Virus Database


KbrError.1268

Description KbrError.1268

It is a dangerous nonmemory resident parasitic virus. It searches for .COM files (except COMMAND.COM) and writes itself to the end of the file. Before infecting the virus writes a random number of NOP commands to the end of the file, as a result the file length is increased by a random value. Depending on the system time the virus displays the message:
KeyBoard Error all

then it corrupts keyboard buffer and reboots computer. It also contains the text string:
COMMAND.COM
UFO

Check other viruses! Be aware! Use Antiviral Software

Pebble

Description Pebble

It is a dangerous memory resident boot virus. It hooks INT 9, 13h and writes itself to the boot sector of floppy disks on reading from them. It infects the hard drive while loading from infected floppy. It saves the original MBR sector on the 7th hard drive sector and the original boot sector on the last root directory sector of a diskette. Because of an error while infecting floppy disks the virus corrupts the disk parameters table.
On entering keys (INT 9) the virus changes the color attribute of top-left character on the screen.

Pelf.2132

Description Pelf.2132

(aka Lindose)
This is a harmless non-memory resident parasitic multipartite virus. It infects Windows executable files as well as Linux ones (Windows PE files and Linux ELF files).
The virus is written in Assembler, and is about 2.5 Kb in size. It does not manifest itself in any way, and it is like a multiplatform Windows-Linux virus concept.
The virus contains the text strings:
[Win32/Linux.Winux] multi-platform virus by Benny/29A
This GNU program is covered by GPL.
To infect executable files of both systems, and to spread under both these system, the virus routines are separated into two blocks: the former block is activated under Windows, it then looks for Windows and Linux executable files and infects them; the latter block is activated under Linux, looking for executables files and infecting them as well.
The Windows part
It searches for the all files in the current and upper directory, and infects PE files and Linux ELF files (it checks the file type by file format). It infects both types, and has two subroutines for each (Windows version).
The Linux part
This part searches for the all files in the current directory, and infects PE files and Linux ELF files (it checks the file type by file format). It infects both types, and has two subroutines for each type (Linux version).
Infecting Windows PE files
The virus scans for the ".reloc" section. If this section is found, the virus writes itself to the middle of the file. It saves the original Entry Point address, and restores the PE file after it has finished its work.
Infecting Linux ELF files
The virus writes itself to the Entry Point of the file. It saves original data at the end, and saves code from Entry Point and restores the ELF file after finishing its work.

Home

Viruses from A to Z
0-9 A B Ñ D E F G H I J
K L M N O P Q R S T
U V W X Y Z



South African Houses
Batacy13c8
Property For Sale In Prague
Venapro Side Effects
Hundefutter

    Copyright © 2005 Virus-Database.com
© 2005 Virus-Database.com