Main Menu
Home
Bookmark
Contact Us



 
KOH. Viruses Information

Name: KOH.
Category: Viruses
Description: Details
KOH.a

It's a memory resident boot virus. It hooks INT 09h (keyboard) and INT 13h. On loading from infected floppy it asks user for permission to infect hard drive:
KOH-Encrypt your HARD DISK now (please backup first)?

and infects HD on 'Y' answer, in another case it returns control to normal booting. On infection of hard drive this virus encrypts its sectors, the virus asks passwords before infection:
Now, enter 2 passwords, 1 for HD, 1 for FD. FD PW can be changed anytime
with Ctrl/Alt-K, C/A-O stops FD infect, C/A-H uninstalls on HD. Enter HD
PW at power up. WRITE THIS DOWN!
CASUAL encryption=fast but breakable--keeps out snoops.
STRONG encryption=good but slow--keeps out all. Use disk cache.
Do you want STRONG encryption?

On loading from infected HD the virus asks for password and lets booting on true answer only. This virus infects/encrypts floppy disks also. It can decrypt disks and uninstall itself on Ctrl-Alt-K,O,H keyboard keys. This virus contains and displays other strings also:
Initial load failedall aborting.
Load successful. A: now infected with KOH.
Sure you want to uninstall?
Should change be permanent?
Enter FLOPPY PW now.
Now enter HD PW.
Enter
Password:
Verify Password:
Verify failed!
KOHv1.00



Top Viruses Visited Pages:
Invader. - 241 visits
not-a-virus:RiskWare.Tool.RegPatch. - 73 visits
Worm.P2P.Harex. - 67 visits
not-a-virus:RemoteAdmin.Win32.RAdmin.2 - 60 visits
Small.58. - 56 visits
Coito.64 - 54 visits
I-Worm.Mapson. - 48 visits
Win32.Hidra - 43 visits
Win16.Klon.1177 - 42 visits
Marine.500 - 35 visits

Random Viruses Pages:
Win32.Sprede
Win95.Ylang.102
Cyclop.65
Macro.Word.Fer
Tokyo Famil
Macro.Word.Rehene
BlackMonday.105
Lcv.86
Pieces.137
Kadavr.50


 


© 2006-2008 spyware32.com - Privacy Policy