Main Menu
Home
Bookmark
Contact Us



 
Win32.Slow.8192. Viruses Information

Name: Win32.Slow.8192.
Category: Viruses
Description: Details
Win32.Slow.8192.a

It is a dangerous nonmemory resident parasitic Windows virus. It searches for PE EXE files (Windows executable files) in the C:, D: and E: drives directory trees and infects them. While infecting the virus compresses victim file with LZ-like method, overwrites the file with its code and appends to the end the victim compressed data. As a result of this way of infection the infected file size may be decreased. To return control back to the host file, the virus extracts it from infected body, unpacks, saves on disk and executes it.
The virus enumerates all active application and closes those of them that contain "AV" or "EB" sub-strings in the caption (AVP and DrWeb anti-virus programs). If AVP32 files are located, the virus overwrites the C:AUTOEXEC.BAT with two instructions that displays the text:
Wait: AVP is searching viruses nowall

and delete all files in the Windows directory.
The virus contains the text string:
[SMF.LZSLOW]



Top Viruses Visited Pages:
Invader. - 231 visits
not-a-virus:RiskWare.Tool.RegPatch. - 69 visits
Worm.P2P.Harex. - 63 visits
not-a-virus:RemoteAdmin.Win32.RAdmin.2 - 55 visits
Small.58. - 55 visits
Coito.64 - 53 visits
I-Worm.Mapson. - 45 visits
Win32.Hidra - 41 visits
Win16.Klon.1177 - 40 visits
Marine.500 - 34 visits

Random Viruses Pages:
Invader.
Seat.238
Sayha.400
Yale.
Methyl.88
I-Worm.Sober.
Macro.Word97.Antimar
Win32.Saynob.240
I-Worm.Davini
Win32.Dream.491


 


© 2006-2008 spyware32.com - Privacy Policy