Yong-Ga-Ri.1867
Description Yong-Ga-Ri.1867
It is a very dangerous memory resident encrypted parasitic virus. It hooks INT 21h and writes itself to the end of COM and EXE files that are executed. The virus does infect the files with the names that start with the strings: V3, HWP, TV, TBAV, I, SACN. The last string is not the only one bug in the virus code, there are several other ones. The virus contains the code that formats the hard drive sectors. That code receives the control after 10th termination of the program with DOS call Terminate AH=0 and AL register 12h or 4Fh. The virus contains the text strings, the first one is encrypted with quite unusual way: the virus name is yong-ga-ri ][ 1994.12.23 (C) Sk bbsyb 1995.1.2 V3HWPTVTBAVISACN
Check other viruses! Be aware! Use Antiviral Software
Macro.Word.KillDLL
Description Macro.Word.KillDLL
This is a very dangerous virus. It contains only one macro: AutoOpen. On opening a file the virus infects the system, if the file is infected. Otherwise the virus infects this file. The virus then deletes all *.D?? files in the C:WINDOWSSYSTEM directory.
Macro.Word.KillDos
Description Macro.Word.KillDos
This is a Chinese macro virus. It contains only one macro AutoOpen and replicates on opening documents. On the first day of any month it displays InputBox in Chinese. In case of incorrect input it then deletes all files in the C:DOS directory.
|