Morphine.3500
Description Morphine.3500
This is a benign memory resident parasitic polymorphic virus. It hooks INT 21h, and writes itself to the end of COM and EXE files that are executed or opened. While installing a memory resident, the virus also infects the COMMAND.COM file. The virus checks the file names and does not infect the anti-viruses F-PROT, TBAV, SCAN. The virus deletes the anti-virus data files: ANTI-VIR.DAT CHKLIST.MS CHKLIST.CPS ZZ##.IM Under debugger or on August 10th, the virus displays the following text and runs itself by a video effect: RELIGIOUS VOMIT! MORPHINE-A VIRUS 0.6.4
The virus also contains the text strings: [Morphine-A] 0.6.4 by Ren Hoëk BA.Argentina Greets to: PJanes,Rat,Largus & the girls Kill the talking bastard! kill him! Juap! ok..rec-tunn stolen from Vlad Mag. COMSPEC=
Check other viruses! Be aware! Use Antiviral Software
Macro.Word.MDMA
Description Macro.Word.MDMA
Macro.Word.MDMA is an encrypted virus, it contains only one macro AutoClose and infects the system and files on closing a file. On 1st of any month the virus corrupts the files depending on the installed system and then display the message box with the text: MDMA_DMV You are infected with MDMA_DMV. Brought to you by MDMA (Many Delinquent Modern Anarchists).
Under Windows the virus deletes the C:SHMK file and overwrites the C:AUTOEXEC.BAT with the commands: @echo off deltree /y c: @echo You have just been phucked over by a virus
As a result after rebooting all files in all subdirectories will be deleted. Under Windows NT the virus deletes all files in the root directory as well as the C:SHMK file. Under Macintosh the virus deletes the files in system directory(?). Under other systems (Windows 95) the virus deletes the C:SHMK file and all *.HLP files in C:WINDOWS directory. The virus then sets some private profile strings and deletes all *.CPL files in C:WINDOWSSYSTEM directory.
Macro.Word.Meldung
Description Macro.Word.Meldung
This virus contains three macros: Documents NORMAL.DOT A1 DateiSpeichernUnter AutoOpen AO1 B1 AutoExec
The virus infects the global macros area on opening an infected document (AutoOpen) and infects documents on saving them with new names (DateiSpeichernUnter - FileSaveAs). On the 17th of any month the virus displays the MessageBox: Meldung! Dark Tremor Virus Copyright 1998 by Dark Tremor
|