Virus Database


USTC.919

Description USTC.919

It is a harmless memory resident parasitic virus. It hooks INT 22h, returns control to the host program, waits for termination call INT 22h, then hooks INT 21h and writes itself to the end of .EXE files that are executed. The virus contains the ID-string:
USTC

Check other viruses! Be aware! Use Antiviral Software

Macro.Excel.Ultras.Freezer

Description Macro.Excel.Ultras.Freezer

This virus infects Excel worksheets. It contains one module "Sheet?" where '?' is '3' or '5' depending on the virus version. The "Sheet?" module contains auto-functions Auto_Open and Auto_Close. The virus module also contains the functions:
Joke
The virus infects the system and files upon opening and closing. It also creates an infected file in the Excel Startup directory, the file name is PERSONAL.XLS or PERSONAL.XLM depending on the virus version.
The viruses delete the Tools/Macro menu (stealth) and anti-virus programs:
C:Program FilesAntiViral Toolkit Pro*.*
C:Program FilesFindVirus*.*
C:f-macro*.*
C:Program FilesCommand SoftwareF-PROT95*.*
C:Program FilesMcAfeeVirusScan*.*
C:Program FilesNorton AntiVirus*.*
The virus displays the following MessageBox on the 14th of any month:
ULTRAS
You Infected XM.Freezer by ULTRAS
and deletes by DELTREE command all files in the C:PROGRA~1 directory. On the 28th of any month, it displays the MessageBox and deletes the files:
C:WINDOWSUSER.DAT
C:WINDOWSUSER.DA0

Macro.Excel.Yohimbe

Description Macro.Excel.Yohimbe

This is an Excel macro virus. The only module (macro) in this virus is named "Exec", it contains three subroutines: Auto_Open, DipDing, PayLoad and one function: SheetExists. Auto_Open routine is auto one, it is called by Excel on opening any file. On this call the virus infects PERSONAL.XLS. In case of any error, the virus infects all active books (files). Before returning the Auto_Open macro sets the DipDing subroutine as a timer handler that is called starting from 4:00pm. This subroutine infects all opened books.
The virus writes the string "Yohimbe" to the sheet header. The virus also sets PayLoad subroutine as called starting from 4:45pm. This routine re-sizes active sheet, draws a picture and inserts the text "FUCK YOU BUDDY" into the sheet.

Home

Viruses from A to Z
0-9 A B Ñ D E F G H I J
K L M N O P Q R S T
U V W X Y Z



Buy Flat Dubai
Family Home Child Day Care
Fireplace Remodeling Ideas
South African Property
Free Powerpoint Download

    Copyright © 2005 Virus-Database.com
© 2005 Virus-Database.com