Viral Rewind: Virus.DOS.Ha1

preview_player
Показать описание
-----------------------------------------------------------
. In this Viral Rewind we look at a rather simplistic DOS virus: Ha (or formally known as Ha1). It's a typical memory-resident file infector infecting .COM and .EXE files upon execution by appending itself to the end of the file. This obviously results in a file size increase that can be seen when viewing the file's details after infection.

The payload: Starting January 16th onwards, every 16 days (ex January 16th, February 1st, February 17th, March 5th, etc) Ha will display a graphical payload whenever the user attempts to perform a warm reboot using Ctrl+Alt+Del. "Ha!" will be displayed with an animation-like effect scrolling the ASCII characters that make it up and "version a" displayed below it. Keyboard input is locked out including Ctrl+Alt+Del requiring the user to hard reset. Ha is non-destructive; it only infects files and displays the payload on the said says.

------------------------------------------------------

Рекомендации по теме