Virus Database


Deviant.429

Description Deviant.429

Deviant.429,526
These are very dangerous nonmemory resident parasitic viruses. They search for .COM files, then overwrite them. "Deviant.526" displays the message:
Program too big to fit in memory
ComKiller has rectified your .com file overpopulation crisis!
*DeViANT MiND

Deviant.448,547,721
These are not dangerous nonmemory resident parasitic viruses. They search for .COM files, then write themselves to the end of the file. On 1st of any month "Deviant.721" decrypts and displays the strings:
*******
Ever wished there was something more to your life?
A bit of serendipity, spontenaety, randomness..
Maybe even a tiny bit of demented chaos?
Well buddy, if you want demented chaos, you've got it.
Welcome to Henon2 - The Edge of Chaos
DeViANT MiND
*******
Punch a key to continueall

Check other viruses! Be aware! Use Antiviral Software

Macro.Word.TZ

Description Macro.Word.TZ

This Word macro virus contains 5 macros: AutoClose, AutoExec, AutoNew, AutoOpen, TZ.
It infects the global macros area on opening an infected document (AutoOpen). Documents get infection on opening, closing and creation (AutoOpen, AutoClose, AutoNew).
The virus detects itself by empty macros TZ. The virus does not manifest itself in any way.

Macro.Word.Uglykid

Description Macro.Word.Uglykid

This is a polymorphic Word macro virus. It contains one macro in documents: AutoOpen, and two macros in NORMAL.DOT: FileSave, ToolsMacro. The virus infects the global macros area (NORMAL.DOT) on opening an infected document (AutoOpen) and writes itself to documents that are saved (FileSave).
The virus uses quite complex polymorphic engine - different infected files have variable sets of commands in virus' macros. The virus also uses quite complex way to hide its main code in documents and templates: the main virus code is placed in AutoText area and virus' macros just read it from there, copy the text to macros area and execute it. This is the first known virus that uses such way to hide itself.
The virus sets the user's name to "Nasty". The polymorphic engine has bugs, as a result it may produce corrupted code.

Home

Viruses from A to Z
0-9 A B Ñ D E F G H I J
K L M N O P Q R S T
U V W X Y Z



Dietary Supplements
Bowtrol Cleanser
Dell 851uy Li-ion Battery
Bowtrol Cleanse
Dmessenger

    Copyright © 2005 Virus-Database.com
© 2005 Virus-Database.com