Main Menu
Home
Bookmark
Contact Us



 
ShuHard.38 Viruses Information

Name: ShuHard.38
Category: Viruses
Description: Details
ShuHard.386

It is not a dangerous(?) memory resident parasitic virus. It copies itself to Interrupt Vectors Table, hooks INT 21h and writes itself to the end of COM files (except COMMAND.COM) that are closed. While infecting a file the virus uses not documented DOS calls and System File Tables.
When files are executed the virus scans the command line for "doom" text. If it is found, the virus modifies the i386 register CR0 - it sets on the reserved bit (CR0 OR 40000000h). The virus also reverses that bit when any program is executed.
The virus contains the text strings:
doom
VM
DOOM MD! R.ShuHard 1997



Top Viruses Visited Pages:
Invader. - 239 visits
not-a-virus:RiskWare.Tool.RegPatch. - 72 visits
Worm.P2P.Harex. - 66 visits
not-a-virus:RemoteAdmin.Win32.RAdmin.2 - 60 visits
Small.58. - 56 visits
Coito.64 - 54 visits
I-Worm.Mapson. - 48 visits
Win16.Klon.1177 - 42 visits
Win32.Hidra - 42 visits
Marine.500 - 35 visits

Random Viruses Pages:
Shiny Famil
Rev.409
Virus.Win32.Nsag.
WinScript.77
I-Worm.Runouce.
Win95.HPS.512
Olivia.215
AT-Corp.36
Mirage.130
Worm.P2P.Surnova.


 


© 2006-2008 spyware32.com - Privacy Policy