Phardera.5824
Description Phardera.5824
This is a benign memory resident parasitic polymorphic virus. It hooks INT 21h, and writes itself to the end of COM and EXE files that are executed. The resident code of virus is also encrypted with different keys, and the virus decrypts/encrypts its routines "on-the-fly" in case of need. The virus also uses a lot of anti-debugging tricks. On the 10th of each month, the virus displays the following message: Phardera + Dianita
The virus contains the text strings: Phardera -by Phardera'95-----Batavia--------Indonesia---- RaredrahP Dianita
Check other viruses! Be aware! Use Antiviral Software
Li-Jian.631
Description Li-Jian.631
It is a harmless memory resident parasitic virus. It hooks INT 21h and writes itself to the end of EXE files that are executed. The virus does not manifest itself in any way, it contains the text string: ( C ) Copyright Li Jian
Li.1178
Description Li.1178
These are not dangerous memory resident parasitic viruses. They hook INT 21h and write themselves to the end of COM files that are executed. "Li.1178" checks input from DOS prompt and on entering "pajama" it displays: "Welcome Great One!". In some cases it sends Novell Netware packets. "Li.1413" hooks also INT 09h and checks keyboard input. When the string "kkyyzz" is entered, the virus removes itself from memory. While executing of LI.EXE file the virus stores keyboard input and sends Novell Netware packet(?).
|