What's New in VirusScan for DOS v3.0.1 (3004) Copyright 1994-1997 by McAfee, Inc. All Rights Reserved. Thank you for using McAfee's VirusScan for DOS. This What's New file contains important information regarding the current version of this product. It is highly recommended that you read the entire document. McAfee welcomes your comments and suggestions. Please use the information provided in this file to contact us. ___________________ WHAT'S IN THIS FILE - New Features - Known Issues - Installation - Documentation - Frequently Asked Questions - Contact McAfee ____________ NEW FEATURES 1. VirusScan for DOS now provides the exceptional virus detection rates and fast scanning performance of the 3.0 engine series. VirusScan 3.0 offers users maximum defense against the newest threats to data. VirusScan 3.0 detects all virus types including Word and Excel macros, boot-sector infections, file, multi-partite, stealth, polymorphic and encrypted viruses. * ENHANCEMENTS * 1. Significantly increased Master Boot Record and Boot Sector virus detection and removal. 2. New and improved polymorphic detection. 3. VirusScan now detects and removes the LAROUX Excel macro virus. 4. VirusScan supports Microsoft Office97. * NEW VIRUSES DETECTED * This DAT file (3004) detects the following 537 new viruses: _5850 ABC.A AIWED.678 ALIEN.C ALLA (BOOT/MBR) ALLA.1325 ANTHRAX DROPPER ANTICAD DROPPER ANTICONCEPT.A APRIL1ST ARMADILLO.A ASH.270 DROPPER ATOM.G:DE ATOM.H AUSTRALIAN PARASITE.424 AVALANCHE.2908 BABY.A BABY.COMP.128 BAD BRAINS.554 BADBOY.B BADBOY.C BALU.A:DE BANDUNG.D BANDUNG.H BANDUNG.I BANDUNG.J BANDUNG.K BANDUNG.L BANDUNG.M BANDUNG.N BANDUNG.O BANDUNG.P BANDUNG.Q BANDUNG.R BANDUNG.S BANDUNG.T BISHOP.2855 BLEAH.A BLEAH.B BLEAH.C BOOM.B:DE BOX.A:TW BUG COMP.73 BURGER.560 DROPPER BURGER.560.AX BW.372 BW.372.DROPPER BW.VICK DROPPER CANCERBERO.1000.C CAP.A CAP.B CEEFOUR.A CHAOS.A CHEAP.828 CHINESE FISH DROPPER CIVIL WAR.2248:TPE CLOCK.E:DE CLOCK.F:DE CLOCK.G:DE CLOCK.H:DE CODE.1289 COLORS.C COLORS.F COLORS.G COLORS.H COLORS.I COLORS.J COLORS.K COLORS.L COLORS.M COLORS.N COLORS.O COLORS.P COLORS.Q COLORS.S COLORS.T COLORS.U COLORS.V COLORS.W COLORS.X COLORS.Y COLORS.Z COLORS.AA COLORS.AB COLORS.AC COLORS.AD COLORS.AE COLORS.AF COLORS.AG COLORS.AH COLORS.AI COLORS.AJ COMPA.4561 COMPA.4894 CONCEPT.C CONCEPT.J CONCEPT.L CONCEPT.M CONCEPT.N CONCEPT.P CONCEPT.T CONCEPT.U CONCEPT.W CONCEPT.X CONCEPT.Y CONCEPT.Z CONCEPT.AA CONCEPT.AB CONCEPT.AC CONCEPT.AD CONCEPT.AE CONCEPT.AF CONCEPT.AG CONCEPT.AH CONCEPT.AI DALIAN.1361 DANIEL.A DANIEL.B DANIEL.C DARK MANKO.764 DARK.A DARK_AVENGER.2000.H DATACRIME.1280.A DROPPER DAVE.A DELTA PLUS.1328 DELTA PLUS.1328 DEMON.4390 DIEG2.1586 DIVINA.E DJ11 DROPPER DOGGIE.B DOGGIE.C DOGGIE.D DZT.A DZT.B DZT.C EIGHT TUNES DROPPER EPIDEMIC.A:TW EQUALS.1448 ERASER.A:TW ERASER.B:TW ERASER.C:TW FALUS.1181 FELICES.1121 FIST.401 FRIDAY.A:DE FRODO.146 FURY.A:IT FUTURENOT.A GABLE.A GANGSTERZ.A GETIT.754 TROJAN GURU.1196 HELLGATE.A HELLIS.624 HELPER.A (TROJAN97) HELPER.B HIDER.A HIDOS DROPPER HLLC.4000 HLLC.4870 HLLC.5008 HLLC.5129 HLLC.10832 HLLC.14692 HLLC.CRAWEN.8516 HLLC.EVENBEEP.B HLLO.2162 HLLO.15788 HLLO.52480 HLLP.4080 HLLP.5153 HLLP.5667.A HLLP.5667.B HLLP.16470 HLLT.4400 HLLT.6988 HLLT.7234 HLLT.17408 HOMER.426 HYBRID.B HYBRID.C IMPOSTER.C IRISH.B IRISH.C IRISH.D IRISH.E IRISH.F IRISH.G IVP.1052 IVP.491 IVP.846 JOHNNY.A1 JOHNNY.B JOHNNY.D JOHNNY.E JOHNNY.E1 JOSHI DROPPER JTEMP.316 KAMPANA.3784 DROPPER KASZANA.1920 KATIELOU.894 KERRANG.A KHIZHNJAK.515 KILLPROT.B KLUBB W97M/KOMPU.A L-BOOT LEWD.4455 LION.996 LOOK.A:TW LOOK.B:TW LOOK.C:TW LUCIFER.1707 MADDOG.B MARKUS.5415 MAX.347 MDMA.B MDMA.F MDMA.G MEGADETH.3973:MTE MIND.A MINIMAL.A MINIMAL.B W97M/MINIMAL.C MINIMAL.D MIXX.570 MONSTER.217 MONSTER.323 MONSTER.327 MONSTER.535 MONSTER.536 MONSTER.538 MONSTER.570 MONSTER.572 MONSTER.577 MONSTER.578 MONSTER.579 MONSTER.580 MONSTER.581 MONSTER.582 MONSTER.583 MONSTER.584 MONSTER.594 MONSTER.596 MONSTER.598 MONSTER.599 MONSTER.600 MONSTER.601.A MONSTER.601.B MONSTER.602 MONSTER.603.A MONSTER.603.B MONSTER.604 MONSTER.605.A MONSTER.605.B MONSTER.607 MONSTER.614 MONSTER.622 MONSTER.633 MONSTER.638 MONSTER.640 MONSTER.641 MONSTER.642 MONSTER.643 MONSTER.645 MONSTER.657 MONSTER.661 MONSTER.662 MONSTER.664 MR TWISTER.209 MR TWISTER.12288 MUCK.B MUCK.C W97M/MUCK.D MUMMY.1489 MVDK1.A MVDK1.B NEVER ONE.442 NG.914 NICEDAY.C NICHOLS DROPPER NIKITA.A NJ-WMCVK1 NJ-WMCVK2.A NJ-WMCVK2.B NJ-WMDLK1.A NJ-WMDLK1.B NJ-WMDLK1.C NJ-WMDLK1.D NJ-WMDLK1.E NO-F.A NOMENKLATURA.1024.B NOMVIR.A:DE NOMVIR.B:DE NONDES.2328:TPE NOP.D NOP.E:DE NOP.F:DE NOPMN NPAD.C NPAD.E NPAD.F NPAD.M NPAD.N NPAD.O NPAD.P NPAD.Q NPAD.R NPAD.S NPAD.T NPAD.U NPAD.V NPAD.W NPAD.X NPAD.Y NPAD.Z NPAD.AA NPAD.AB NPAD.AC NPAD.AD NPAD.AE NPAD.AF NPAD.AG NPAD.AH NPAD.AI NPAD.AJ NPAD.AK NPAD.AL NPAD.AM NPAD.AN NPAD.AO NRLG.719 NUCLEAR.E NUCLEAR.F NUCLEAR.G OFFSPRING.1555 OLYMPIC.B:TW OUTLAW.A OUTLAW.B OUTLAW.C OVERKILL.1191 PANDANIA.3566 PARITY BOOT.X PHALCON DROPPER PHALCON.1117.B PHALCON.MINISTRY.1168 PHARDERA.D PHARDERA.E PHOENIX EVIL DROPPER PHOENIX.2000 DROPPER PIZELUN.3599 PMBS DROPPER POSSESSED.2446 PREDATOR.1072 DROPPER PS-MPC.326.B PS-MPC.444 PS-MPC.570 DROPPER PS-MPC.577 DROPPER PURCYST DROPPER PURPLE DROPPER PYTHON.1142 RANDOM.A (INTENDED) RANDY.3072.B RAPE.626 RAPI.E RAPI.E1 RAPI.E2 RAPI.F RAPI.F1 RAPI.F2 RAPI.G RAPI.G1 RAPI.H RAPI.H1 RAPI.H2 RAPI.I RAPI.I1 RAPI.I2 RAPI.J RAPI.J1 RAPI.J2 RAPI.K RAPI.K1 RAPI.K2 RAPI.L RAPI.L1 RAPI.L2 RAPI.M RAPI.M1 RAPI.M2 RAPI.N RAPI.O RAPI.O1 RAPI.O2 RAPI.P RAPI.Q RAPI.Q1 RAPI.Q2 RAPI.R2 RAPI.S2 RAPI.T RAPI.T1 RAPI.T2 RAPI.U2 RAPI.V2 RAPI.W2 RATS.A RATS.B RATS.C RUSTY.1423 SABOTAGER.3133 SCORPIO.1000 SETMD.A:TW SHAREFUN.A SHARK.1661 SHOWOFF.B SHOWOFF.C SHOWOFF.D SHOWOFF.E SHOWOFF.F SHOWOFF.G SHOWOFF.H SHOWOFF.I SHOWOFF.J SHOWOFF.K SHOWOFF.L SHOWOFF.M SHOWOFF.N SHOWOFF.O SHOWOFF.P SHOWOFF.Q SHOWOFF.S SHOWOFF.T SHOWOFF.U SHOWOFF.V SHOWOFF.W SHOWOFF.X SHOWOFF.Y SHOWOFF.Z SHOWOFF.AA SHOWOFF.AB SILICON-AVENGER.980 SILLYCR.131 SIMPLE.A SKAM.A SKELETON.673 SLAMSPED.101 SMILEY.A:DE SMILEY.B:DE SNICKERS.A SOVA.4060 SPANSKA.1120 SPIRAL.A SPLIT.4300 SQUISHER.238 DROPPER STEALTH BOOT.H STEALTH_BOOT.KOH.C SWITCHES.A SWORD.A TARGET.B:DE TELEPHONICA DROPPER TENTATRICKLE.10496 TESTDOT.A:TW THEATRE.B:TW THEATRE.C:TW TRASH.512 TRIVIAL.62 TWISTER.A TWISTER209.1632 TWNO.E:TW TWNO.F:TW TWNO.H:TW TWNO.I:TW TWNO.J:TW UGLY_JO UMB.1276 UMB.1760 UUCCKK.475 V2PX VAMPIRUS.1499 VCL.2037 VCL.641 DROPPER VIENNA.618 VIKING.DEC3 VIRDEM.1542 DROPPER WARPCOM TROJAN W97M/WAZZU.C WAZZU.AA WAZZU.AB WAZZU.AC WAZZU.AD WAZZU.AE WAZZU.AF WAZZU.AG WAZZU.AH WAZZU.AI WAZZU.AJ WAZZU.AK WAZZU.AL WAZZU.AM WAZZU.AN WAZZU.AO WAZZU.AP WAZZU.AQ WAZZU.AR WAZZU.AS WAZZU.AU WAZZU.AV WAZZU.AW WAZZU.AX WAZZU.AY WAZZU.AZ WAZZU.BA WAZZU.BB WAZZU.BC WAZZU.BD WAZZU.BE WAZZU.BF WAZZU.BG WAZZU.BH WAZZU.BI WAZZU.BJ WAZZU.BK WAZZU.BL WAZZU.BM WAZZU.BN WAZZU.BO WAZZU.BP WAZZU.BQ WIEDEROEFFNEN.A WPC_ALAEH.3161 XENIXOS.B:DE XTINY.264 YEAR_1992.1731.C ZERO.A:DE ZIPCRK *NEW VIRUSES REMOVED* This DAT file (3004) removes the following 393 new viruses: ABC.A AIWED.678 ALIEN.C ALLA (BOOT/MBR) ALLA.1325 ANTICONCEPT.A ARMADILLO.A ATOM.G:DE ATOM.H BABY.A BABY.COMP.128 BADBOY.B BADBOY.C BALU.A:DE BANDUNG.D BANDUNG.H BANDUNG.I BANDUNG.J BANDUNG.K BANDUNG.L BANDUNG.M BANDUNG.N BANDUNG.O BANDUNG.P BANDUNG.Q BANDUNG.R BANDUNG.S BANDUNG.T BLEAH.A BLEAH.B BLEAH.C BOOM.B:DE BOX.A:TW BW.372 CANCERBERO.1000.C CAP.A CAP.B CEEFOUR.A CHAOS.A CHEAP.828 CLOCK.E:DE CLOCK.F:DE CLOCK.G:DE CLOCK.H:DE COLORS.C COLORS.F COLORS.G COLORS.H COLORS.I COLORS.J COLORS.K COLORS.L COLORS.M COLORS.N COLORS.O COLORS.P COLORS.Q COLORS.S COLORS.T COLORS.U COLORS.V COLORS.W COLORS.X COLORS.Y COLORS.Z COLORS.AA COLORS.AB COLORS.AC COLORS.AD COLORS.AE COLORS.AF COLORS.AG COLORS.AH COLORS.AI COLORS.AJ COMPA.4561 COMPA.4894 CONCEPT.C CONCEPT.J CONCEPT.L CONCEPT.M CONCEPT.N CONCEPT.P CONCEPT.T CONCEPT.U CONCEPT.W CONCEPT.X CONCEPT.Y CONCEPT.Z CONCEPT.AA CONCEPT.AB CONCEPT.AC CONCEPT.AD CONCEPT.AE CONCEPT.AF CONCEPT.AG CONCEPT.AH CONCEPT.AI DANIEL.A DANIEL.B DANIEL.C DARK.A DARK_AVENGER.2000.H DAVE.A DELTA PLUS.1328 DIEG2.1586 DIVINA.E DOGGIE.B DOGGIE.C DOGGIE.D DZT.A DZT.B DZT.C EPIDEMIC.A:TW ERASER.A:TW ERASER.B:TW ERASER.C:TW FALUS.1181 FELICES.1121 FRIDAY.A:DE FURY.A:IT FUTURENOT.A GABLE.A GANGSTERZ.A GURU.1196 HELLGATE.A HELPER.B HIDER.A HLLC.CRAWEN.8516 HLLC.EVENBEEP.B HLLP.4080 HLLT.4400 HYBRID.B HYBRID.C IMPOSTER.C INVISIBLE_MAN.3223 IRISH.B IRISH.C IRISH.D IRISH.E IRISH.F IRISH.G IVP.1052 IVP.846 JERUSALEM.BUPT.1261 JOHNNY.A1 JOHNNY.B JOHNNY.D JOHNNY.E JOHNNY.E1 KERRANG.A KILLPROT.B W97M/KOMPU.A L-BOOT LION.996 LOOK.A:TW LOOK.B:TW LOOK.C:TW LUCIFER.1707 MADDOG.B MARKUS.5415 MARZIA.2048 MAX.347 MDMA.B MDMA.F MDMA.G MIND.A MING.CLME.1528 MINIMAL.A MINIMAL.B W97M/MINIMAL.C MINIMAL.D MUCK.B MUCK.C W97M/MUCK.D MVDK1.A MVDK1.B NICEDAY.C NIKITA.A NJ-WMCVK1 NJ-WMCVK1 NJ-WMCVK2.A NJ-WMCVK2.B NJ-WMDLK1.A NJ-WMDLK1.B NJ-WMDLK1.C NJ-WMDLK1.D NJ-WMDLK1.E NO-F.A NOMVIR.A:DE NOMVIR.B:DE NOP.D NOP.E:DE NOP.F:DE NOPMN NPAD.C NPAD.E NPAD.F NPAD.M NPAD.N NPAD.O NPAD.P NPAD.Q NPAD.R NPAD.S NPAD.T NPAD.U NPAD.V NPAD.W NPAD.X NPAD.Y NPAD.Z NPAD.AA NPAD.AB NPAD.AC NPAD.AD NPAD.AE NPAD.AF NPAD.AG NPAD.AH NPAD.AI NPAD.AJ NPAD.AK NPAD.AL NPAD.AM NPAD.AN NPAD.AO NUCLEAR.E NUCLEAR.F NUCLEAR.G OLYMPIC.B:TW OUTLAW.A OUTLAW.B OUTLAW.C PANDANIA.3566 PARITY BOOT.X PHALCON.MINISTRY.1168 PHARDERA.D PHARDERA.E POSSESSED.2446 RANDOM.A (INTENDED) RAPI.E RAPI.E1 RAPI.E2 RAPI.F RAPI.F1 RAPI.F2 RAPI.G RAPI.G1 RAPI.H RAPI.H1 RAPI.H2 RAPI.I RAPI.I1 RAPI.I2 RAPI.J RAPI.J1 RAPI.J2 RAPI.K RAPI.K1 RAPI.K2 RAPI.L RAPI.L1 RAPI.L2 RAPI.M RAPI.M1 RAPI.M2 RAPI.N RAPI.O RAPI.O1 RAPI.O2 RAPI.P RAPI.Q RAPI.Q1 RAPI.Q2 RAPI.R2 RAPI.S2 RAPI.T RAPI.T1 RAPI.T2 RAPI.U2 RAPI.V2 RAPI.W2 RATS.A RATS.B RATS.C RUSTY.1423 SCORPIO.1000 SETMD.A:TW SHAREFUN.A SHOWOFF.B SHOWOFF.C SHOWOFF.D SHOWOFF.E SHOWOFF.F SHOWOFF.G SHOWOFF.H SHOWOFF.I SHOWOFF.J SHOWOFF.K SHOWOFF.L SHOWOFF.M SHOWOFF.N SHOWOFF.O SHOWOFF.P SHOWOFF.Q SHOWOFF.S SHOWOFF.T SHOWOFF.U SHOWOFF.V SHOWOFF.W SHOWOFF.X SHOWOFF.Y SHOWOFF.Z SHOWOFF.AA SHOWOFF.AB SILLYCR.131 SIMPLE.A SKAM.A SKELETON.673 SMILEY.A:DE SMILEY.B:DE SNICKERS.A SOVA.4060 SPANSKA.1120 SPIRAL.A SPLIT.4300 STEALTH BOOT.H SWITCHES.A SWORD.A TARGET.B:DE TENTATRICKLE.10496 TESTDOT.A:TW THEATRE.B:TW THEATRE.C:TW TWISTER.A TWNO.E:TW TWNO.F:TW TWNO.H:TW TWNO.I:TW TWNO.J:TW UGLY_JO V2PX VIENNA.618 VIKING.DEC3 W97M/WAZZU.C WAZZU.AA WAZZU.AB WAZZU.AC WAZZU.AD WAZZU.AE WAZZU.AF WAZZU.AG WAZZU.AH WAZZU.AI WAZZU.AJ WAZZU.AK WAZZU.AL WAZZU.AM WAZZU.AN WAZZU.AO WAZZU.AP WAZZU.AQ WAZZU.AR WAZZU.AS WAZZU.AU WAZZU.AV WAZZU.AW WAZZU.AX WAZZU.AY WAZZU.AZ WAZZU.BA WAZZU.BB WAZZU.BC WAZZU.BD WAZZU.BE WAZZU.BF WAZZU.BG WAZZU.BH WAZZU.BI WAZZU.BJ WAZZU.BK WAZZU.BL WAZZU.BM WAZZU.BN WAZZU.BO WAZZU.BP WAZZU.BQ WIEDEROEFFNEN.A WPC_ALAEH.3161 XENIXOS.B:DE XTINY.264 ZERO.A:DE ____________ KNOWN ISSUES 1. Legitimate programs which write to the Master Boot Record of a disk, such as some disk security programs, may be identified by VirusScan as a "probable unknown boot sector virus." If this problem is encountered, use the /NODDA command-line switch. This prevents VirusScan from scanning the Master Boot Record of the disk. 2. This DAT file, 3004, is compatible with VirusScan's v3.0 engines only. This DAT file is not intended for use with the VirusScan v2.5x series. ____________ INSTALLATION * INSTALLING THE PRODUCT * Perform one of the following installation procedures depending on which version of VirusScan for DOS you want to install. 1. For the installable version of VirusScan for DOS, take the following steps: a. Execute the INSTALL.BAT program. b. Follow the on-screen instructions. By default, McAfee's installation program makes a directory on the hard disk drive named C:\MCAFEE\VIRUSCAN and copies the program files to that directory. The installation script adds the directory to the path statement in your AUTOEXEC.BAT file and adds two lines that reference the VShield program to provide on-access virus prevention. For the most complete virus protection, McAfee recommends using the /ANYACCESS switch. or 2. For the non-installable version of VirusScan for DOS, take the following steps: a. Make a directory on your hard disk drive. b. Copy the files to that directory. c. Add that directory to the path statement in your AUTOEXEC.BAT file. * PRIMARY PROGRAM FILES FOR VIRUSSCAN FOR DOS * Files located in the Install directory: ======================================= SCAN.EXE = VirusScan for DOS program README.1ST = McAfee information PACKING.LST = Packing list VALIDATE.EXE = Authenticity validation program SCAN.DAT = Virus scan definition data NAMES.DAT = Virus names definition data CLEAN.DAT = Virus clean definition data WHATSNEW.TXT = What's New document AGENTS.TXT = McAfee authorized agents * TESTING YOUR INSTALLATION * The Eicar Standard AntiVirus Test File is a combined effort by anti-virus vendors throughout the world to come up with one standard by which customers can verify their anti-virus installations. To test your installation, copy the following line into its own file and name it EICAR.COM. X5O!P%@AP[4\PZX54(P^)7CC)7}$EICAR-STANDARD-ANTIVIRUS-TEST-FILE!$H+H* When done, you will have a 69- or 70-byte file. When VirusScan is applied to this file, SCAN will report finding the EICAR-STANDARD-AV-TEST-FILE virus. It is important to know that THIS IS NOT A VIRUS. However, users often have the need to test that their installations function correctly. The anti-virus industry, through the European Institute for Computer Antivirus Research, has adopted this standard to facilitate this need. Please delete the file when installation testing is completed so unsuspecting users are not unnecessarily alarmed. * UNINSTALLING THE PRODUCT * Follow the instructions outlined below to uninstall the installable version of VirusScan for DOS. 1. Execute VSHIELD/REMOVE to remove VShield from memory, then remove the files from your hard drive and remove any lines in your AUTOEXEC.BAT file that call VShield. If an error message is displayed indicating that VShield could not be removed from memory, take the following step. 2. Edit your AUTOEXEC.BAT file and remove all lines that call VShield, then reboot your system. On restarting your system, VShield will not be loaded into memory and you can remove the files from your hard drive. Note: If the files are removed from your hard drive prior to removing VShield from memory, an error message will be displayed until you remove VShield from memory or restart your system. _____________ DOCUMENTATION For more information, refer to the VirusScan User's Guide, included on the CD-ROM versions of this program or available from McAfee's BBS and FTP site. This file is in Adobe Acrobat Portable Document Format (.PDF) and can be viewed using Adobe Acrobat Reader. This form of electronic documentation includes hypertext links and easy navigation to assist you in finding answers to questions about your McAfee product. Adobe Acrobat Reader is available on CD-ROM in the ACROREAD subdirectory. Adobe Acrobat Reader also can be downloaded from the World Wide Web at: http://www.adobe.com/Acrobat/readstep.html VirusScan documentation can be downloaded from McAfee's BBS or the World Wide Web at: http://www.McAfee.com or http://205.227.129.164 For more information on viruses and virus prevention, see the McAfee Virus Information Library, included on the CD-ROM version of this product or available from McAfee's BBS and FTP site. A ViaGrafix Interactive Anti-virus Training program also is available on the CD-ROM version, or can be purchased from the McAfee Web Site. __________________________ FREQUENTLY ASKED QUESTIONS Regularly updated lists of frequently asked questions about McAfee products also are available on McAfee's BBS, website, and CompuServe and AOL forums. Q: How do I enable McAfee's Centralized Alerting and Reporting option? A: VirusScan now supports Centralized Alerting and Reporting to a remote NetWare or Windows NT server running NetShield for Windows NT v2.5.3 and later or NetShield for NetWare v2.3.3 and later. To set up this option on your VirusScan client, use the /ALERTPATH option, where the is the path to the remote NetWare volume or NT directory. From this directory, NetShield can broadcast or compile the alerts and reports according to its established configuration. NOTE: The client must have write access to this location and the directory must contain the NetShield-supplied CENTALRT.TXT file. To send a complete alerting file identifying the system and user, establish the following environment variables or add them to the AUTOEXEC.BAT file. Set COMPUTERNAME= Set USERNAME= The alert file sent to the server is an .alr text file. Upon receipt of the alert file, NetShield NT or NetShield for NetWare sends an alert message to an administrator and/or appropriate personnel. Q: What can I do to scan my zip drive when VirusScan is unable to access it? A: If you are experiencing problems accessing your zip drive, go to the VirusScan directory, and type SCAN X: /NODDA (where X is the letter of your zip drive). Enabling this switch will allow you to access and scan your zip drive. Q: I have created my own Emergency diskette, how can I optimize it's performance? A: For optimal performance, create a CONFIG.SYS file on the boot diskette and add the following lines: [CONFIG.SYS] DEVICE=HIMEM.SYS DOS=HIGH Also, add the HIMEM.SYS file from the DOS directory to the boot diskette. Note: For detailed instructions on creating an Emergency diskette, refer to the instructions outlined in your online documentation. Q: What does McAfee recommend for systems that have low conventional memory? A: McAfee recommends using ScanPM for low memory environ- ments. ScanPM is a command-line scanner with a reduced conventional memory footprint, that operates in protected mode command-line environments. ScanPM is available for a free evaluation and can be downloaded from the online services listed below. Q: What is the difference between the VShield DOS TSR and VirusScan for DOS? A: #1 VShield installs itself in memory and stays resident in order to monitor your system for viral activity. If an infected program is executed or an infected boot sector is accessed, VShield will display a warning that a virus is present. A: #2 VirusScan for DOS is an on-demand scanner that allows you to perform a complete or partial scan of your computer at any time. VirusScan for DOS can run customized scans through a large set of command line switches. Q: How can I run VirusScan for DOS from a Netware login script without running out of memory? A: If you are having memory problems when trying to run VirusScan for DOS from a NetWare login script, take these steps to resolve the issue: 1. Rename LOGIN.EXE to LOGIN1.EXE and remove any references to VirusScan. 2. Create a batch file named LOGIN.BAT. 3. On the first line of the batch file, run your scan with whatever switches you want to include. 4. On the second line of the batch file, run LOGIN1.EXE. By taking these steps, you eliminate the problem of having LOGIN.EXE and SCAN.EXE in memory at the same time. This allows VirusScan for DOS to run and your login script to be processed without problems. Q: Can I clean the Master Boot Record (MBR) of a Windows NT file system (NTFS) formatted hard drive? A: Yes. Take these steps to clean the MBR. Boot the Windows NT computer from a virus-free DOS bootable (system) diskette. Then run VirusScan for DOS; SCAN C: /BOOT /CLEAN. This will clean the NTFS Master Boot Sector and allow Windows NT to successfully reboot from the hard disk drive. However, VirusScan for DOS will not be able to read the rest of the NTFS partition. After starting Windows NT, execute VirusScan for Windows NT to detect and clean Windows NT file infections. Q: Can I update VirusScan's data files to detect new viruses? A: Yes. If you have Internet access, you can download updated VirusScan data files from the McAfee Web Site, BBS, or other online resources. To download from the McAfee Web Site, follow these steps: 1. Go to the McAfee Web Site (http://www.mcafee.com or 205.227.129.164). 2. Select Update DAT File in the left hand column or frame. 3. Scroll down, and click Update Your DAT Files to update your virus definition files. 4. Data file updates are stored in a compressed form to reduce transmission time. Unzip the files into a temporary directory, then copy the files to the appropriate directory, replacing your old files. 5. Before performing any scans, shut down your computer, wait a few seconds, and turn it on again. If you need additional assistance with downloading, contact McAfee Download Support at (408) 988-3832. ______________ CONTACT McAFEE Contact McAfee's Customer Care department: 1. Corporate-licensed customers, call (408) 988-3832 Monday-Friday, 6:00 A.M. - 6:00 P.M. Pacific time Retail-licensed customers, call (972) 278-6100 Monday-Friday, 6:00 A.M. - 6:00 P.M. Pacific time 2. Fax (408) 970-9727 24-hour, Group III fax 3. Fax-back automated response system (408) 988-3034 24-hour fax Send correspondence to any of the following McAfee locations. McAfee Corporate Headquarters 2710 Walsh Avenue Santa Clara, CA 95051-0963 McAfee East Coast Office Jerral Center West 766 Shrewsbury Avenue Tinton Falls, NJ 07724-3298 McAfee Central Office 4099 McEwen Suites 500 and 700 Dallas, TX 75244 McAfee Canada 139 Main Street Suite 201 Unionville, Ontario Canada L3R2G6 McAfee Europe B.V. Gatwickstraat 25 1043 GL Amsterdam The Netherlands McAfee (UK) Ltd. Hayley House, London Road Bracknell, Berkshire RG12 2TH United Kingdom McAfee France S.A. 50 rue de Londres 75008 Paris France McAfee Deutschland GmbH Industriestrasse 1 D-82110 Germering Germany McAfee Japan KK 4F Toranomon Mori bldg. 33 3-8-21 Toranomon Minato-Ku Tokyo, 105 Japan Or, you can receive online assistance through any of the following resources: 1. Bulletin Board System: (408) 988-4004 24-hour US Robotics HST DS 2. Internet e-mail: support@mcafee.com 3. Internet FTP: ftp.mcafee.com or 205.227.129.168 4. World Wide Web: http://www.mcafee.com or http://205.227.129.164 5. America Online: keyword MCAFEE 6. CompuServe: GO MCAFEE 7. The Microsoft Network: GO MCAFEE Before contacting McAfee, please make note of the following information. When sending correspondence, please include the same details. - Program name and version number - Type and brand of your computer, hard drive, and any peripherals - Operating system type and version - Network name, operating system, and version - Contents of your AUTOEXEC.BAT, CONFIG.SYS, and system LOGIN script - Microsoft service pack, where applicable - Network card installed, where applicable - Modem manufacturer, model, and baud, where applicable - Relevant browsers/applications and version number, where applicable - Problem - Specific scenario where problem occurs - Conditions required to reproduce problem - Statement of whether problem is reproducible on demand - Your contact information: voice, fax, and e-mail Other general feedback is also appreciated. Documentation feedback is welcome. Send e-mail to documentation@cc.mcafee.com. * FOR ON-SITE TRAINING INFORMATION * Contact McAfee Customer Service at (800) 338-8754. * FOR PRODUCT UPGRADES * To make it easier for you to receive and use McAfee's products, we have established an Agents program to provide service, sales, and support for our products worldwide. For a listing of agents, see the file AGENTS.TXT, where applicable, or contact McAfee Customer Service for agents near you. * MCAFEE BETA SITE * Get pre-release software, including DAT files, through http://beta.mcafee.com/public/datafiles. You will have access to Public Beta and External Test Areas. Your feedback CAN make a difference.