Win95.Apop
Description Win95.Apop
It is not a dangerous memory resident parasitic virus. It replicates under Win9x systems only. The virus stays in Windows memory as a VxD driver, hooks file operations (IFS), and then infects PE EXE files that are being opened. While infecting a file the virus writes itself to "caves" in file body, if there are such ones. The infection method looks similar to the "Win95.CIH" virus: the virus body is split to blocks that are stored at the end of PE sections, if there are "caves" of enough size. Depending on month and its internal counters the worm ejects CD drive.
Check other viruses! Be aware! Use Antiviral Software
DaBoys
Description DaBoys
It's a not dangerous memory resident boot virus. On loading from infected disk, it copies itself into interrupt vectors table and hooks INT 13h. Then it overwrites boot sectors of disks are accessed. It contains the internal text string: "DA'BOYS".
Dada.1356
Description Dada.1356
This is a non memory-resident harmless virus. It infects EXE-files by standard manner whenever they are loaded into the memory. At the end of infected files you can find the string in Russian: "yes,yesall" ("da,da..."). Periodically the screen flickers: all even lines are shifted cyclic to the left and all odd lines - to the right. The virus hooks INT 8, 21h.
|