Virus Database


Patras.1972

Description Patras.1972

This is a dangerous memory resident multipartite virus. While executing an infected EXE file the virus writes itself to the boot sector of the C: drive and then returns the control to the host file.
While loading from infected disk the virus hooks INT 8, waits for DOS loading procedure, allocates the DOS memory, copies itself to there, and hooks INT 21h. Then it writes itself to the end of EXE files that are executed. While infecting a file the virus also deletes the CHKLIST.MS file, if it exists.
After 60th infection the virus hooks INT 10h (Video) and manifests itself with sound and video effects: it displays the messages and launch "hearts" (03 ASCII) jumping on the screen. The messages are:
A lovely heart fell from the sky !!!
KARNAVALI OF PATRAS !!!
*** PATRAS H/Y ***

Check other viruses! Be aware! Use Antiviral Software

Pande.1520

Description Pande.1520

It is a dangerous memory resident parasitic stealth virus. It writes itself to the end of COM and EXE files that are accessed. While installing memory resident the virus scans DOS kernel, patches it, hooks INT 21h and leaves its copy in UMB memory, if it is available. If several anti-viruses (F-PROT, TBAV) or utilities (ARJ, RAR, LHA, PKZIP, CHKDISK) are run, the virus disables its stealth routines. The virus has a bug and may halt the system.
The virus contains the text strings:
pandemonium by retch
17/04/96
F-TBARRALHPKCH

Pandora

Description Pandora
It is not a dangerous memory resident parasitic virus. It hooks INT 21h and writes itself to the end of EXE files that are executed. Sometimes it displays a message in Chinese or in English:
Hello! How is it?
This is ----Pandora III.
Soochow University Business Administration Dep.
Writen By Blood Mary 1994.10.08

Home

Viruses from A to Z
0-9 A B Ñ D E F G H I J
K L M N O P Q R S T
U V W X Y Z



Skylights
Birthday Invitations
Hide Anonymous Ip Address Unblock Proxy
Billakkering
Hamilton Headsets

    Copyright © 2005 Virus-Database.com
© 2005 Virus-Database.com