Main Menu
Home
Bookmark
Contact Us



 
Twin.35 Viruses Information

Name: Twin.35
Category: Viruses
Description: Details
Twin.351

It is a memory resident companion virus: when an .EXE file is executed, the virus creates .COM files with the same name (for example, XCOPY.EXE -> XCOPY.COM) and writes body of the virus into .COM file. After starts the file from DOS prompt DOS finds and runs .COM files first and only then .EXE files. And the first the .COM file (i.e. virus) is started. Then the virus installs and runs the .EXE files with a program.
The virus realizes quite interesting stealth algorithm: it sets the attribute HIDDEN to infected files, hooks INT 21h and controls the FindNext DOS function so that only files without HIDDEN attribute are displayed (in DOS prompt, Norton Commander, XTREE and so on).



Top Viruses Visited Pages:
Invader. - 239 visits
not-a-virus:RiskWare.Tool.RegPatch. - 72 visits
Worm.P2P.Harex. - 66 visits
not-a-virus:RemoteAdmin.Win32.RAdmin.2 - 60 visits
Small.58. - 56 visits
Coito.64 - 54 visits
I-Worm.Mapson. - 48 visits
Win16.Klon.1177 - 42 visits
Win32.Hidra - 42 visits
Marine.500 - 35 visits

Random Viruses Pages:
Tchechen Famil
I-Worm.Bagle.a
Star.48
Email-Worm.Win32.Monikey.
Paz.2560.
Macro.Word.GoodNigh
Macro.Word.Gabl
Leda.82
Digger.100
Xynet.94


 


© 2006-2008 spyware32.com - Privacy Policy