Virus Database


Ocsana.692

Description Ocsana.692

This is a benign memory resident encrypted parasitic virus. When an infected file is executed, the virus hooks INT 21h and 28h, and stays memory resident. Then it intercepts the ChangeDir DOS call (AH=3Bh), sets its internal flag and upon the next INT 28h call, searches for .COM files, and infects them.
While infecting a file, the virus encrypts a file and shifts it down by 692 bytes, then writes itself to the beginning of the file.
On August 13, the virus decrypts and displays the following message:
Happy birthday, Ocsana!

Check other viruses! Be aware! Use Antiviral Software

Sylvia Family

Description Sylvia Family

These are harmless nonmemory resident parasitic viruses. They search for .COM files (except COMMAND.COM, IBMIO.COM, IBMDOS.COM) in the current directory of the current and C:drives, then infect not more than 5 files. They write themselves to the beginning of the file.
If one corrects the text in the virus (see bellow), they halt the system, then decrypt and display the message:
FUCK YOU LAMER !! system haltedall

There is the following text at the virus beginning:
This program is infected by a HARMLESS Text-Virus V2.1
Send a FUNNY postcard to : Sylvia Verkade,
Duinzoom 36b,
3235 CD Rockanje
The Netherlands.
You might get an ANTIVIRUS program.....

Sylwia.734

Description Sylwia.734

It is a harmless memory resident parasitic virus. It hooks INT 21h and writes itself to the end of .COM files that are executed. It contains the text string:
SYLWIA

Home

Viruses from A to Z
0-9 A B Ñ D E F G H I J
K L M N O P Q R S T
U V W X Y Z




    Copyright © 2005 Virus-Database.com
© 2005 Virus-Database.com