Main Menu
Home
Bookmark
Contact Us



 
HLLC.Dope.487 Viruses Information

Name: HLLC.Dope.487
Category: Viruses
Description: Details
HLLC.Dope.4870

These are companion viruses written in the C language and compiled with Borland C++ ver 3.0. The viruses were also packed by virus author with PKLite executable file compressor to decrease the virus size.
When an infected file is executed, the virus gets PATH environment variable, randomly selects one of directories listed there, and infects one EXE file in selected directory. While infecting the virus creates the companion .COM file with archive and hidden attributes set, and writes its code to there. The virus then runs the host .EXE file to return control to the host program.
The "Dope.4879" virus is harmless one and does not manifest itself in any way.
The "Dope.5219" is a dangerous virus. Depending on the random counter it overwrites the EXE files with a program that displays the message, when overwritten file is executed:
General failure reading drive
Abort, Retry, Fail?

This virus also contains the text "DOPE By KiLLeRbYtE". The virus checks this string, and in case it is modified (replaced with another text string), it displays the word "Fuk" and immediately exits (with no infection and no host file execution).



Top Viruses Visited Pages:
Invader. - 239 visits
not-a-virus:RiskWare.Tool.RegPatch. - 73 visits
Worm.P2P.Harex. - 66 visits
not-a-virus:RemoteAdmin.Win32.RAdmin.2 - 60 visits
Small.58. - 56 visits
Coito.64 - 54 visits
I-Worm.Mapson. - 48 visits
Win32.Hidra - 43 visits
Win16.Klon.1177 - 42 visits
Marine.500 - 35 visits

Random Viruses Pages:
Goomba.98
8tune
Macro.Word.Le
DKiller.Clouds.65
Mef.148
Marzia.2048.WW.
Exploit.HTML.Iframe.FileDownloa
Green.103
Grunt.34
I-Worm.Avron.


 


© 2006-2008 spyware32.com - Privacy Policy