nameless.300
Webroot Antivirus: The best protection against viruses, spyware data theft and hackers.
Description:
Details
Nameless.3000
It is a very dangerous memory resident encrypted parasitic virus. It traces INT 13h and INT 21h, hooks INT 21h, 2Fh, disinfects and executes the host program, and then stays memory resident. On DOS calls Close, Create, GetDiskSpace (INT 21h, AH=3Eh, 3Ch, 36h, 5Ah, 5Bh) the virus searches for .COM and .EXE files, then writes itself to the beginning of the file. If the file size is less than 8000 bytes, the virus increases the file size up to 8000 before infecting. While executing or opening an infected file the virus disinfects it.
Depending on its internal counters and the system time the virus corrupts the random selected disk sectors. The virus also runs a routine that erases the disk sectors and displays the counter of erased tracks (the counter runs backward).
The virus contains text strings in Russian and:
ABCDEFGHabcdefghCOMMAND
Nameless virus v.2.0
U my last hopeall Please...
*.COM *.EXE
Copyright @2006 nameless.300