Virus Database


Andry.2900

Description Andry.2900
It is a dangerous memory resident parasitic virus. It hooks INT 9, 21h and writes itself to the end of COM and EXE files that are executed. After infecting a file the virus attempts to infect the COMMAND.COM file in the root directory on the current disk.
The virus has errors and infects files two and more times. It also installs itself in the memory so many times as infected programs are executed. As a result in some time DOS memory will be occupied by virus copy and the system will not load any application.
By hooking INT 9 (keyboard) the virus depending "eats" each 100th keystroke. On March 1st the virus displays the message:
+----------------------------------------------------------------+
| xxxxx xxx xx xxxxx xxxxxx xx xx |
| xx xx xx x xx xx x xx xx xx xx |
| xxxxxxx xx x xx xx xx xxxxxx xx |
| xx xx xx x xx xx x xx xx xx |
| xx xx xx xxx xxxxx xx xx xx |
| |
| xxxxx xx xx xxxxxx xx xxxxx xxxxxxxx xx xxxxx xxx xx |
| xx xx xx xx xx xx xx xx xx xx xx xx x xx |
| xx xxxxxxx xxxxxx xx xxxxx xx xx xxxxxxx xx x xx |
| xx xx xx xx xx xx xx xx xx xx xx xx x xx |
| xxxxx xx xx xx xx xx xxxxx xx xx xx xx xx xxx |
+----------------------------------------------------------------+
The virus then waits for March 2nd and displays:
ANDRY CHRISTIAN VIRUS WILL BE -->
ACTIVE NEXT YEAR !
The virus also contains the text string:
~INA (ž) 1997 Hackware Technology Research~

Check other viruses! Be aware! Use Antiviral Software

Genesis.217

Description Genesis.217

These are harmless not memory resident parasitic viruses. They search for COM-files and write themselves to their ends. They contain the internal text strings:
"Genesis.217": [Genesis 1.0]Thor*.COM
"Genesis.226": [Genesis 2.0]THOR*.COM
"Genesis.238": [Genesis 3.0]*THOR.COM
"Genesis.295": [GENESIS 4.0]*THOR.COM

Genrat.785

Description Genrat.785

It is a very dangerous memory resident parasitic virus. It hooks INT 21h and writes itself to the end of COM and EXE files that are executed. On writing to files, depending on its generation, the virus corrupts the data buffer. The virus contains the text string:
GENRATN5

Home

Viruses from A to Z
0-9 A B Ñ D E F G H I J
K L M N O P Q R S T
U V W X Y Z



Åkerfeldt Mureri
ByggrÅdgivare L E Bengtsson Ab
Urvaco I Varberg Ef
Szia Aktiebolag
K.p.m. StÄdservice

    Copyright © 2005 Virus-Database.com
© 2005 Virus-Database.com