Virus Database


June8.1919

Description June8.1919

It is a very dangerous memory resident encrypted parasitic virus. It hooks INT 9, 1Ch, 21h and writes itself to the end of COM and EXE files that are opened or renamed. Under debugger, or on June 8th it erases disk sectors. When Alt-Ctrl-Del keys are pressed at the same time and depending on its counters the virus plays a (Chinese?) tune. The virus contains the text string:
EXECOM

Check other viruses! Be aware! Use Antiviral Software

HH.1024.b

Description HH.1024.b

This is a very dangerous memory resident parasitic virus. It hooks INT 21h and writes itself to the end of COM and EXE files that are executed or opened. On 11th of every month it erases the hard disk sectors. It contains the text string "HH" that is used as ID-word to identify already infected files.

Hi Family

Description Hi Family

These are memory resident parasitic viruses. Upon being executed, they decrease the DOS memory size (word at address 0000:0413), and install themselves into the memory by correcting the MCB blocks. Then they hook INT 21h, and write themselves to the end of EXE files that are executed. "Hi.378" infects COM files only.
The viruses contain the following text strings:
"Hi.460,512": Hi
"Hi.549": ACE OF BASE
"Hi.671": ACE OF BASE 2
"Hi.802": AOB 3

"Hi.378, 460," and "512" are harmless viruses, and do not manifest themselves in any way.
"Hi.549" hooks INT 17h, and disables printing. On October 31st, it corrupts CMOS memory and deletes files that are executed.
"Hi.671" hooks INT 17h, and changes the symbols that are printed: 'V' -> 'D', and 'b' -> 'j'. On October 31st, it deletes files that are executed. On August 29th, it disables INT 14h (COM ports).
On August 30th, "Hi.680" erases the disk sector, and "Hi.764" halts a computer. These viruses display the following messages:
"Hi.680":
Ha!Ha!!Ha!!!
You Have The Raveica Virus V1.3!

"Hi.764":
Ha!Ha!!Ha!!!
Ai un virus!
Pt. obtinerea devirusorului grabiti-va sa-l felicitati
astazi pe Claudiu Raveica cu ocazia zilei de nastere
Adresa:Str:Marasesti Bl:11 App:15
Oras:Bacau Jud:Bacau Cod:5500
Bing cu bang

"Hi.802" sometimes hooks INT 14h and 17h, and disables printers and COM ports.
"Hi.892": starting from October 24th, this virus hooks INT 08h and displays the following message:
NU MAI MISCA MOUSE-ul!
CA "A LOVESTI PESTE
COAIE

"Hi.895": starting from October 2nd, it hooks INT 08h (timer) and sometimes plays a tune.

Home

Viruses from A to Z
0-9 A B Ñ D E F G H I J
K L M N O P Q R S T
U V W X Y Z



Side Lip Piercings
Darlehen
Frontrute
Zydot
Chiptuning Bensin

    Copyright © 2005 Virus-Database.com
© 2005 Virus-Database.com