|
|
X-Ray.205 Viruses Information
| Name: |
X-Ray.205 |
| Category: |
Viruses |
| Description:
|
Details
X-Ray.2050
It is not a dangerous memory resident encrypted parasitic virus. It hooks INT 11h, 21h and writes itself to the end of COM and EXE files that are accessed. The virus checks the accessed file name, and if it begins with any of the string listed below, the virus does not infect that file and temporary encrypts its TSR code to prevent detection by anti-virus scanners and utilities. The list of names looks as follows:
TBAV TBSC TBCL TBME TBFI TBDR TBDI TBGE TBSE TBKE TBLO TBUT F-PR AVP.
SCAN CLEA ITAV PV.E DEBU TD.E VPRO VPRU PCSC THDP PROS MSAV NAV. CPAV
AVPV BAIT TEST GOAT VIRS CHEC VDS. ORGA XRAY -D.C -U.C
While infecting a file the virus also deletes the anti-virus data files:
ANTI-VIR.DAT
CHKLIST.MS
Depending on the system date and time the virus displays the message:
+---------------------------------+
¦ The X-Ray virus sends greetings ¦
¦ to everyone who is reading this ¦
¦ textall No panic, I'm harmless! ¦
+---------------------------------+ |
Top Viruses Visited Pages:
Invader. - 231 visits
not-a-virus:RiskWare.Tool.RegPatch. - 69 visits
Worm.P2P.Harex. - 63 visits
not-a-virus:RemoteAdmin.Win32.RAdmin.2 - 55 visits
Small.58. - 55 visits
Coito.64 - 53 visits
I-Worm.Mapson. - 45 visits
Win32.Hidra - 41 visits
Win16.Klon.1177 - 40 visits
Marine.500 - 34 visits
Random Viruses Pages:
Not.57
Dark.101
Lawine.244
Metallica.50
Macro.Word.Katt
Youth Famil
Espacio Famil
I-Worm.Malda
Worm.P2P.Harex.
Riot multipartit
|
|