Virus Database


Macro.Word97.Breeder

Description Macro.Word97.Breeder

This virus contains one macro with the AutoOpen name in documents and FileSave in NORMAL.DOT. The virus infects the system on an infected file opening (AutoOpen) and affects documents when they are saved (FileSave). It contains the comments:
BREEDER BY -=>NEMESIS<=- 5/4/97
"DO NOT PROVOKE THE INTROVERT"

Check other viruses! Be aware! Use Antiviral Software

FreddySoft.1663

Description FreddySoft.1663

It's harmless not memory resident encrypted parasitic virus. It searches for COM- and EXE-files (except IBMBIO.COM and IBMDOS.COM) and writes itself to their ends. It contains the internal text string:
FREDDY_SOFT
jln lobilobi blok Q27 Kalibata indah JAKARTA Selatan
Greetings to STACK RIPPER, DOUBLE CLICK, SINGLE DRIVE
COMEXESYSAUTOEXEC.BATIBMBIO.COMIBMDOS.COM

Freedom Family

Description Freedom Family

These are very dangerous memory resident encrypted parasitic viruses. They hook INT 3, 21h and write themselves to the end of COM and EXE files (except COMMAND.* and AIDS*.*) that are accessed with FindFirst/Next DOS functions. The viruses also intercept Write DOS call (AH=40h), and compare the data buffer with the strings in Russian "military", "soldier", "weapon". If these strings are found, the viruses erase hard drive sectors, CMOS, and display the message:
F R E E D O M

"Freedom.3600" also hooks Read functions AH=3Fh and check the data while reading as well as while writing.
The viruses also contain the text strings:
"Freedom.2248":
COMMAND AIDS .EXE .COM
* 1.45/2/01.02.1995

"Freedom.3600":
COMMAND AIDS ADINF WEB .EXE .COM
* 2.15/3/09.05.1995

Under debugger "Freedom.2248" corrupts the data and displays the message in the same way.

Home

Viruses from A to Z
0-9 A B Ñ D E F G H I J
K L M N O P Q R S T
U V W X Y Z




    Copyright © 2005 Virus-Database.com
© 2005 Virus-Database.com