|
|
|  |
|
|
|
|
F-Secure Virus Information Pages: Xtac

|
|
|
| Radar |
 |
|
|
|
Summary
|
| Xtac stays resident in memory and infects COM and EXE files when they are executed. COMMAND.COM is infected by overwriting an unused area. |
|
|
|
Detailed Description
|
Sometimes the virus deletes files with the following extensions: - COM
- EXE
- SYS
- BAT
- OBJ
- OVR
- OVL
- INI
- CFG
- TPU
- HLP
- TPL
- BGI
- CHR
Xtac contains the following unencrypted internal text: good news! you have justbeen smitten by XTAC - lyndon siao, usc-tc Xtac was reported to be in the wild in the USA in January 1996. |
|
|
|
F-Secure Corporation |
|
|
|
|
|
Last Modified: January 01, 2006
|
|
|
|
|