Threat Description

Beliers

Details

Aliases: Beliers
Category: Malware
Type:
Platform: W32

Summary


X97M/Beliers is a Excel macro virus.



Removal


Automatic action

Once detected, the F-Secure security product will automatically disinfect the suspect file by either deleting it or renaming it.

More

Detailed instructions for F-Secure security products are available in the documentation found in the Downloads section of our Home - Global site.

You may also refer to the Knowledge Base on the F-Secure Community site for further assistance.



Technical Details



Variant:Beliers.A

When an infected workbook is opened or closed, X97M/Beliers infects all currently opened workbooks. It also infects a random number of workbooks that it can find from the "C:\Mes Documents" directory. This is the "My Documents" directory in the French Windows. If such directory can't be found, it will infect documents in the current directory.

If the last two digits of the current year is 99, in some systems depending on the current locale settings, the virus will attempt to add a link to the Netscape Navigator bookmarks file and create an internet shortcut to the "Favoris" (Favorites) directory pointing to a web site. The "Favoris" directory is used by the French version of Internet Explorer.





Technical Details:Sami Rautiainen, F-Secure


SUBMIT A SAMPLE

Suspect a file or URL was wrongly detected? Submit a sample to our Labs for analysis

Submit Now

Give And Get Advice

Give advice. Get advice. Share the knowledge on our free discussion forum.

Learn More