tim.1600 famil
Webroot Antivirus: The best protection against viruses, spyware data theft and hackers.
Description:
Details
Tim.1600 Family
These are memory resident parasitic viruses. They hook INT 9, 21h and write themselves to the end of .COM and .EXE files that are executed or opened. They overwrite the first 16 bytes of .COM files with a Jmp-Virus routine. At the end of infected file there is the string "EDCL".
Tim.1600.a
This is a very dangerous virus. It does not infect the BACKUP.COM file. It also hooks INT 13h, and depending on the number of the keys that are pressed, disables writing to the disk (INT 13h, AH=3). It contains the enciphered texts:
Hi to Eastern Digital. Greetings to Mister L.Megafuck to Mihai Sirbu --
MicroTimSoft.
COMEXEBACKUP.COM
Tim.1600.b
This virus is not a dangerous one, it just displays the message:
+-----------------------------------------------+
MegaFuck from Eastern Digital
+-----------------------------------------------+
Tim.1700
It is a very dangerous virus. It checks the file name and does not infect the COMMAND.COM and BACKUP.COM files and deletes the .DOC, .HLP, .ZIP, and .C* files. If the system date is 1988, November 13th, the virus displays the message:
*** warning !!!! Lee Pich is right here !!!! ***
Depending on its counter the virus erases the disk sectors and displays:
*** you have been destroyed by Lee Pich alien v 1.00 ***
The virus also contains the string:
COMMAND.COMCOMEXEDOCHLPZIPCBACKUP.COM
Copyright @2006 tim.1600 famil