Main Menu
Home
Bookmark
Contact Us



 
Win32.Drol.5337. Viruses Information

Name: Win32.Drol.5337.
Category: Viruses
Description: Details
Win32.Drol.5337.a

It is a dangerous nonmemory resident not encrypted parasitic Windows virus related to already known Win32 viruses "Hatred" and "Undertaker".
When an infected EXE files is executed, the virus gets control, searches for PE EXE files (Windows32 executable) in current, Windows and Windows system directories, then writes itself into the middle of the file between last and previous file sections, the last section is moved down beforehand. The virus has bugs in infection routine, and infected files in many cases cause standard Windows message about an error in application.
The virus deletes the anti-virus data files: AVP.CRC, IVP.NTZ, ANTI-VIR.DAT, CHKLIST.MS, CHKLIST.CPS, SMARTCHK.MS, SMARTCHK.CPS.
On 7th of any month the virus replaces the standard mouse cursor image with a new one (white scull and black arrow) and displays the message:
DROL v1.0 This is the DROL virus
Copyright (C) Lord Julus / [SLAM]
written for funall ;-)

The new mouse cursor image is written to the DROL.CUR file in the Windows system directory and registered in system Registry.



Top Viruses Visited Pages:
Invader. - 241 visits
not-a-virus:RiskWare.Tool.RegPatch. - 73 visits
Worm.P2P.Harex. - 67 visits
not-a-virus:RemoteAdmin.Win32.RAdmin.2 - 60 visits
Small.58. - 56 visits
Coito.64 - 54 visits
I-Worm.Mapson. - 48 visits
Win32.Hidra - 43 visits
Win16.Klon.1177 - 42 visits
Marine.500 - 35 visits

Random Viruses Pages:
99percent
Jester2.70
Trojan.PKZ300
Macro.Word97.Beas
Jinx famil
Alla.128
Macro.Word.Fuzz
Andrew.63
I-Worm.Duksten.
Debilas.200


 


© 2006-2008 spyware32.com - Privacy Policy