Virus Database


Macro.Word.Pelaku

Description Macro.Word.Pelaku

This Word macro virus contains nine macros: FileSave, FileSaveAs, FileTemplates, ToolsMacro, ToolsCustomize, AutoExec, AutoClose, AutoOpen, FileOpen.
It infects global macros area on opening an infected document (AutoOpen) and infects other documents on opening, saving and saving with new name (FileOpen, FileSave, FileSaveAs).
On opening a document before infecting the virus deletes all macros in there (if they exist). When closing the virus rewrites the FileOpen macro (tries to protect itself against other viruses?)
On August 19 it displays the MessageBox:
Happy Birthday, Pakis Pratiwiall
Hari ini Pakis Pratiwi merayakan Hari Ulang Tahun... Matikan komputer,
tinggalkan semua pekerjaan, istirahatkan pikiran, ucapkan selamat kepada
Pakis Pratiwi.

On November 20 it displays the MessageBox:
Happy Birthday, NdeKlaimber...
Hari ini NdeKlaimber merayakan Hari Ulang Tahun... Matikan komputer,
tinggalkan semua pekerjaan, istirahatkan pikiran, ucapkan selamat kepada
NdeKlaimber.

Starting from 1998, starting from 19:00 the virus displays the UserDialog:
NdeKlaimber Menggugat ...
Berawal dari sebuah kepedihan... NdeKlaimberÖ dicampakkan dan
dihinakan... terpuruk bagaikan sampah busuk... NdeKlaimberÖ merintih
dengan segumpal dendam mendidih !!!
Kini saatnya NdeKlaimberÖ menunjukkan... masih adanya kekuatan untuk
membungkam mulut-mulut tak berperasaan... sebab hasrat untuk menjadi yang
terbaik adalah sesuatu yang sangat manusiawi... NdeKlaimberÖ manangis
harus melibatkan semua orang.
1997 NdeKlaimberÖ I'm Coming...

Check other viruses! Be aware! Use Antiviral Software

Minsk.1075

Description Minsk.1075

It is a dangerous memory resident parasitic virus. It was received from Minsk (Belorussia). The virus hooks INT 21h and writes itself to the end of .COM and .EXE files that are opened. On every 20th reading from .DBF files the virus replaces the real information with the spaces. The virus has a dangerous bug - while executing any infected .EXE file the virus calls INT 15h (21 decimal) instead of INT 21h calls.

Minzdrav.470

Description Minzdrav.470

It is not a dangerous nonmemory resident parasitic virus. It searches for .COM files, then writes itself to the end of the file. The virus displays the message:
Minzdrav say: Here VIRUS

Home

Viruses from A to Z
0-9 A B Ñ D E F G H I J
K L M N O P Q R S T
U V W X Y Z



Credit Card
Faxless Cash Advance
Myspace Layouts
Seo Austin
Anti-ddos.biz

    Copyright © 2005 Virus-Database.com
© 2005 Virus-Database.com