|
|
Demon3b.431 Viruses Information
| Name: |
Demon3b.431 |
| Category: |
Viruses |
| Description:
|
Details
Demon3b.4313
These are dangerous memory resident stealth and polymorphic parasitic viruses. They hook INT 21h and write themselves to the end of COM and EXE files that are accessed. The viruses use quite complex stealth routine (including disinfection of the files in some cases).
Demon3b.4313,4390
These are very dangerous viruses. They have several errors and may halt the system or corrupt the files while infecting them. The viruses contain the texts:
"Demon3b.4313": [demon4] Hellfire
"Demon3b.4390": [demon4] BETA! DONT DISTRIBUTE Hellfire
"Demon3b.4390" displays:
Demon4 is Watchingall
Demon3b.4767,5670
These viruses delete anti-virus checksum files, disable tracing, avoid infection of some anti-virus programs. While accessing to write-protected disks the viruses display the message:
Disk is Write Protected
Please Unprotect it AND
Press any key to continue . . .
The viruses contain more text strings:
TBDRVXXX bc *
CHKDSK.EXE ZIP.EXE ARJ.EXE SCANDISK.EXE DEFRAG.EXE
SCANANTIVIRAV.AN.F-PROT.EXETBDRIVER.EXENAVTSR
VSAFE.COMTBSETUP.EXETBUTIL.EXEVSHIELD.EXE
[demon3b] Hellfire |
Top Viruses Visited Pages:
Invader. - 239 visits
not-a-virus:RiskWare.Tool.RegPatch. - 73 visits
Worm.P2P.Harex. - 66 visits
not-a-virus:RemoteAdmin.Win32.RAdmin.2 - 60 visits
Small.58. - 56 visits
Coito.64 - 54 visits
I-Worm.Mapson. - 48 visits
Win32.Hidra - 43 visits
Win16.Klon.1177 - 42 visits
Marine.500 - 35 visits
Random Viruses Pages:
Pojer.191
Rape.2877.
Dosver.206
Mixx.57
Burma Famil
92_69.114
Unspeed.92
Macro.Word.Bilb
Flash Famil
LoveChild.271
|
|