Virus Database


NoFrills Family

Description NoFrills Family

There are not dangerous memory resident parasitic viruses. They hooks INT 21h and write themselves to the end of COM and EXE files that are accessed. Some of these viruses infect COM files in incorrect way, these files halt the system being executed. The viruses contain the text strings:
"NoFrills.813": +-No Frills by Harry McBungus-+
"NoFrills.815": +-No Frills 1.01 by Harry McBungus-+
"NoFrills.840": +-NF3.0-H.McB-[PuKE]-+
"NoFrills.843": +-No Frills 2.0 by Harry McBungus-+

NoFrills.Bungus
This virus hooks INT 8, 21h. It contains the texts:
*X-Fungus by Harry McBungus*
*Nugga!*
*Greets SCP*
*Greets RABID*
* Patricia: Grow some programming knowledge *
*Grease me!*
*K-Mart in full effect*
*Epileptic Downer*

This virus decrypts and displays:
John Bonham - September 20, 1980
- L E D Z E P P E L I N -

NoFrills.Dudley
It is a harmless polymorphic virus. It contains the text string:
[Oi Dudley!][PuKE]

NoFrills.Kcat.1358
It is a very dangerous memory resident parasitic virus. It hooks INT 9, 21h and writes itself to the end of COM and EXE files that are executed, opened, or while accessing to the file attributes. The virus corrupts EXE files while infecting them.
The virus creates the C:WIN386.DAT and writes into there the keystrokes that are entered. The virus contains the text strings:
Kcat 3.01
5% - By Sir Twist & Thunderbird, with Many Thankz to Harry McBungus
whose coded we politely nicked.

NoFrills.K-Lame.950
On Sundays this virus creates the C:HARRY.MCB file, and while infecting any file the virus writes (appends) to that file the string:
+-K-Lame Kreation by Harry McBungus-+

Check other viruses! Be aware! Use Antiviral Software

Crusade.3072

Description Crusade.3072

Crusade.3072 is a not dangerous memory resident multipartite stealth virus. While executing of infected file the virus traces INT 13h, infects MBR of the hard drive, then it hooks INT 21h and writes itself to the end of COM- and EXE-files that are accessed. The virus does not infect the file it the file name contains the symbols:
MM ID SC RG WE VI AD

While loading from infected MBR the virus also hooks INT 13h (stealth routine) and INT 1Ch (trigger routine). The trigger routine is executed in 5 hours after booting from infected hard drive. That routine decrypts and displays the message:
+--------------------+
¦ LIVE `N` LET LIVE! ¦
+--------------------+

The virus also contains the encrypted text string:
Take care of soft war or Last Crusade.

Crusher.a

Description Crusher.a

It's a not dangerous memory resident stealth multipartite virus. On execution it writes itself into the MBR of the hard drive, then hooks INT 21h and writes itself at the beginnings of EXE-files are copied or moved. On loading from infected MBR it hooks INT 1Ch, waits for DOS loading, then restores INT 1Ch, hooks INT 21h and starts to infection.
If there's no free memory for the virus installation, it types: "Insufficient memory" and returns to DOS. On execution CHKDSK utility the virus sometimes displays:
Crusher
You are damned
Bit Addict / Trident
----------------------

Home

Viruses from A to Z
0-9 A B Ñ D E F G H I J
K L M N O P Q R S T
U V W X Y Z




    Copyright © 2005 Virus-Database.com
© 2005 Virus-Database.com