Virus Database


KeyPress.935

Description KeyPress.935

There are memory-resident dangerous parasitic viruses. They hook INT 1Ch, 21h and write themselves to the end of COM and EXE files that are executed or opened. In COM files the virus overwrites the the first 16 bytes of the beginning with Jmp-Virus routine. The viruses periodically call INT 9 (keyboard).
"Keypress.935,1000" erase the disk sectors, and contain the text strings:
"Keypress.935": Chaos&Amber
"Keypress.1000": King worm

"Keypress.1199" hooks INT 1Ch and depending on its internal counter reboots the computer.
"Keypress.1216.b,ß" do not call INT 9, they display:
SAMSOFT

"Keypress.1216.d" hooks INT 1Ch and sometimes displays symbol FFh (ASCII). It contains the text strings:
FRED
FREDDY_SOFT FREDDY_SOFT FREDDY_SOFT FREDDY_SOFT FREDDY_SOFT FREDDY_SOFT

"Keypress.1236" displays:
SADDAM, the inferiority of the chaos

"Keypress.1250,1479" display:
Mubark is caw

"Keypress.1600" hooks INT 09h, 1Ch, 21h. Depending on its internal counters it displays the messages:
HELLO SHSHTAYY
GODBYE AMIN
00 ZAGAZIG UNIVER

Keypress.BBS.1258
It intercepts Open File function (INT 21h, AH=3Dh) and if the file name is USER.BBS, the virus writes to that file login information about new user, and gives maximum privileges to that user. The text strings (register information) are:
User.Bbs
Platon Potapov
SPb
311-63-83
Alfred

Check other viruses! Be aware! Use Antiviral Software

Backdoor.Win32.Breplibot.b

Description Backdoor.Win32.Breplibot.b
This program can be used for remote administration of the victim machine via IRC channels. The program itself is a Windows PE EXE file 10240 bytes in size, packed using UPX. The unpacked file is approximately 31KB in size. The backdoor was originally distributed using spamming technologiesall.

Backdoor.Win32.Hupigon.a

Description Backdoor.Win32.Hupigon.a
This Trojan backdoor is 294076 bytes in size, written in Delphi, and packed using Aspack. Installation The program copies itself to the system directory as winreg.exe and notepod.exe. It then registers this file in the system directory, ensure that the file will be executed each time Windows isall

Home

Viruses from A to Z
0-9 A B Ñ D E F G H I J
K L M N O P Q R S T
U V W X Y Z



XML Datenrettung
Portugal Car Hire
Facebook Likes
BÖRJE JOHANSSON BILSERVICE AB
DIN ELON BUTIK AB

    Copyright © 2005 Virus-Database.com
© 2005 Virus-Database.com