Threat Description

Beliers

Details

Aliases:Beliers
Category: Malware
Type:
Platform: W32

Summary



X97M/Beliers is a Excel macro virus.



Removal


Automatic action

Once detected, the F-Secure security product will automatically disinfect the suspect file by either deleting it or renaming it.

More

You may wish to refer to the Support Community for further assistance. You also may also refer to General Removal Instructions for a general guide on alternative disinfection actions.



Technical Details




Variant:Beliers.A

When an infected workbook is opened or closed, X97M/Beliers infects all currently opened workbooks. It also infects a random number of workbooks that it can find from the "C:\Mes Documents" directory. This is the "My Documents" directory in the French Windows. If such directory can't be found, it will infect documents in the current directory.

If the last two digits of the current year is 99, in some systems depending on the current locale settings, the virus will attempt to add a link to the Netscape Navigator bookmarks file and create an internet shortcut to the "Favoris" (Favorites) directory pointing to a web site. The "Favoris" directory is used by the French version of Internet Explorer.





Technical Details: Sami Rautiainen, F-Secure


SUBMIT A SAMPLE

Suspect a file or URL was wrongly detected? Submit a sample to our Labs for analysis

Submit Now

Scan & clean your PC

F-Secure Online Scanner will scan and clean your PC in just a few minutes for free

Learn More