|
|
Lamento.269 Viruses Information
| Name: |
Lamento.269 |
| Category: |
Viruses |
| Description:
|
Details
Lamento.2690
It is a very dangerous memory resident encrypted parasitic virus. It hooks INT 21h and writes itself to the end of COM and EXE files that are accessed. While installing the virus also infects the C:COMMAND.COM and C:DOSMODE.COM files. The virus checks the file name, and does not infect the files that begin with any of the strings:
PCVIR CENTINEL SCAN CLEAN VSHIELD ATM TB CPAV MSAV TNT FINDVIR VC VREMOVE
VSMENU VSCHK MM. KEYB.
On January 21st the virus sets the system date to January, 20th, then deletes C:AUTOEXEC.BAT and C:CONFIG.SYS files, renames to the random names all the files in subdirectories of C: drive:
DOS MSDOS SYS DRDOS IBMDOS
WINDOWS WIN WIN3 WIN30 WIN31 WIN311
While processing Windows' directories the virus looks also for SYSTEM subdirectory. Then the virus displays the messages:
Lamento tener que comunicarle que hoy es 21 de Enero all
... ha sido una cortes¡a de Woi |
Top Viruses Visited Pages:
Invader. - 239 visits
not-a-virus:RiskWare.Tool.RegPatch. - 72 visits
Worm.P2P.Harex. - 66 visits
not-a-virus:RemoteAdmin.Win32.RAdmin.2 - 60 visits
Small.58. - 56 visits
Coito.64 - 54 visits
I-Worm.Mapson. - 48 visits
Win16.Klon.1177 - 42 visits
Win32.Hidra - 42 visits
Marine.500 - 35 visits
Random Viruses Pages:
Puke.39
BlackMonday.105
Win32.Hidra
Patoruzu Famil
Worm.Win32.Grexo
Starcon.105
Macro.Word97.Vov
Andrew.63
4Seasons.153
AmazonQueen.47
|
|