BadSectors.3150
Description BadSectors.3150
These are dangerous memory resident parasitic viruses. They hook INT 8, 16h, 21h, 25h, 26h. On DOS calls FindFirst/FindNext FCB/ASCII they search for COM and EXE files and write themselves to the end of the file. They also infect the files that are opened, executed or renamed. The viruses do not infect the SCAN.* files. Sometimes they mark the disk clusters as bad ones by manipulation with FAT sectors. By hooking INT 16h these viruses joke with keyboard. These viruses contain the internal text strings: COMEXE SCAN
and: "BadSectors.3150": BadSectors 1.0 "BadSectors.3422": BadSectors 1.1 "BadSectors.3428": BadSectors 1.2 "BadSectors.3627:: BadSectors 1.3
Check other viruses! Be aware! Use Antiviral Software
Messev.2778
Description Messev.2778
This is a very dangerous memory resident virus. It infects DOS COM and EXE files as well as drops a boot instance that then infects boot sectors only and is not able to infect DOS executable files. The virus is encrypted in both files and sectors, it is also stealth in both its instances. When an infected file is executed the virus decryption routine takes control, restores the virus in its original form and passes control to the virus installation routine. The virus then traces and hooks INT 13h, 21h, infects the MBR of the hard drive and command processor pointed by the COMSPEC= instruction. While infecting files the virus writes itself to the end of the file. It affects the files that are executed, created, opened, accessed by Get/Set file attribute function and ever deleted. The virus disinfects infected files under debugger and on writing to such files (stealth). The virus also runs stealth routines on accessing file length and time&date stamp, on executing the PKZIP, ARJ, LHA, RAR and CHKDSK utilities the virus disables these routines. When TBSCAN anti-virus is executed, the virus appends to the end of command line options that disable TBSCAN memory and heuristic scanning. Under debugger the virus erases the hard drive sectors and reboots the computer. While infecting the MBR of the hard drive the virus erases the file: C:WINDOWSSYSTEMIOSUBSYSHDFLOP.PDR The virus also contains the text strings: =[ Messev v1.00, (c) 1998 by T-2000 / Invaders ]= Daddy-K-tit 2 Gällyon van Vessem If I don't passall fuck it! SKLSUX!' [ DEMANUFACTURE - FEAR FACTORY ]
Messev.3158
Description Messev.3158
This is a very dangerous memory resident virus. It infects DOS COM and EXE files as well as drops a boot instance that then infects boot sectors only and is not able to infect DOS executable files. The virus is encrypted in both files and sectors, it is also stealth in both its instances. When an infected file is executed the virus decryption routine takes control, restores the virus in its original form and passes control to the virus installation routine. The virus then traces and hooks INT 13h, 21h, infects the MBR of the hard drive and command processor pointed by the COMSPEC= instruction. While infecting files the virus writes itself to the end of the file. It affects the files that are executed, created, opened, accessed by Get/Set file attribute function and ever deleted. The virus disinfects infected files under debugger and on writing to such files (stealth). The virus also runs stealth routines on accessing file length and time&date stamp, on executing the PKZIP, ARJ, LHA, RAR and CHKDSK utilities the virus disables these routines. When TBSCAN anti-virus is executed, the virus appends to the end of command line options that disable TBSCAN memory and heuristic scanning. Under debugger the virus erases the hard drive sectors and reboots the computer. While infecting the MBR of the hard drive the virus erases the file: C:WINDOWSSYSTEMIOSUBSYSHDFLOP.PDR The boot instance of the virus infects the MBR of the hard drive and boot sector of floppy disks as ordinary boot virus. On May 2nd it erases the hard drive sectors, displays and outputs to printer the message: Gwar virus v1.3, (c) 1998 by T-2000 / Invaders SKLSUX!Winsuck95 The virus also contains the text strings: =[ Messev v2.10, (c) 1998 by T-2000 / Invaders ]= MeSSeV LiVeS! Daddy-K-tit 2 Gallyon van Vessem This is a pretty lame virus, I only released it coz I wanted to infect some ppl.Messev - Screwed version If I don't passall fuck it!My gun will be your angel of mercy! [ DEMANUFACTURE - FEAR FACTORY ]
|
Home
Viruses from A to Z 0-9
A
B
Ñ
D
E
F
G
H
I
J
K
L
M
N
O
P
Q
R
S
T
U
V
W
X
Y
Z
Male Hair Loss And Cures Gift Baskets Calling Cards Beauty Articles Hotel A Paris
|