Croatia.1349
Description Croatia.1349
These are a very dangerous memory resident parasitic viruses. They hook INT 21h, 28h and write themselves to the end of .COM files that are executed. When infected files are opened or loaded for debugging, the viruses disinfect them, and infect again when the file is closed. While disinfecting the viruses create the temporary file ("Croatia.1349" - E, "Croatia.1535" - LARGE2.COM), copy the disinfected copy of the source file, and rename that file to the original name. Depending on the system time and date the viruses decrypt the text string "Croatia" and overwrite the disk sectors with this string ("Croatia.1535" reads from the sectors instead of writing).
Check other viruses! Be aware! Use Antiviral Software
DullBoy
Description DullBoy
It is a dangerous memory resident boot stealth-virus. It hooks INT 13h and writes itself to the boot sectors of floppy disks and first boot sector of the hard disk. The virus uses VGA internal interrupt vector for its data, and halts VGA-computers. The virus contains the internal text string: All computing and no play makes Cheolsoo a dull boy!
Dune.640
Description Dune.640
These are not dangerous memory resident encrypted parasitic viruses. They hook INT 21h and write themselves to the end of .COM-files that are executed or opened. If the length of COM-file is less than 3000 bytes, "Dune.640" displays: Hmm all
The viruses contain the text strings: "Dune.579": DUNE 1.1 - ROM COMMAND.COM "Dune.640": S.R.I Vangelis 1.0ROMANIA Dec 1993-BUCCOMMAND.COM
|