| Description:
|
Details
Soulfly.2000
These are very dangerous memory resident encrypted parasitic stealth viruses. They hook INT 21h and write themselves to the end of COM and EXE files that are accessed. While installing into DOS memory they also locate and infect the WIN.COM file in the Windows directory. When the utilities PKZIP.EXE, ARJ.EXE, LHA.EXE, RAR.EXE, BACKUP.EXE, or FTP.EXE are run, the viruses disable their stealth routines.
Under debugger the viruses erase data on the hard drive. On 31st of month depending on the system time they also erase the hard drive's data.
The viruses contain the text strings:
"Soulfly.2000":
SOULFLY, FLY FREE!
T-2000 / Immortal Riot
"Soulfly.2036":
Shaolin Kung-Fu, coming for yu!
Henry Ho - Master in Shaolin Kung-Fu, Sweden. |