WilliWonka.1088
Description WilliWonka.1088
It is not a dangerous(?) memory resident parasitic virus. It hooks INT 21h and writes itself to the end of EXE-files that are executed. The virus searches for the PROTEZ.EXE file in the current directory, and hooks INT 1Ch if such file is found. Then the virus checks the video memory at the address B800:0818, and if there is a digit from 2 till 9, the virus patches the code in the system memory at the address 7000:0041. The virus contains the encrypted text string: WilliWonka
Check other viruses! Be aware! Use Antiviral Software
Exit.376
Description Exit.376
It's a harmless memory resident parasitic virus. It copies itself into the Interrupt Vectors Table, hooks INT 21h and writes itself to the end of .COM-files that are terminated. It contains an internal text string in Russian.
Exorcist Family
Description Exorcist Family
Exorcist.212 It is a very dangerous nonmemory resident overwriting virus. It searches for .COM files, then overwrites them, and displays the message: Bad command or file name
then returns to DOS. On 1st of any month the virus erases sectors on the C: drive. The virus also contains the text strings: [RED MEASLES] Exorcist[DC]*.com
Exorcist.613,617 These are very dangerous nonmemory resident partly encrypted parasitic viruses. They search for COM files, then write themselves to the end of the file. Depending on the system date they erase disk sectors and display the message: Relapse The Cronic Odium
The viruses also contain the text strings: [ODIUM RELAPSE] *.com .. [Exorcist!dc^96]
|