VBD (The Virus Boot Detector) v2.6 User documentation (English doc) Copyright © 1992, 1993, 1994 Cheveau Frédéric. Member of the SHI Antivirus group. All rights reserved. S.H.A.R.E.W.A.R.E Release (26.02.94).Old version: v2.5a (16.09.93). INTRODUCTION ~~~~~~~~~~~~ VBD is a multi-purpose virus killer able to find and remove any type of virus. It can also learn or analyse new types of bootblocks. VBD has a personal bank (within the main program) that contains more than 800 known programs, and optionally uses a learn file (found in the 'S' directory). ADVERTISEMENTS ~~~~~~~~~~~~~~ VBD Vx.y is Copyright 1992-93-94 by F.CHEVEAU - All Rights Reserved. VBD v2.6 is a SHAREWARE program! The unregistered version is freely distributable on condition that all files mentioned in the DISTRIBUTION are copied with the main program. No modification to the program, docs or any other part of the distribution may be made at all!! VBD v2.6 is protected against any type of modifications. PD Collectors like Fred Fish, DPAT etc. are allowed to include the unregistered version of VBD v2.6 in their catalogue under the same conditions. If you use VBD v2.6 frequently I invite you to register yourself. You only have to fill the "registration form" (See the 'Register' File) and to send your donation of at least: 50 Francs or US$8 or 20 DM to the following address... - CHEVEAU Frederic, - 8 Passage des grillons, - 66000 Perpignan, - France. Then you'll become a registered user of VBD and you'll receive your own version, with some new functions that are not available in the unregistered version. To receive updated versions you will only have to send me a disk with a stamped, self-addressed envelope, so you'll receive each new update free! VBD can't be sold or exchanged for cash or any type of payment without permission of the author. VBD v2.6 has been successfully tested on the following Amigas: - A500 Kick v1.2 (Ram 512 Ko) - A500 Kick v1.3 (Ram 1 Meg) - A500+ Kick v2.0 (Ram 1 Meg) - A1200 Kick v3.0 (Ram 2 Meg) - A1200 Kick v3.0 (Ram 2 Meg) HD 250 Meg Fast:6 MB - A2000 Kick v2.0 (Ram 2 Meg) HD 40 Meg - A4000 Kick v3.0 (Ram 16 Meg) HD 200 Meg FPU 68882 Author: Cheveau Frédéric. First Help Coding: Carretero Frédéric, Capdevilla JC. Graphics: Chauve Thomas. Greetings to: Chevaillier Frank, Chesnot Jérôme, Eric Løvendahl Sorensen (SHI) for his help. You can contact me in France via 'MINITEL' on the: 36.14 RTEL1 or 36.15 RTEL Bal 'BouFFtou' You can also contact me at the following address: Cheveau Frédéric, 8 Passage des Grillons, 66000 Perpignan, France. ABOUT SAFE HEX INTERNATIONAL ~~~~~~~~~~~~~~~~~~~~~~~~~~~~ If you know a virus programmer you can get a reward of $1000 for supplying his name and address. The fact is that the law punishes data crime very severely. (5 years in jail in most countries). We are an international group with more than 600 members who have started trying to stop the spread of viruses. Let me give you some examples: 1. Our motto is: "Safe Hex", who dares do anything else today?". 2. A virus bank containing more than 1800 Amiga and PC viruses used for supporting good shareware anti virus programs. 3. We help people to get money back lost by virus infection. 4. We write articles about virus problems for about 20 computer magazines worldwide. 5. We release the newest and the best virus killers around from about 25 well-known programmers worldwide. 6. We have more than 35 PC and Amiga "Virus Centres" worldwide where you can get free virus help by phoning our "Hotline", and the newest killers translated into your own language at very little cost. 7. Of course we think you can see how important your support is too for the global anti-virus fight worldwide, (please remember to send new viruses). For example the following programs already use the SHI anti-virus.libraries: * Virus Checker by Johan Veldthuis * Virus Scanner by Gabriele Greco * DMS by ParCon Software * D-Copy by Stefan Bernbo * XCopy from April 93 Cachet Software (commercial) * Fides Professional by John Lohmeyer * Fides Checker by John Lohmeyer * Xtruder BBS virus killer by Martin Wulffeld * MT-Copy by Gert-Jan Strik For more information contact: SAFE HEX INTERNATIONAL (Please send 2 "Coupons-Response Erik Løvendahl Sørensen International" and a self- Snaphanavej 10 addressed envelope if you want 4720 Præstø information about SHI by letter). Denmark Phone: + 45 55 99 25 12 Fax: + 45 55 99 34 98 VBD FEATURES ~~~~~~~~~~~~ - Written in 100% Assembler for faster running. - User-friendly (Mouse, Gadgets, Menus, Keyboard!). - GUI (Graphical User Interface). - Works with Reqtools.library (©Nico François). - Can be configured with preferences (Save function for Prefs). - Can be personalised with your own samples. - Evolutionary structure with the 'Learn Menu' (Learns new boots). - Detect some unknown viruses that are not recognised nowadays. - Can recognise more than 800 different programs. - Automatic virus detection by analysing the whole disk. - Analyse bootblock function to detect unknown viruses (Expert System). - Reproduction counters showed (when it's possible!). - Complete memory scanning and persistent clean memory test. - May execute bootblocks without needed to reboot your Amiga. - Able to destroy viruses on disks, boots, and memory. - Configuration Amiga and current status function implemented. - Help gadget to explain the main functions on-line. - Display ASCII or hexadecimal bootblock. - Can Disable Trackdisk.device when executing bootblock loaders. - Possibility of aborting action in each requester. - French and English documentation (you read it!). - Multitasking supported when running from the CLI. - Iconify function. REQUIREMENTS ~~~~~~~~~~~~ VBD v2.6 runs on any type of Amiga (Kickstart 1.2 or greater). You need the reqtools.library (Thanks to Nico Francois) to get the most from VBD, but you can use VBD without it (the Load and Save functions, Palette and EZ_Requesters will not available). UPDATES ~~~~~~~ To have the last version of VBD, see explanations in the 'UPDATES' file, or if you don't have this file you can have the last version of VBD in the DP or simply by writing to me. HOW TO BECOME A REGISTERED USER ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ If you frequently use VBD v2.6, I invite you to register yourself. You only have to fill in the "registration form" (See the 'Register' File) and to send your donation with check or international money order. No more stuff needed! INSTALL VBD ON YOUR HD ~~~~~~~~~~~~~~~~~~~~~~ VBD v2.6 is very easy to install, here is what you have to do : To install VBD on your HD, you must use the 'INSTALL' icon, or install yourself all the needed files on your HD. So, you must copy VBD main program to your favourite directory (Automatic installation of VBD does not provide it!). Copy the latest version of the reqtools.library (©Nico François) to your 'Libs' directory. To run Powerfully, the following files are needed: - Reqtools.library - © NicoFrançois (Directory 'libs') - VBD.lea (Directory 's') - VBD.configuration (Directory 's') - VBD.boot.spl (Directory 's') - VBD.unknown.spl (Directory 's') - VBD.virus.spl (Directory 's') - VBD_v2.6 (The main program... in your favourite directory) THE VBD ARCHIVE ~~~~~~~~~~~~~~~ Normally your have the 'VBD' package with the following files... S (dir) VBD.lea (VBD's Learn-File) VBD.configuration (VBD's Configuration) VBD.boot.spl (Sample Boot 'Ok') VBD.unknown.spl (Sample Boot 'Unknown') VBD.virus.spl (Sample 'Virus') Startup-sequence Libs (dir) arp.library (No comments) req.library reqtools.library icon.library Devs (dir) system-configuration (No comments) Bootblock (dir) (Some bootblocks) Bootvirus (dir) (Some Bootvirus ONLY TO TEST VBD) Versions (dir) VBD_v1.0 (Previous version of VBD) VBD_v1.1 VBD_v1.2 VBD_v1.3a VBD_v1.4 VBD_v1.5 VBD_v1.6 VBD_v1.7 VBD_v2.0 VBD_v2.1 ROM_Report (dir) ROM.doc (A little util that is able to ROM_Report.s find and save on disk your ROM_Source.s Amiga configuration. ROM_v1.2 Color (Redefine screen colours) Color.info Dir Install (Installation script of VBD) Install.info Register (How to register) Register.info Updates (How to receive updates) Updates.info VBD.English.doc (What you are reading now!!!) VBD.doc (The same thing, but in French) VBD_v2.6 (VBD itself) VBD_v2.6.info (His icon!!! he he) HOW TO RUN VBD ? ~~~~~~~~~~~~~~~~ VBD v2.6 runs either from CLI or WORKBENCH. When you run VBD from the CLI, you don't need to close the CLI afterwards because VBD declares its own process and doesn't block the CLI. NOTE: ~~~~~ AND FOR GUYS THAT HAVEN'T UNDERSTOOD YET, VBD IS AN ANTIVIRUS !!! *************************************************** ********** ************ ********** HOW TO USE VBD ************ ********** ************ *************************************************** VBD is the most powerful Antivirus for detecting bootblocks and bootviruses. This version is able to detect more than 800 programs (viruses, bootblocks, resident programs), and in only 70Kb of code (who can make better ???). VBD is coded 100% in assembler for maximum speed, efficiency, and smaller executable code. VBD correctly supports multitasking by creating is own processes, so you can run it with a CLI line command and parameters or by clicking on its icon via Workbench. You can iconify VBD when running it from the CLI by adding the parameter '-I' after the name. Example: BY adding this line in your Startup-sequence before the 'Loadwb' command. 'VBD_v2.6 -I' VBD will appear iconified when your Amiga boots. When VBD is iconified it performs the same activities as when you are under the GUI. It doesn't sleep but stays ready and will halt the system and display the GUI when it finds a virus on an inserted disk, or in memory, or simply if a main vector has been captured by a resident program. SOME EXAMPLES OF CONFIGURATIONS ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ Beginner Configuration: _/ Play Samples Keep Iconify Pos _/ Show Requesters _/ Auto Save Learnfile _/ Skip Bootloader1 _/ Show Boot in ASCII _/ Check Mem Regularly Professional Configuration: Play Samples _/ Keep Iconify Pos Show Requesters _/ Auto Save Learnfile Skip Bootloader _/ Show Boot in ASCII Check Mem Regularly ************************************************* ********** ************ ********** GADGETS DESCRIPTION ************ ********** ************ ************************************************* ^^^^^^^^^^^^ ^ QUIT ^ ^^^^^^^^^^^^ Quit VBD. All data will be lost in memory if you forgot to save it before quitting VBD. If you have created a Learnfile, or simply added a new bootblock to the list, VBD will try to save the new learnfile in the 'S' directory (with the name 'VBD.lea') before it quits. ^^^^^^^^^^^^^^^^^^^^ ^ ANALYSE BOOT ^ ^^^^^^^^^^^^^^^^^^^^ Probably the most interesting function of VBD. This function tries to analyse the current bootblock using an 'Expert System' method. First, VBD displays the total length of boot, the length of code and the length of data. Then it tries to analyse data and code in the boot and display actions that it finds (if there is any) and the offset where VBD found it. Then, VBD calculates the different probabilities that the boot is a virus, a virus protector, a loader, a utility bootblock, an intro, or a harmless bootblock, and displays its results with a histogram. This analysis function comes to the right conclusion in 90% of cases. The diagnostic can be altered or simply wrong by a miss of informations bootblock, or simply if the virus creator has included analysis protection in his virus (encrypted viruses, useless functions, no direct vectors captured...). ^^^^^^^^^^^^^^^^^^^^^^ ^ READ BOOTBLOCK ^ ^^^^^^^^^^^^^^^^^^^^^^ Loads a disk bootblock in memory buffer. You can select all the available drives that are connected to your Amiga. The bootblock is read and displayed in the main window in ASCII form. If the bootblock can't be read (Wrong disk format, or damaged disk), a reqtools requester will appear and inform you that the bootblock can't be read. So the previous buffer will be displayed. ^^^^^^^^^^^^^^^^^^^^^^^ ^ WRITE BOOTBLOCK ^ ^^^^^^^^^^^^^^^^^^^^^^^ Writes to disk the current bootblock displayed in the main window. The old bootblock that was on disk will be removed. With this method you can destroy a bootvirus on disk. ^^^^^^^^^^^^^^^^^^^^^^^^^ ^ EXECUTE BOOTBLOCK ^ ^^^^^^^^^^^^^^^^^^^^^^^^^ You can execute the Bootblock that VBD has in memory (The thing displayed on the screen!!!). So you don't need to reboot your Amiga to see the Bootblock! Be Careful!!! If your Bootblock is a Virus, don't do it!!! The Virus Will be in memory and could attack your Amiga. If the Bootblock is a Loader (The Boot of a Demo for example) then you can't return to VBD and Workbench. The demo will run normally, as if you had booted from its disk. Some bootblocks may crash the system (Bad code!!!) with Gurus, Bugs, Altered screens etc... It's not VBD's fault!!! Blame the Bootblock coder who badly coded his boot (no memory allocation, copy boot itself on a physical address or other coding error). ^^^^^^^^^^^^^^^^^^^^^^ ^ LOAD BOOTBLOCK ^ ^^^^^^^^^^^^^^^^^^^^^^ Load a bootblock file and display it on the main screen. So, you can install it on a disk if you want. (don't do It with Viruses !!!) ^^^^^^^^^^^^^^^^^^^^^^ ^ SAVE BOOTBLOCK ^ ^^^^^^^^^^^^^^^^^^^^^^ Save a bootblock as a file-bootblock on disk. Use this to archive your bootblocks. ^^^^^^^^^^^^^^^^^^^ ^ SHOW BUFFER ^ ^^^^^^^^^^^^^^^^^^^ Displays the current bootblock (The one in the buffer). ^^^^^^^^^^^^^^^^^^^^ ^ CHECK MEMORY ^ ^^^^^^^^^^^^^^^^^^^^ This is in reality a complete memory checking function that has various parts. VBD tests Amiga standard libraries and their offsets functions. VBD verifies that each offset has a pointer in ROM, otherwise it could be a resident program that captures this offset, or the inner workings of the Amiga system (it captures some functions too!!!), or... a Virus! Some viruses use library offsets to stay resident or carry out their damage (animations, format disk!!! Fuck!!!). VBD detects different Kickstart versions and adapts itself to compare offsets (no operations needed). Some conflicts have been detected with some Kickstart switchers or non- original ROMs (every offset can be altered!!!). Afterwards, VBD tests the main Amiga vectors that are usually captured by Viruses (resident programs can use them too!!!) Please have a look at vectors like "Cool Capture" and "KicktagPtr", Viruses usually use them. Finally, VBD scans memory to search for recognised resident programs (displays their names and versions if possible), and searches for any known viruses in memory (displays name, reproduction counter, entry point in memory, and eventually if it's a boot virus, its beginning). VBD scans memory to search for new viruses (unrecognised programs that capture some important vectors) and displays their "Entry point". ^^^^^^^^^^^^^^^^^^^^^ ^ RESET VECTORS ^ ^^^^^^^^^^^^^^^^^^^^^ VBD tries to reset the main memory vectors by setting the right values in the right vector with the right Kickstart. This function cannot kill every Virus in memory (The Lamer Exterminator virus, the FAST Virus and some more are resistant to this reset). So, the best method is to perform a HARD RESET for your Amiga, or better still... switch off your Amiga for 30 seconds or more. No virus can survive with the power off for so long. ^^^^^^^^^^^^^^^^^^^^^^ ^ DISPLAY STATUS ^ ^^^^^^^^^^^^^^^^^^^^^^ Shows your Amiga status (memory size, CPU type, co-processors, disk name, and some statistics on check). ^^^^^^^^^^^^^^^^^^^^^^^^^^ ^ DF0, DF1, DF2, DF3 ^ ^^^^^^^^^^^^^^^^^^^^^^^^^^ Use this to Select the drive that you want to check. Devices that don't exist are not available. ^^^^^^^^^^^^^^^^^^^ ^ MOVE SCREEN ^ ^^^^^^^^^^^^^^^^^^^ Scroll vertically the window on screen (why not!!!). ^^^^^^^^^^^^^^^^^^ ^ AUTO CHECK ^ ^^^^^^^^^^^^^^^^^^ Enable/Disable automatic check when a disk is inserted. The disk must be inserted in the selected drive. ^^^^^^^^^^^^^^^^^^^^^^^ ^ CHECK BOOTBLOCK ^ ^^^^^^^^^^^^^^^^^^^^^^^ Enable/Disable the bootblock check. (Only for "Autocheck Option"). ^^^^^^^^^^^^^^^^^^^^^ ^ CHECK STARTUP ^ ^^^^^^^^^^^^^^^^^^^^^ Enable/Disable the checking of files that are in your Startup-Sequence. Your Startup-Sequence will be scanned, and every file checked. (Only for "Autocheck Option"). ^^^^^^^^^^^^^^^^^^^^^^^ ^ CHECK VALIDATOR ^ ^^^^^^^^^^^^^^^^^^^^^^^ Enable/Disable the checking of Disk-Validator. If the Disk-Validator is not found, this option will be skipped. (Only for "Autocheck Option"). *********************************************** ********** ************ ********** DESCRIPTION OF MENUS ************ ********** ************ *********************************************** =========== Main Menu =========== INFO ~~~~ Displays some info on VBD and the number of detected programs like Bootblocks, Bootviruses, Fileviruses and so on. HELP ~~~~ Enable/Disable Help Option. Some info is displayed on every gadget when this function is "On". Switch "Off" if you want to use VBD correctly. ABOUT V.B.D v2.5 ~~~~~~~~~~~~~~~~ Displays info and some greetings about SHI organisation, TWINFACE association, and everybody who helped me to improve VBD. Some info on how to pay the SHAREWARE fee is displayed too. ICONIFY ~~~~~~~ Change VBD main window into a small Workbench window that you can put where you want on your screen. When VBD is iconified, it automatically tests every disk that is inserted in your drive. VBD stays iconified while all disks are "Ok". When a Virus is found, VBD opens itself on the main screen and displays the virus (if it's a Bootvirus). QUIT ~~~~ Quit VBD. If you have any learned Bootblocks, they'll automatically be saved (If you have set the "Save Learn File Automatically" Option). ============= Show Lists Menu ============= BOOTBLOCKS ~~~~~~~~~~ Displays list of recognised Bootblocks. BOOTVIRUS ~~~~~~~~~ Displays list of recognised Bootviruses. FILEVIRUS ~~~~~~~~~ Displays list of recognised Fileviruses. RESIDENTS ~~~~~~~~~ Displays list of recognised Resident programs. If you have any resident program not recognised by VBD, please send it to me... Thanx !!! ============ Preferences Menu ============= LOAD CONFIGURATION ~~~~~~~~~~~~~~~~~~ Load the VBD Configuration. (Normally, the configuration is loaded at the beginning of VBD). SAVE CONFIGURATION ~~~~~~~~~~~~~~~~~~ Save VBD Configuration in your "Sys:S Directory". SET PALETTE ~~~~~~~~~~~ Define Colour Palette (colours are saved with the VBD configuration). PLAY SAMPLES ~~~~~~~~~~~~ When VBD finds a Bootblock, a Virus, or an Unknown Bootblock, VBD plays a sample (You can play your own samples by replacing the three ".SPL" files that are on your S directory). Samples must be in the IFF-8SVX format (standard on Amiga), and can't be longer than the original samples provided. KEEP ICONIFY POS ~~~~~~~~~~~~~~~~ Memorise the last iconify position and use it when VBD is iconified again (Position is saved with VBD configuration). SHOW REQUESTERS ~~~~~~~~~~~~~~~ Displays Alert or information requesters if this option is selected. AUTO SAVE LEARNFILE ~~~~~~~~~~~~~~~~~~~ Automatically saves the "Learn file" when you quit VBD. SKIP BOOTLOADER ~~~~~~~~~~~~~~~ A special option!!! When you Execute a Bootblock, if it's a loader, the demo runs and you cannot go back to Workbench. If you select this option, and if the loader uses the Trackdisk.device, then the actual loading of the demo will be skipped when you execute the Bootblock. SHOW BOOT IN ASCII ~~~~~~~~~~~~~~~~~~ Display Bootblock in ASCII or in Hexadecimal format. Hexadecimal format is displayed over two pages. CHECK MEM REGULARLY ~~~~~~~~~~~~~~~~~~ Regularly and automatically checks the memory and informs you if a resident program tries to install itself in memory. So, you can choose to "Reset Vectors" or make a "Hard Reset" or "Ignore" this requester. ============== Learn Menu ================ LEARN BOOT ~~~~~~~~~~ With this option VBD is able to learn an unknown bootblock. You must specify a name for this new bootblock, and VBD appends it to its list. The list can be displayed with the VIEW LEARN LIST Menu item. When you learn a new bootblock, VBD tries to update and save the list as the name "VBD.lea" in your current "S" directory. Now, the bootblock will be detected as the name that you have given. The Extension "LEA" appears on the right of the name. VIEW LEARN LIST ~~~~~~~~~~~~~~~ Displays list of learned bootblocks. DELETE LEARN BOOT ~~~~~~~~~~~~~~~~~ Deletes a learned bootblock from the list. Renome un bootblock parmis la liste des boots appris par VBD. You must specify the number of the bootblock that you want to delete. Show the list to know the bootblock number. RENAME BOOT ~~~~~~~~~~~ Rename a bootblock (Only Available in the list of learned Bootblocks). You must specify the number of the bootblock that you want to Rename. A requester will show the old name, and invite you to input a new name. Length of new name cannot be greater than the length of old name. SAVE LEARN FILE ~~~~~~~~~~~~~~~ Save the list to disk (Directory "S"). Use it when List is "memory full", it reallocates memory for the list. ============= The General Menu =============== SHOW VBD BOOT ~~~~~~~~~~~~~ Displays and loads into the buffer the VBD v2.6 Bootblock that you can install on your disks. This Bootblock is a combined antivirus and utility boot. NB: Before installing a bootblock on a disk, make sure that the bootblock corresponds with the disk format (An OFS Bootblock cannot be installed on an FFS disk!!!). SHOW DOS BOOT ~~~~~~~~~~~~~ Displays an OFS version 1.2-1.3 Bootblock. SHOW UNINSTALLED BOOT ~~~~~~~~~~~~~~~~~~~~~ Displays an Uninstalled Bootblock. SHOW CLEARED BOOT ~~~~~~~~~~~~~~~~~ Displays a Cleared Bootblock. ************************************************ ********** ************ ********** KNOWN BUGS ************ ********** ************ ************************************************ -> There can be some problems when you save VBD's configuration file if you have a special Kickstart (ROM switcher). VBD's configuration file is not compatible with older versions of the configuration file. -> When VBD is iconified, and when the CPU is not free,you cannot open the main window (for example, when you crunch something with Power Packer, it sets itself a task priority that doesn't permit VBD to run). -> The 'Setpatch' for Workbench v2.1 seems to be incompatible with VBD. It causes a 'Recoverable Alert' at beginning. --------------------------------------------------------- -- ATTENTION!!! VBD is protected against all modifications to its data (fuck lamers who change greetings or author's name). Try to change data if you want to see what happens!!! Avis aux Amateurs !!! --------------------------------------------------------- -- HOT THANKS ~~~~~~~~~~ NB I want to greet the following guys for their help during the creation of VBD, for their Viruses or Bootblocks that they sent to me, or to test VBD... Thanks !!! - Beaumont Christophe as 'Heretic' (Cartel) - Billiet Lionel as 'French Lio' - Bresson Philippe as 'Space Rake' (Convulsions) - Bunel Maxence as 'Syrion' (Intrix) - Capdevilla Jean C as 'Nasty boy' (Albedo Daemons) - Carretero Frédéric as 'The Torturer' - Chesnot Jérôme - Chevaillier Frank as 'Frank 128' - Coste Bruno as 'Scooby' - Delantes Mathias as 'HCl' - Derosiaux Patrick - Ferton Jean-Philippe as 'Suicidal' - Gwen Heliou as 'Biohazard' - Julien as 'Julest' - Llobregat Eric as 'Styrax' - Lluis Gilbert - Løvendahl Soerensen Erik - leader of the SHI Association. - Maini Jean-Luc as 'JLM' - Michael Thomas as 'Solo' (ex Corpse) - Mignon David as 'Disc One' - Mutel Alexandre as 'Ace' (Iris) - Nico François for his marvellous © ReqTools.library. - Proud Boris as 'Cosmiq' - Revillard Stéphane as 'Skillion' (STLS) - Sarda Jérôme as 'Tyrann' - Soleil Olivier as 'GooFY' (Iris) - Villemin Frédéric as 'No.6' If you find any unknown viruses, please send them to me or to Erik Loevendahl Soerensen (SHI Association). Cheveau Frederic, 8 Passage des Grillons, 66000 Perpignan, France. Phone: 68.50.77.15 SAFE HEX INTERNATIONAL Erik Loevendahl Soerensen Snaphanevej 10 DK-4720 Præstø Denmark Phone: + 45 55 99 25 12 Fax : + 45 55 99 34 98 Amigalement ...... --------------------------------------------------------------------- * Appendix 1: ------------- Different type of virus that actually exist on Amiga. __ Real Bootvirus / __ Bootvirus _____ Mutant Bootvirus (Clones) / \ / \__ Pseudo Virus Virus __/ \ |___ Link-Virus (Infect files) | |___ File-Virus (The file is the Virus) | |___ Disk-Validator Virus (Replace Disk-Validator program) | |___ Trojan Horse Virus (No reproduction available for us)