Dikshev.3529
Description Dikshev.3529
It is not a dangerous nonmemory resident polymorphic parasitic virus. It searches for COM files in the current directory, then writes itself to the end of the file. The virus contains the text string: Jedem das Seinem
The virus uses the EPO (Entry Point Obscuring) methods and in most of cases does not modify the file "entry address". To do that the virus scans the first Kb of victim file code, looks for first interrupt call INT 10h or INT 21h and replaces this instruction with Jump opcode to its polymorphic decryptor. In case there are no INT 10h,21h calls in the victim file, the virus infects it by the standard way and overwrites file header with JMP_Virus instruction.
Check other viruses! Be aware! Use Antiviral Software
GoodThursday
Description GoodThursday
This is a dangerous non-memory resident overwriting virus. It searches for .COM-files and overwrites them. On Thursdays, it displays the following message: Today is Good Thursday, nothing can go wrong!
Goomba.987
Description Goomba.987
It is a dangerous memory resident encrypted parasitic virus. It hooks INT 21h and writes itself to the end of .COM- and .EXE-files that are executed or closed. On 19th of any month it halts the computer. It deletes the files smartc*.c*
It contains the internal text string: Goomba_V1.3S(C) By ZynX/V?? SoftWare Isreal-1994
|