Main Menu
Home
Bookmark
Contact Us



 
Terminator.327 Viruses Information

Name: Terminator.327
Category: Viruses
Description: Details
Terminator.3275

This is a benign memory resident encrypted parasitic virus. Upon being executed, it searches for CONFIG.SYS file, inserts the string "device=vmem.sys" into that file, creates a VMEM.SYS file in the root directory of the current drive, and writes the virus dropper in the VMEM.SYS file. Then the virus returns to the host program.
While loading, DOS processes the CONFIG.SYS file and loads into the memory that infected VMEM.SYS. As a result, the virus gains control, stays memory resident as a device driver with the name "DOSxxVMS" (xx is the version of installed DOS), and hooks INT 21h. Then the virus writes itself to the end of COM and EXE files that are accessed. It does not infect the disks if there is a MICRO.BUG file in the root directory.
Depending on the current time, the virus displays the following message:
You have been stupied and careless, so now
the TERMINATOR (tm) will take over your computer.
You will get it back either when you grow up,
or get an ANTI-VIRUS.
+-------------------------------------------+
ƒRemember: Software piracy is forbidden! ƒ
ƒ DO NOT MAKE ILLEGAL COPIES OF THIS VIRUS!!ƒ
+-------------------------------------------+
It also contains the strings:
TERMINATOR
COMSPEC=
micro.bug
device=vmem.sys
A:config.sys
A:msdos.*
A:ibmdos.*
A:command.*



Top Viruses Visited Pages:
Invader. - 239 visits
not-a-virus:RiskWare.Tool.RegPatch. - 72 visits
Worm.P2P.Harex. - 66 visits
not-a-virus:RemoteAdmin.Win32.RAdmin.2 - 60 visits
Small.58. - 56 visits
Coito.64 - 54 visits
I-Worm.Mapson. - 48 visits
Win16.Klon.1177 - 42 visits
Win32.Hidra - 42 visits
Marine.500 - 35 visits

Random Viruses Pages:
Macro.Word.Mente
Pebbl
Wally.102
SMEG.v0_3.Demo.
Prion.31
Sistor.100
Naff.82
JT8.100
Tula.154
Warblade.105


 


© 2006-2008 spyware32.com - Privacy Policy