Ha!.1383
Description Ha!.1383
It is not a dangerous memory resident parasitic encrypted virus. It hooks INT 21h and writes itself to the end of COM and EXE files that are executed. The virus contains the text string: ha! version A
Every 8th day it also hooks INT 16h (keyboard) and exchanges the symbols '!' and Space when they are entered. Every 16th day this virus hooks INT 9 and when Alt-Ctrl-Del keys are pressed, the virus displays: version A
Check other viruses! Be aware! Use Antiviral Software
Rasek.1490
Description Rasek.1490
This is a dangerous memory resident multipartite encrypted virus. While executing an infected file it writes itself to the MBR of the hard drive and hooks INT 13h, 12h. By hooking INT 13h this virus releases the stealth mechanism on reading the infected MBR. It also writes a trojan program to the floppy disk boot sectors. That program erases the hard drive FAT while loading from that floppy. Sometimes the virus also erases the FAT on loading from infected MBR. By hooking INT 21h the virus infects COM and EXE files that are executed, it writes itself to the end of the files. The virus contains the text string "AND.COM" and does not infect the files that contains that string in their names (COMMAND.COM). The virus also contains the text strings: RaseK v2.0,from LA CORUÑA(SPAIN).Mar93
Rasek.1492
Description Rasek.1492
This is a dangerous memory resident multipartite encrypted virus. While executing an infected file it writes itself to the MBR of the hard drive and hooks INT 13h, 12h. By hooking INT 13h this virus releases the stealth mechanism on reading the infected MBR. It also writes a trojan program to the floppy disk boot sectors. That program erases the hard drive FAT while loading from that floppy. Sometimes the virus also erases the FAT on loading from infected MBR. By hooking INT 21h the virus infects COM and EXE files that are executed, it writes itself to the end of the files. The virus contains the text string "AND.COM" and does not infect the files that contains that string in their names (COMMAND.COM). The virus also contains the text strings: "RáseK" v3.1,from La Coruña(SPAIN).Ap93
|