Selected viruses, spyware, and other threats: sorted alphabetically
|
|
||||||||||||||||||||||||||||||||||
W97M/Thus.I |
W97M/Thus.I is a macro virus operating in the Microsoft Word 97 environment. It uses the "class" method of infection – it attacks the module "ThisDocument" which is present as a standard in each Word document or template. It attacks the global template normal.dot and Word documents. It is derived from W97M/Thus.A.
Upon opening an infected document W97M/Thus.I attacks the global template and the active document. After infecting the template the virus attacks all documents while they are being opened and closed as well as new documents. This variant differs from W97M/Thus.A in the fact that in addition to the text of the note 'Thus_001' it contains also a note with text 'Anti-Smyser’ which it uses for identification of infected documents.
It does not contain the routine which deletes files on the disk and apart from attacking documents it has no other function. In its body are contained also the following lines with commentaries in the code:
' This virus is an alteration of a virus which was
' designed to delete all files from one's C: drive on Dec 13th.
' This code is completely benign.
© 1992-2004 Eset s.r.o. All rights reserved. No part of this Encyclopedia may be reproduced, transmitted or used in any other way in any form or by any means without the prior permission.

