Main Menu
Home
Bookmark
Contact Us



 
Baphometh.153 Viruses Information

Name: Baphometh.153
Category: Viruses
Description: Details
Baphometh.1536

It is a dangerous memory resident multipartite virus. It infects the MBR of the hard drive, boot sector of floppy disks and writes itself to the end of COM and EXE files that are executed.
While infecting the MBR the virus overwrites the Disk Partition Table, as a result the MBR cannot be disinfected by the "FDISK /MBR" command. The virus also deletes the C:WINDOWSSYSTEMIOSUBSYSHSFLOP.PDR file. It contains the encrypted text string:
Baphometh v2 ~CAD

When an infected file is executed the virus infects the MBR, hooks INT 21h, stays memory resident and then affects executable DOS files. On loading from infected disk the virus hooks INT 8 (timer), INT 13h, waits for DOS loading process and then hooks INT 21h. By hooking INT 13h the virus runs its floppy disk infection and stealth routines - on accessing to infected MBR or boot sector the virus replaces it with its original code and data.



Top Viruses Visited Pages:
Invader. - 239 visits
not-a-virus:RiskWare.Tool.RegPatch. - 73 visits
Worm.P2P.Harex. - 66 visits
not-a-virus:RemoteAdmin.Win32.RAdmin.2 - 60 visits
Small.58. - 56 visits
Coito.64 - 54 visits
I-Worm.Mapson. - 48 visits
Win32.Hidra - 43 visits
Win16.Klon.1177 - 42 visits
Marine.500 - 35 visits

Random Viruses Pages:
DirII.TheHndv.
Nuker.Trance.168
Cowboy.248
Yanush.146
Email-Worm.Win32.Sober.
Traven.51
Macro.Word.Pejuan
Win32.Dream.491
Win32.Zaprom.275
Oxana.141


 


© 2006-2008 spyware32.com - Privacy Policy