%%File: VIRS0742.TXT %%Name/Aliases: Syslock, Macrosoft %%Platform: PC/MS-DOS %%Type: Program., Encrypted/Stealth The virus actively hides., %%Disk Location: COM application., EXE application., COMMAND.COM. %%Features: Encrypted, Direct acting. %%Damage: Corrupts a program or overlay files., Corrupts a data file. %%Size: 3550-3560 bytes are appended on a paragraph boundary %%See Also: %%Notes: Spreads between .COM and .EXE files. It scans through data on the hard disk, changing the string "Microsoft" (in any mixture of upper and lower case) to "MACROSOFT". If the environment variable "SYSLOCK=@" is set, the virus will not infect. A variant of Advent. Microsoft changes to MACROSOFT v6-151: At least one anti-virus program can detect and remove Syslock.C and Syslock.D.