Main Menu
Home
Bookmark
Contact Us



 
Tentacle_III.1049 Viruses Information

Name: Tentacle_III.1049
Category: Viruses
Description: Details
Tentacle_III.10496

It is a dangerous memory resident parasitic polymorphic virus. It hooks INT 21h and writes itself to the end of EXE files that are executed or opened. While infecting a file the virus writes to the file EntryPoint the JmpFar_Virus instruction and fixes the EXE relocation table in the same way as "Voronezh.1600" virus does. If an EXE file contains overlay data, the virus moved that data down and writes its code between EXE module and overlay data.
While opening a GIF files the virus depending on its random counter renames them to the name TENTACLE with a random selected extension and overwrites with GIF image of a tentacle.
The virus check the system memory for the memory resident anti-viruses and patches their code, if they are found. The virus also reads some data from IFS$HLP$ and patches it in some way.
The virus contains the text strings:
IFS$HLP$
TBDRVXXXSCANX TBCHKXXXTBMEMXXXTBFILXXXTBDSKXXXTBLOGXXX
WARNING!
Your system is contamined with the Tentacle Virus.
IMPORTANT: Don't open any GIF file!
.GIF.gif.EXE.exeTENTACLE.



Top Viruses Visited Pages:
Invader. - 239 visits
not-a-virus:RiskWare.Tool.RegPatch. - 73 visits
Worm.P2P.Harex. - 66 visits
not-a-virus:RemoteAdmin.Win32.RAdmin.2 - 60 visits
Small.58. - 56 visits
Coito.64 - 54 visits
I-Worm.Mapson. - 48 visits
Win32.Hidra - 43 visits
Win16.Klon.1177 - 42 visits
Marine.500 - 35 visits

Random Viruses Pages:
Backdoor.Death.1
Kei
Free
Naff.82
Hate.97
RMS.147
LittBrother Famil
ASB
Rushhour Famil
BAT.PG9


 


© 2006-2008 spyware32.com - Privacy Policy