Virus Database


Badboy.Riot.1049

Description Badboy.Riot.1049

This is a harmless memory resident parasitic encrypted virus. It hooks INT 21h and writes itself at the beginning of COM files are executed. This virus uses System File Table on infection. It is divided on 9 blocks of code and data (installation block, data block, INT 21h block e.t.c.). When the virus installs itself into the memory, 8 of these 9 blocks can be rearranged in any order depending on the system timer. On infection the virus saves encrypted image of its TSR copy into the file, so orders of code blocks in two infected file can be different.
The virus contains the text:
Senseless Destructionall Protecting what we are
joining together to take on the world..
METAL MiLiTiA [iMM0RTAL Ri0T]

Check other viruses! Be aware! Use Antiviral Software

Macro.AccessiV

Description Macro.AccessiV

This is the first known macro-virus that infects MS Access databases. The virus replaces the Autoexec script in databases ("macro" in Access terms), and copies additional macros ("module" in Access terms) to database. In this virus, the macro is named "Virus".
When an infected database is opened, the Autoexec script is activated. In infected databases, it immediately calls the virus function named "AccessiV" that searches for all databases in the current directory and infects them. While searching, the virus uses the "*.MDB" mask.
The virus does not manifest itself in any other way. It contains the comments:
Find MS Database File!
Find another MS Database File!

AccessiV.b
This is the second known Access macro-virus, which is very closely related to the first one. In March, this virus displays the MessageBox:
AccessiV - Strain B
I am the AccessiV virus, Strain B
Written by Jerk1N, of the DIFFUSION Virus Team
AccessiV was/is the first ever Access Virus!!!

It then creates and executes a file infected by DOS COM virus "Jerkin.443".

Macro.AmiPro.Green

Description Macro.AmiPro.Green

This virus contains four macros (functions): Green_Stripe_Virus, Infect_File, SaveFile, SaveAsFile. They receive the control when an infected document is opened, then the virus searches for *.SAM files of the current directory and infects them.
While infecting a SAM file the virus creates an SMM file, and copies itself to there by the command DosCopyFile. Then the virus assigns the Green_Stripe_Virus macro for that file, the virus does it by the AssignMacroToFile command.
Then the virus hooks SaveFile and SaveAsFile macros. When the "Save As" command is performed, the virus infects that document. In case of "Save" command the virus replaces the "its" string with "it's" one within the file.

Home

Viruses from A to Z
0-9 A B Ñ D E F G H I J
K L M N O P Q R S T
U V W X Y Z




    Copyright © 2005 Virus-Database.com
© 2005 Virus-Database.com