Main Menu
Home
Bookmark
Contact Us



 
Res.287 Viruses Information

Name: Res.287
Category: Viruses
Description: Details
Res.2879

These are harmless memory resident multipartite encrypted stealth viruses. They hook INT 13h, 21h and write themselves to the end of COM and EXE files that are accessed. The viruses also infect the MBR of the hard drive and boot sector on the 1.4Mb floppy disks.
The viruses check file names and do not infect several anti-virus programs and archivers. The viruses contain the text strings, the first strings contains the identification letters for files that are not infected by the virus (two letters per name, the viruses check two last letters of names):
NFEBSTTERJIPHAAR
[RES] VVS

"Res.4258" also embeds itself to the FIDO mails (.PKT files). While embedding the virus creates its dropper with the LIFE.COM name, converts it to ASCII data by using standard UUE method, and adds these data to the end if victim message as a block of encoded data.



Top Viruses Visited Pages:
Invader. - 239 visits
not-a-virus:RiskWare.Tool.RegPatch. - 73 visits
Worm.P2P.Harex. - 66 visits
not-a-virus:RemoteAdmin.Win32.RAdmin.2 - 60 visits
Small.58. - 56 visits
Coito.64 - 54 visits
I-Worm.Mapson. - 48 visits
Win32.Hidra - 43 visits
Win16.Klon.1177 - 42 visits
Marine.500 - 35 visits

Random Viruses Pages:
FrodoSoft Famil
Shaman.25
Weirdo.55
Itv.44
Walhala.128
Tie.61
Inch Famil
CheckSum Famil
Mosquito.76
Email-Worm.Win32.Bagz.


 


© 2006-2008 spyware32.com - Privacy Policy