|
HMA_Boot. Viruses Information
| Name: |
HMA_Boot. |
| Category: |
Viruses |
| Description:
|
Details
HMA_Boot.a
This is a harmless memory resident multipartite virus. It copies TSR code to HMA memory and hooks INT 21h. It creates a file-dropper in root directory of C: drive and appends to the end of C:CONFIG.SYS file the instruction to load this file into the memory ("INSTALL="). The virus also infects boot sector of A: drive when a program that are executed on A: drive calls GetContryInfo DOS function (AH=38h). While loading from infected floppy disk the virus also hooks INT 1Ah.
It contains the text string:
C:Config.Sys Install= |
Top Viruses Visited Pages:
Invader. - 239 visits
not-a-virus:RiskWare.Tool.RegPatch. - 73 visits
Worm.P2P.Harex. - 66 visits
not-a-virus:RemoteAdmin.Win32.RAdmin.2 - 60 visits
Small.58. - 56 visits
Coito.64 - 54 visits
I-Worm.Mapson. - 48 visits
Win32.Hidra - 43 visits
Win16.Klon.1177 - 42 visits
Marine.500 - 35 visits
Random Viruses Pages:
Xav.KD.90
Alla.128
Syst.169
Macro.Word97.Alar
Fly.176
DarkElf (boot
I-Worm.Musi
Warsaw.85
Industrial.184
Override Famil
|