Main Menu
Home
Bookmark
Contact Us



 
Guerilla.199 Viruses Information

Name: Guerilla.199
Category: Viruses
Description: Details
Guerilla.1996

It is a harmless memory resident parasitic polymorphic and stealth virus. It hooks INT 21h and writes itself to the end of EXE files that are closed. While opening an infected file the virus disinfects it, while searching for files (FindFirst/Next) the virus decreases the returned file length - these are virus stealth routines.
The virus does not infect several anti-viruses according to the string (two bytes per name):
TBVIAVNANEVSFIF-IMFVSCQBIV

When several file compressing utilities, anti-viruses and Windows are run, the virus disables its stealth routines. The list of these programs looks as follows: TBSCAN, TBSETUP, WIN, PKZIP, ARJ, RAR, LHA, ADINF.
While installing memory resident the virus scans the system memory for memory resident anti-viruses TBAV, NAV and NEMESIS. If one is found, the virus terminates its installation routine.
The virus also contains the text strings:
NACSBT NIW PUTESBT PIZKP JRA RAR AHL FNIDA
Guerilla 1996 PH
TB*NAVNEM



Top Viruses Visited Pages:
Invader. - 239 visits
not-a-virus:RiskWare.Tool.RegPatch. - 73 visits
Worm.P2P.Harex. - 66 visits
not-a-virus:RemoteAdmin.Win32.RAdmin.2 - 60 visits
Small.58. - 56 visits
Coito.64 - 54 visits
I-Worm.Mapson. - 48 visits
Win32.Hidra - 43 visits
Win16.Klon.1177 - 42 visits
Marine.500 - 35 visits

Random Viruses Pages:
Imi.165
Massive.38
Zorm.643.
Win95.Rekoj.940.
Win32.HLLC.Sulpex.
I-Worm.Cali
Macro.Word.Niknat.
Tula96.199
Yellow.136
FindM


 


© 2006-2008 spyware32.com - Privacy Policy