20083E10F83C1058CC88ED833D2B80040CD217234
;
V-905
EXE
8B161200F6D63AD674B4B8024233C933D2CD21
;
V-1600
COM EXE
E81CFD72EF50B91000F7F15052B940068D940001B440E806FD
;
V-23693 Virus
COM
B440B9050089F281C28A00CD21EB62B43FB90300BA0A009003D6CD21
;
Voronezh 2.01 Virus
COM EXE
31C9B800425B53CD218B0E58078D164007B440CD21
;
Fake virus
COM
BE8128BF0001B90300A4E2FDB80000
;
646 Virus
COM
B440B986028BD681EAF701CD21721F3D8602751AB80042
;
1067 Virus
COM EXE
B80242E88C00B440B92B0490BA0001CD217214
;
2480 Virus
COM
BED70101FE81C603018904B4408BD781C20301B9B009CD21
;
Carioca Virus
COM
B490CD2180FC017513B905002E8B360301BF0001
;
Christmas in Japan Virus
COM
53B4408B8E040481C158028BD581C20005CD21
;
Crazy Eddie
COM EXE
B80242CCB440CC33D2B80042CC8BD6B118B440CC
;
Guppy Virus
COM
B8024233D233C9CD2197B440B19889F283EA40CD21
;
Nobock (440) Virus
COM
B80242CD218D95CC09B9B80190B440CD215A59
;
Protector (CSSR) Virus
COM
83C24AB83D00CD217303EB3990
;
Scotts Valley Virus
COM EXE
5E8BDE909081C63200B912082E
;
Telecom
COM EXE
B20CB9740E03FD8A1D80C32E32D8881DB66047E2F2
;
Tiny Family Virus
COM
3D004B75??5053**B8023D
;
Tiny (163) Virus
COM
8984AB01B4408D940501B9A300CD217215
;
V651 (Eddie 3) Virus
COM EXE
B440CD2172F52BC875F18BD1B80042CD2172E8A1A002
;
VFSI (Happy Day) Virus
COM
588BD0350F0005020003C88CD8488ED8B80040CD215A59B80157CD21
;
VP Virus
COM
E2B97D03CD218CC28EDAB457B0018B1E20038B0EDC028B16DE02CD21
;
Vriest Virus
COM
8BD82EFE0E260251521E0E1FB440B90005BA0001C70627020000CD21
;
Wisconsin Virus
COM
B4402E8E1E2B012E8B1E31018BCF33D2CD21
;
Zero Hunt Virus
COM
5BB80057CD215152061FB44089E933D2CD215A59B80157CD21
;
; DO NOT DISTRIBUTE MODIFIED COPIES OF THIS FILE!
;This file carries a sanity check. Do NOT change the checksum! Add your own
;info BELOW the cheksum line at the bottom of this file.
;TITCV B609