Virus Database


Russel Family

Description Russel Family

These are memory resident encrypted parasitic viruses. They hook INT 21h and write themselves to the end of COM and EXE files that are accessed.
"Russel.1200,1235" are the dangerous viruses, they also hook INT 13h and sometimes disable writing to the disks ("Russel.1200"), or write to disk instead of reading ("Russel.1235").
"Russel.3072" is dangerous polymorphic virus. It deletes the CHKLIST.MS file, and contains the text strings:
CHKLIST.MS
RUSSEL FARADAY

Check other viruses! Be aware! Use Antiviral Software

Bomzh.3809

Description Bomzh.3809

It is a very dangerous memory resident encrypted parasitic stealth virus. It hooks 17h, 21h and writes itself to the end of EXE files that are executed, renamed or closed. While opening an infected file the virus disinfects it. When a file compressing utility is run, the virus disables its stealth routine. The list of these utilities looks as follows:
RAR.EXE PKZIP.EXE ARJ.EXE ICE.EXE HA.EXE

The virus deletes the files:
VSWAP.WL?
ILLURIA.MAP
*.WAD

While printing a file the virus includes a word in Russian into the data . The virus also contains text strings in Russian.

Bony.1373

Description Bony.1373

It is a dangerous memory resident encrypted parasitic virus. It hooks INT 21h and writes itself to the end of COM and EXE files that are executed. The virus does not infect program with symbols in file name:
VIR, AVX, WIN, DN.PRG, CAPCANA, RAV, PROT, TB, DRWEB, CLEAN,
GUARD, ANTI, MSAV, FIND, HIEW, HOST, KILL, SAFE, SCAN, STOP,
TRAP, ANL, NOD, AIDS, ASP, VDS, HUNTER, SDRES

Depending on the current date the virus hooks INT 8 (timer), and in several minutes halts the computer.
The virus contains the text string:
[Bny]

Home

Viruses from A to Z
0-9 A B Ñ D E F G H I J
K L M N O P Q R S T
U V W X Y Z




    Copyright © 2005 Virus-Database.com
© 2005 Virus-Database.com