Changes in version 3.09 Version 3.09 includes a number of significant changes. We have added heuristics to detect new mass-mailing worms, like Loveletter or the recent Kournikova worm (VBS/VBSWG.Jmm), without requiring a update of the definition file. As those heuristics are fairly recent, and have not yet been extensively tested, the chance of false positives is somewhat higher than normally. In order to disable just the worm heuristics, while leaving other heuristics operating normally, the switch /NOWORM may be used. We would also like to obtain any files incorrectly reported as possible mass-mailing programs, so we can fine-tune our heuristics. We have added scanning of encrypted script viruses (in .VBE and JSE files). PIF viruses are now handled better than before, and are reported properly with their names, instead of just as "a destructive program". We have added detection of viruses in CAB, LZH and UU-encoded files. Other recent changes include the scanning for viruses in PHP and Visio files. The total number of viruses and Trojans that are now detected by the program is now above 53600.