- Virus.Win32.RemEx
- The virus is quite large in size - it is written in Microsoft Visual C
and is about 125K. The original virus code occupies about 14K, GZIP
routines - 20K, C run-time libraries - 40K. Other data areas are occupied
by virus/C data, resources, etc.T...
-
- Virus.Win32.RainSong.3891
-
This is a dangerous per-process memory resident parasitic polymorphic Win32
virus. It searches for PE EXE files (Windows executable files) in the Windows
directory and infects them. Then it stays in Windows memory as a component of
the host applicat...
-
- Virus.Win32.Positon.4668
-
This is a harmless, per-process memory resident parasitic Win32 virus that
is encrypted. It infects Win32 EXE applications (PE EXE files) only. While
infecting, the virus creates a new section with the ".Positro" name at the end
of the file, and ...
-
- Virus.Win32.Parvo
- This virus spreads under Win32 (Win95/98 and WinNT) and infects the PE EXE
files (Portable Executable). The virus has quite large size for a program
that is written in Assembler - about 15Kb. It is polymorphic virus.The most interesting feature of th...
-
- Virus.Win32.Perrun.a
- Perrun is a non-dangerous non-memory resident parasitic Win32 virus. It is a Windows
PE EXE file about 12KB in length (when compressed by UPX, the decompressed size
is about 18KB), and written in Visual Basic.The main virus feature is its ability to ...
-
- Virus.Win32.Parite.b
-
This parasitic memory resident virus is functionally identical to Win32.Parite.a.
It differs from Parite.a only in the key that it creates in the system registry:
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\PINF] ...
-
- Virus.Win32.Oporto.3076
-
This is relatively harmless, per-process memory resident Windows virus. It
infects Windows executable files only (PE EXE). While infecting, the virus
increases the size of last file section, writes its code to there and modifies
necessary fields in ...
-
- Virus.Win32.Oroch.3982
-
This is a non-memory resident encrypted Win32 virus. It replicates under
Windows32 systems and infects PE EXE files (Windows executable) with EXE
and SCR filename extensions. The virus also infects MIRC.INI files to
spread its copy to mIRC channe...
-
- Virus.Win32.Nsag.a
-
Virus.Win32.Nsag.a is a detection for an infected copy of the Windows' wininet.dll
file. The purpose of this infection is to transfer calls to the HttpSendRequest
function to a malicious .dll file.There are several pieces of malware which install V...
-
- Virus.Win32.Nox.2290
-
This is a harmless non-memory resident non-encrypted parasitic Win32 virus.
It searches for PE EXE files (Windows executable files) in the current and Windows
directories, then writes itself to the end of the file. Periodically it sets
the system ti...
-
©Virus-Encyclopedia.com. All Rights Reserved..