In this section you´ll find other interesting utilities to manage virii.

 


AVList

This program is used to get a list of the detected virii by F-Prot, AVP and Dr. Solomon. (DOS versions). Then, when you have the log files, you can know what you miss from each AV. Coded by Jack Liu.

Note: AVList is released within VS2000.


AVP Virus Encyclopedia

AVP Virus Encyclopedia in HTML format. A lot of info very well commented about virii.

AVPVE


Bulk

This utility was coded by Poltergeist. It copies the files from a directory into a directory named BULK.VIR. The files are renamed to their CRC32.

Note: Bulk is released within VS2000.


Crcheck

CrCheck: Generates and validates CRC checksums (32 bit). Antivirus program, VERY fast. Wildcards, creation, verification and saving of checksum files supported. PGP and batchfile support included!

Crcheck 4.20[crc420.zip - MISSING]


Ghost

The hell of good utility to use in a virii replicating machine. You can make an image of your HD and when you need it you can restore the system in a few minutes.

Ghost 5.1b


Hacker´s View

Hacker´s View is a file/viewer/disassembler/editor all in one.

Hacker´s View 6.16


IDA Pro

IDA Pro is simply the world's most advanced disassembler. You can use it to disassm DOS virii.

IDA 3.84


Ralf Brown´s Interrupt List

The interrupt list is a comprehensive listing of interrupt calls, I/O ports, memory locations, far-call interfaces, and more for IBMPCs and compatible machines, both documented and undocumented. Over seven megabytes of information in ASCII text files!

R.B. Interrupt List release 60 part A part B part C part D part E part F part G

PCI device info program

DESQview-specific excerpt


RoseGoat

ROSEGOAT produces executable victim files (COM/EXE), typically called "sacrificial goat files". These output files are used as baits for virii. ROSEGOAT produces a batch file TESTIT.BAT to run the goat files. With tons of options for creating different types of goat files. Great to make bait files.

RoseGoat 1.42


Soft-Ice

Soft-Ice from Numega Technologies is the best debugger in the world. You can use it to debug Windows virii.

S-Ice 4.05 disk 1 disk 2 disk 3 disk 4 (Win9x)

S-Ice 4.05 disk 1 disk 2 disk 3 disk 4 disk 5 (WinNT)


StripLog

This virus utility is designed to be used as a complement for VS2000. This program process NEWXXX.LOG files and then you can manage the virii from that file in some ways, as moving or copying files, removing identifications and even paths. Even you can create directories based on the names that AVs give to virii.

Note: StripLog is released within VS2000.


Super Tracer

The SUPER TRACER Version 2.00 (C)oded 1997-98 by LiuTaoTao. Traces every exe/com program. Interprets the program code. Does not need Int1/3, DR1-DR8 or Protected Mode to run. Complex Breakpoints possible. Logs every Opcode a program uses while it is interpreted. You should try it if you use tools like S/Ice, TD, CUP3, GTR. Very secure tracing virii.

Super Tracer 2.52


Tally's VirusKeeper Sytem

Very nice program to manage your virii collection. It has a lot of functions. Coded by Tally.

Virus Keeper


TbWeeder

TbWeeder is a utility to weed out duplicated files. With this program you can check new incoming virii for duplicates and delete them to avoid scan virii you already have in your collection.

Note: TbWeeder is released within VS2000.


Turbo Assembler

Turbo Assembler from Borland is the best program to compile ASM source codes.

Tasm 5.0 (1/3) (2/3) (3/3) (patch)


TeleDisk

This utility saves into a file a disk. You can use this program to save into a file an infected disk and then manage it in a easy way. You can make a disk using the file too. Great to manage Boot virii!!!

Note: TeleDisk is released within VS2000.


VDAT

VDAT for Windows (HTML) - "The Viral Database". Is VSUM not enough, or incomplete for your "viral needs"?. Try VDAT for everything "that VSUM does not cover". A collection of informative files on tools, engines, people, laws and more, all in hypertext/HTML format. A must to have!!!

VDAT


VGREP

VGrep is a system produced in an attempt to clear up some of the confusion surrounding the naming of virii. It works by running scanners across a large collection of virus-infected files, and parsing their output into a simple text database.

VGREP


Win32Dasm

It's a great disassembler. Supports Windows 32Bit PE, 32Bit LE, 6Bit NE format and other formats. Integrated debugger, exported functions, imported functions and string data references,...

W32DASM 8.93


Win32 Programmer's Reference

Here you have an API reference guide pack for Win32. Great to code Win32 virii.

W32 Programmer´s Reference (1/3) (2/3) (3/3)