Main Menu
Home
Bookmark
Contact Us



 
LightNing.425 Viruses Information

Name: LightNing.425
Category: Viruses
Description: Details
LightNing.4251

It is a very dangerous memory resident parasitic polymorphic virus. It hooks INT 13h, 21h and writes itself to the end of COM and EXE files that are executed, opened, renamed or when file's attributes are accessed. The virus does not infect anti-viruses AIDSTEST, DRWEB, -V (former AVP), ADINF, SCAN and ANTI*.
When .PAS files are opened (Pascal source files), the virus searches for "BEGIN" string within a .PAS file and inserts a line of source code that either reboots the computer, or halts it:
inline($b9/$02/$00/$e2/$fb);
inline($ea/$f0/$ff/$00/$f0);

By hooking INT 13h the virus encrypts the sectors that contain text data. The virus contains the text strings:
"LightNing" (c) 12.95 by ML, Krasnodar
MetaMorphic Generator (MMG) v1.0
AIDRWE-VADSCAN



Top Viruses Visited Pages:
Invader. - 239 visits
not-a-virus:RiskWare.Tool.RegPatch. - 73 visits
Worm.P2P.Harex. - 66 visits
not-a-virus:RemoteAdmin.Win32.RAdmin.2 - 60 visits
Small.58. - 56 visits
Coito.64 - 54 visits
I-Worm.Mapson. - 48 visits
Win32.Hidra - 43 visits
Win16.Klon.1177 - 42 visits
Marine.500 - 35 visits

Random Viruses Pages:
DSME-based Viruse
VLAD famil
DDoS.Des
Win32.HLLP.Ime
Wave.45
Override Famil
Energizer.50
Search.54
Backdoor.Nethie
DasBoot.


 


© 2006-2008 spyware32.com - Privacy Policy