Virus Database


Wilbur.512.d

Description Wilbur.512.d

This is a benign non memory-resident parasitic virus. It searches for COM files, and writes itself to their ends.
This virus contains the internal encrypted text:
*.COM Berlin, Md'
Japanese Components Detected in Your Computer. Format Underway.
Just Kidding. Wilbur Again.
On December 7th, it hooks INT 09h to disable the keyboard, displays a second string, and reads disk sectors cyclical. The computer is halted.

Check other viruses! Be aware! Use Antiviral Software

Mephisto.969

Description Mephisto.969

These are not dangerous parasitic viruses. They write themselves to the end of the file. Some of these viruses are encrypted ones.
"Mephisto.2,3,4" are nonmemory resident, they search for the files and infect them. Other viruses leave TSR copy and hook INT 21h to infect the files.
"Mephisto.2,3,5" infect .COM files only, "Mephisto.4,6" infect .EXE files only.
The viruses contain the text strings:
"Mephisto.3":
When you read this Text, your Computer has to be already DEAD.
My Name is NUMBER THREE but you will never see me againall

"Mephisto.4":
When you read this Text, your Computer has to be alreadyDEAD.
My Name is NUMBER FOUR but you will never seeme again...

"Mephisto.5.1235":
[NUMBER FIVE (Special) V 1.00] (?) Mephisto Switzerland*.pas

"Mephisto.5.1242":
ALL GOOD THINGS MUST COME TO AN END
This Virus is dedicated to the well known series
STAR TRECK NEXT GENERATION
that reached the end about three months ago...
[NUMBER FIVE] (?) Mephisto

"Mephisto.6":
ALL GOOD THINGS MUST COME TO AN END
This Virus is dedicated to the well known series
STAR TREK NEXT GENERATION
that reached the end about three months ago...
[NUMBER SIX] (?) Mephisto

"Mephisto.4.1134" displays:
" All good things must come to an end "

It also contains the text:
This is NOT Shareware. Please register you by Johnny Boy !!!
[NUMBER FOUR] (?) Mephisto

"Mephisto.5.510,615" display:
Resident Function will be carried out !!!

"Mephisto.5.1235,1242" also hook INT 1Ch, and depending on the system timer they drop the letters on the screen.
Mephisto.921
It is not a dangerous nonmemory resident encrypted parasitic virus. It searches for C:DOSDOSKEY.COM, C:DOSEDIT.COM, and COM files of current directory, then writes itself to the end of the file. Depending on the system timer that virus drops the "ASBV" boot virus to the MBR of the hard drive.
The virus contains the text string:
[Swiss'94] Mephisto
c:dosdoskey.com c:dosedit.com *.com

Messev.2778

Description Messev.2778

This is a very dangerous memory resident virus. It infects DOS COM and EXE files as well as drops a boot instance that then infects boot sectors only and is not able to infect DOS executable files. The virus is encrypted in both files and sectors, it is also stealth in both its instances.
When an infected file is executed the virus decryption routine takes control, restores the virus in its original form and passes control to the virus installation routine. The virus then traces and hooks INT 13h, 21h, infects the MBR of the hard drive and command processor pointed by the COMSPEC= instruction.
While infecting files the virus writes itself to the end of the file. It affects the files that are executed, created, opened, accessed by Get/Set file attribute function and ever deleted. The virus disinfects infected files under debugger and on writing to such files (stealth). The virus also runs stealth routines on accessing file length and time&date stamp, on executing the PKZIP, ARJ, LHA, RAR and CHKDSK utilities the virus disables these routines.
When TBSCAN anti-virus is executed, the virus appends to the end of command line options that disable TBSCAN memory and heuristic scanning. Under debugger the virus erases the hard drive sectors and reboots the computer. While infecting the MBR of the hard drive the virus erases the file:
C:WINDOWSSYSTEMIOSUBSYSHDFLOP.PDR
The virus also contains the text strings:
=[ Messev v1.00, (c) 1998 by T-2000 / Invaders ]=
Daddy-K-tit 2 Gällyon van Vessem
If I don't passall fuck it!
SKLSUX!'
[ DEMANUFACTURE - FEAR FACTORY ]

Home

Viruses from A to Z
0-9 A B Ñ D E F G H I J
K L M N O P Q R S T
U V W X Y Z




    Copyright © 2005 Virus-Database.com
© 2005 Virus-Database.com