Virus Database


WilliWonka.1088

Description WilliWonka.1088

It is not a dangerous(?) memory resident parasitic virus. It hooks INT 21h and writes itself to the end of EXE-files that are executed. The virus searches for the PROTEZ.EXE file in the current directory, and hooks INT 1Ch if such file is found. Then the virus checks the video memory at the address B800:0818, and if there is a digit from 2 till 9, the virus patches the code in the system memory at the address 7000:0041.
The virus contains the encrypted text string:
WilliWonka

Check other viruses! Be aware! Use Antiviral Software

Exit.376

Description Exit.376

It's a harmless memory resident parasitic virus. It copies itself into the Interrupt Vectors Table, hooks INT 21h and writes itself to the end of .COM-files that are terminated. It contains an internal text string in Russian.

Exorcist Family

Description Exorcist Family

Exorcist.212
It is a very dangerous nonmemory resident overwriting virus. It searches for .COM files, then overwrites them, and displays the message:
Bad command or file name

then returns to DOS. On 1st of any month the virus erases sectors on the C: drive. The virus also contains the text strings:
[RED MEASLES]
Exorcist[DC]*.com

Exorcist.613,617
These are very dangerous nonmemory resident partly encrypted parasitic viruses. They search for COM files, then write themselves to the end of the file. Depending on the system date they erase disk sectors and display the message:
Relapse The Cronic Odium

The viruses also contain the text strings:
[ODIUM RELAPSE]
*.com .. [Exorcist!dc^96]

Home

Viruses from A to Z
0-9 A B Ñ D E F G H I J
K L M N O P Q R S T
U V W X Y Z




    Copyright © 2005 Virus-Database.com
© 2005 Virus-Database.com