Main Menu
Home
Bookmark
Contact Us



 
VLAD.Hemlock.318 Viruses Information

Name: VLAD.Hemlock.318
Category: Viruses
Description: Details
VLAD.Hemlock.3183

It's not dangerous memory resident polymorphic stealth multipartite virus. It hooks INT 9, 13h, 21h and writes itself at the end of COM-, EXE, and SYS-files are accessed. On execution of infected files it hits MBR of hard drive. On accessing to floppy disks it overwrites their boot sectors.
On Alt-Ctr-Del it emulates rebooting and stays memory resident. On execution of some programs it disables its stealth routine. It contains the internal text strings:
TBSCAN WIN CHKDSK PKZIP ARJ NDD SCANDISK LHA
co nm /d:f
Hemlock by [qark/VLAD]
OSDATA

VLAD.MegaStealth
It's a not dangerous memory resident stealth multipartite virus. It hooks INT 13h, 21h, 76h and writes itself at the end of .COM-files, MBR of hard and floppy boot sectors are accessed. It displays '¯' character on each INT 21h calls. Interrupts 13h, 76h are used by stealth routine. It contains the internal test string:
[MegaStealth] by qark/VLAD



Top Viruses Visited Pages:
Invader. - 239 visits
not-a-virus:RiskWare.Tool.RegPatch. - 73 visits
Worm.P2P.Harex. - 66 visits
not-a-virus:RemoteAdmin.Win32.RAdmin.2 - 60 visits
Small.58. - 56 visits
Coito.64 - 54 visits
I-Worm.Mapson. - 48 visits
Win32.Hidra - 43 visits
Win16.Klon.1177 - 42 visits
Marine.500 - 35 visits

Random Viruses Pages:
Win95.Lizard.196
Holiday.300
Ha
DarkElf famil
K_Hate.112
I-Worm.Happ
SoFar.25
Green.103
Macro.Word.Munc
Sobakin.959


 


© 2006-2008 spyware32.com - Privacy Policy