̾¡¡¡¡¾Î:P1
ÊÌ¡¡¡¡Ì¾:Phoenix
ʬ¡¡¡¡Îà:¥Õ¥¡¥¤¥ë´¶À÷·¿, ¥á¥â¥ê¾ïÃó·¿
ÂС¡¡¡¾Ý:.COM(DOS)
¥¦¥¤¥ë¥¹¥µ¥¤¥º:Ìó1226 bytes
ȯ¾ÍÃÏ:¥Ö¥ë¥¬¥ê¥¢
¾Ü¡¡¡¡ºÙ:´¶À÷¥Õ¥¡¥¤¥ë¤ò¼Â¹Ô¤¹¤ë¤È¡¢¥á¥â¥ê¤Ë¾ïÃó¤·¡¢
°Ê¸å¥¢¥¯¥»¥¹¤·¤¿¤¹¤Ù¤Æ¤Î.COM¥Õ¥¡¥¤¥ë¤Ë´¶À÷¤¹¤ë¡£
»³²¡¨
´¶À÷¤¹¤ë¤À¤±¤ÇÆÃ¤ËÇ˲õ³èư¤Ï¤Ê¤¤
̾¡¡¡¡¾Î:PA-5220
ʬ¡¡¡¡Îà:¥Õ¥¡¥¤¥ë´¶À÷·¿
ÂС¡¡¡¾Ý:.COM;.EXE
¥¦¥¤¥ë¥¹¥µ¥¤¥º:N/A
ȯ¾ÍÃÏ:ÉÔÌÀ
ȯ¸«Æü:ÉÔÌÀ
¾Ü¡¡¡¡ºÙ:´¶À÷ÊýË¡:
¥Ç¥£¥¹¥¯A:¡¢B:¡¢C:¤Î¥«¥ì¥ó¥È¥Ç¥£¥ì¥¯¥È¥êÆâ¤Î.COM¤Þ¤¿
¤Ï¡¢
.EXE¥Õ¥¡¥¤¥ë¤òõ¤·½Ð¤·¤Æ1¤Ä¤º¤Ä´¶À÷¤¹¤ë¡£
Ç˲õ:
¥ª¥ê¥¸¥Ê¥ë¥Õ¥¡¥¤¥ë¤Ë¥¦¥¤¥ë¥¹¥³¡¼¥É¤Ç¾å½ñ¤¤¹¤ë¤¿¤á¡¢
¥Õ¥¡¥¤¥ë¤¬Ç˲õ¤µ¤ì¤ë¡£
È÷¡¡¡¡¹Í:1¡Ë¥á¥Ç¥£¥¢¤Ê¤É¤Ë¥é¥¤¥È¥×¥í¥Æ¥¯¥È¡Ê½ñ¤¹þ¤ß
¶Ø»ß½èÍý¡Ë¤¬»Ü¤µ¤ì¤Æ¤¤¤ë¾ì¹ç¡¢
¥×¥í¥°¥é¥à¼Â¹Ô»þ¤Ë"½ñ¤¹þ¤ßÉÔ²Ä"¤È¤¤¤¦°ÕÌ£¤Î¥¨¥é
¡¼¥á¥Ã¥»¡¼¥¸¤òɽ¼¨¤¹¤ë¡£
2¡Ë¹âµé¸À¸ì¤Ç½ñ¤«¤ì¤Æ¤¤¤ë¡£
̾¡¡¡¡¾Î:PA-5792
ʬ¡¡¡¡Îà:¥Õ¥¡¥¤¥ë´¶À÷·¿
ÂС¡¡¡¾Ý:.EXE
¥¦¥¤¥ë¥¹¥µ¥¤¥º:5792¥Ð¥¤¥È
ȯ¾ÍÃÏ:ÉÔÌÀ
ȯ¸«Æü:ÉÔÌÀ
¾Ü¡¡¡¡ºÙ:´¶À÷ÊýË¡:
1¡Ë¥«¥ì¥ó¥È¥Ç¥£¥ì¥¯¥È¥ê¤ÈA:¥É¥é¥¤¥Ö¤Î.EXE¥Õ¥¡¥¤¥ë¤òõ
¤·½Ð¤¹¡£
2¡Ë¤¹¤Ç¤Ë PA-5792¥¦¥¤¥ë¥¹¤Ë´¶À÷¤·¤Æ¤¤¤ì¤Ð¾¤Î̤´¶À÷.
EXE¥Õ¥¡¥¤¥ë¤òõ¤¹¡£
3¡Ë°ìÅÙ¤Ë7¤Ä¤Î¥Õ¥¡¥¤¥ë¤Ë´¶À÷¤¹¤ë¡£
4¡ËºÇ¸å¤Ë¥ª¥ê¥¸¥Ê¥ë¥×¥í¥°¥é¥à¤ò¼Â¹Ô¤¹¤ë¡£
Ç˲õ:´¶À÷¡¢Áý¿£°Ê³°¤Î³èư¤Ï¤Ê¤·¡£
¼±ÊÌÊýË¡:´¶À÷¥Õ¥¡¥¤¥ë¤Ï5792¥Ð¥¤¥ÈÁý²Ã¤¹¤ë¡£
È÷¡¡¡¡¹Í:¥á¥Ç¥£¥¢¤Ê¤É¤Ë¥é¥¤¥È¥×¥í¥Æ¥¯¥È¡Ê½ñ¤¹þ¤ß¶Ø
»ß½èÍý¡Ë¤¬»Ü¤µ¤ì¤Æ¤¤¤ë¾ì¹ç¡¢
¥×¥í¥°¥é¥à¼Â¹Ô»þ¤Ë"½ñ¤¹þ¤ßÉÔ²Ä"¤È¤¤¤¦°ÕÌ£¤Î¥¨¥é¡¼¥á
¥Ã¥»¡¼¥¸¤òɽ¼¨¤¹¤ë¡£
̾¡¡¡¡¾Î:PACMAN_GHOST
ʬ¡¡¡¡Îà:¥Õ¥¡¥¤¥ë´¶À÷·¿
ÂС¡¡¡¾Ý:.EXE
¥¦¥¤¥ë¥¹¥µ¥¤¥º:89ޤ021¥Ð¥¤¥È
ȯ¾ÍÃÏ:ÉÔÌÀ
ȯ¸«Æü:ÉÔÌÀ
¾Ü¡¡¡¡ºÙ:¾É¾õ¡¡¡¡:¡¡¥×¥í¥°¥é¥à¥¢¥¤¥³¥ó¤¬¡¢¥Õ¡¼¥É¤ò
¤«¤Ö¤Ã¤¿¥Ñ¥Ã¥¯¥Þ¥ó¤Î¤è¤¦¤ËÊѲ½¤¹¤ë°Ê³°¡¢
¡¡¡¡¡¡¡¡¡¡¡¡ÆÃ¤ËÇ˲õ³èư¤Ï¤Ê¤¤¡£
¼±ÊÌÊýË¡:¡¡¥×¥í¥°¥é¥à¥¢¥¤¥³¥ó¤¬¥Ñ¥Ã¥¯¥Þ¥ó¤Î³¨¤ËÊѲ½
¤·¤Æ¤¤¤ë¡£
C:\WINDOWS¥Ç¥£¥ì¥¯¥È¥ê¤Ë"VIDACCEL.EXE"¥Õ¥¡¥¤¥ë¤¬ºîÀ®
¤µ¤ì¤ëŽ¡
WIN.INI¥Õ¥¡¥¤¥ë¤Ë"LOAD=VIDACCEL.EXE"¤È¤¤¤¦¥³¡¼¥É¤¬ÉÕ
¤±²Ã¤¨¤é¤ì¤ëŽ¡
̾¡¡¡¡¾Î:PARASITE
ÊÌ¡¡¡¡Ì¾:VIENNA.PARASITE
ʬ¡¡¡¡Îà:¥Õ¥¡¥¤¥ë´¶À÷·¿
ÂС¡¡¡¾Ý:.COM
¥¦¥¤¥ë¥¹¥µ¥¤¥º:648¥Ð¥¤¥È
ȯ¾ÍÃÏ:޵ް޽ŽÄިޱ
ȯ¸«Æü:1988/04
¾Ü¡¡¡¡ºÙ:ÆÃħ:
¡Ý¡¡´¶À÷¥Õ¥¡¥¤¥ë¤ò¼Â¹Ô¤¹¤ëÅÙ¤Ë.COM¥Õ¥¡¥¤¥ë£±¤Ä¤Ë´¶À÷
¤¹¤ë¡£
¡Ý¡¡ÆÃ¤ËÇ˲õ³èư¤Ï¹Ô¤ï¤Ê¤¤¡£
È÷¡¡¡¡¹Í:¡Ý¡¡Vienna¥¦¥¤¥ë¥¹¤Î°¡¼ï¡£
¡¡
̾¡¡¡¡¾Î:PARITY_BOOT.B
ÊÌ¡¡¡¡Ì¾:GENERIC1
ʬ¡¡¡¡Îà:¥·¥¹¥Æ¥àÎΰ贶À÷·¿
ÂС¡¡¡¾Ý:FD:¥Ö¡¼¥È¥»¥¯¥¿;HD:¥Þ¥¹¥¿¡¼¥Ö¡¼¥È¥ì¥³¡¼¥É
¥¦¥¤¥ë¥¹¥µ¥¤¥º:N/A
ȯ¾ÍÃÏ:ŽÄŽÞ޲ŽÂ
ȯ¸«Æü:1992/10
¾Ü¡¡¡¡ºÙ:´¶À÷ÊýË¡:¡Ý¤³¤Î¥¦¥¤¥ë¥¹¤Ë´¶À÷¤·¤¿¥Õ¥í¥Ã¥Ô
¡¼¥Ç¥£¥¹¥¯¤Ç¥Þ¥·¥ó¤Îµ¯Æ°Æ°ºî¤ò¹Ô¤¦¤È
¥Ï¡¼¥É¥Ç¥£¥¹¥¯¤Î¥·¥¹¥Æ¥àÎΰè¡Ê¥Þ¥¹¥¿¡¼¥Ö¡¼¥È¥ì¥³¡¼
¥É¡Ë¤Ë´¶À÷¤¹¤ë¡£
¡Ý¤³¤Î¥¦¥¤¥ë¥¹¤Ë´¶À÷¤·¤¿¥Ï¡¼¥É¥Ç¥£¥¹¥¯¤Ç¥Þ¥·¥ó¤òµ¯Æ°
¤¹¤ë¤È¡¢¥á¥â¥ê¡¼¤Ë¾ïÃó¤·¤Æ
¥Õ¥¡¥¤¥ë¤ÎÆþ½ÐÎϤò´Æ»ë¤¹¤ë¡£¤½¤Î¸å¡¢½ñ¤¹þ¤ß²Äǽ¤Ê¥Õ
¥í¥Ã¥Ô¡¼¥Ç¥£¥¹¥¯¤Ë¥¢¥¯¥»¥¹¤¹¤ë¤È¡¢
¤½¤Î¥Ç¥£¥¹¥¯¤Î¥Ö¡¼¥È¥»¥¯¥¿¤Ë´¶À÷¤¹¤ëŽ¡
¡ÝParity Boot¥¦¥¤¥ë¥¹¤Ï¥¹¥Æ¥ë¥¹·¿¥¦¥¤¥ë¥¹¤Ê¤Î¤Ç¡¢´¶À÷
¤·¤¿¥Ñ¡¼¥Æ¥£¥·¥ç¥ó¡¦
¥Æ¡¼¥Ö¥ë¤ä¥Ö¡¼¥È¥»¥¯¥¿¤òÆÉ¤ß¹þ¤â¤¦¤È¤¹¤ë¤È¡¢¥¦¥¤¥ë¥¹
¤¬Êݸ¤·¤Æ¤¤¤ëËÜÍè¤Î̤´¶À÷¤Ê
¥·¥¹¥Æ¥àÎΰè¾ðÊó¤òɽ¼¨¤¹¤ëŽ¡
ȯÉÂ:¡Ý¥·¥¹¥Æ¥à¤¬µ¯Æ°¤¹¤ë¤ÈƱ»þ¤Ë¥¦¥¤¥ë¥¹¤Ï¥¿¥¤¥Þ¤ò¥»
¥Ã¥È¤¹¤ë¡£
¡Ý¥Õ¥í¥Ã¥Ô¡¼¥Ç¥£¥¹¥¯¤Ë´¶À÷¤¹¤ë¤¿¤Ó¤Ë¥¿¥¤¥Þ¤Ï¥ê¥»¥Ã¥È
¤µ¤ì¤ë¡£
¡Ý¥Õ¥í¥Ã¥Ô¡¼¤Ë´¶À÷¤¹¤ë¤³¤È¤Ê¤¯£±»þ´Ö¤¬·Ð²á¤¹¤ë¤È¡¢¥¦
¥¤¥ë¥¹¤Ï²èÌ̤Ë
¡¡"Parity Check"
¤Èɽ¼¨¤·¥·¥¹¥Æ¥à¤ò¥Ï¥ó¥°¤¹¤ë¡£
¤½¤Î¾:
¡Ýȯɤ¢¤¿¤«¤â¥Ñ¥ê¥Æ¥£¥¨¥é¡¼¤¬È¯À¸¤·¤¿¤«¤Î¤è¤¦¤ËÁõ
¤¦¡£¤½¤Î¤¿¤á¡¢¤³¤Î¤è¤¦¤Ê̾Á°¤¬
ÉÕ¤±¤é¤ì¤Æ¤¤¤ë¡£
̾¡¡¡¡¾Î:PATH
ʬ¡¡¡¡Îà:¥Õ¥¡¥¤¥ë´¶À÷·¿
ÂС¡¡¡¾Ý:.COM
¥¦¥¤¥ë¥¹¥µ¥¤¥º:906+G¥Ð¥¤¥È
ȯ¾ÍÃÏ:ÉÔÌÀ
ȯ¸«Æü:ÉÔÌÀ
¾Ü¡¡¡¡ºÙ:´¶À÷ÊýË¡:
¤Þ¤º¡¢¥¦¥¤¥ë¥¹¤Ï¼«¿È¤Î¥³¡¼¥É¤ò°Å¹æ²òÆÉ¤¹¤ë¡£
´¶À÷²Äǽ¤Ê¥Õ¥¡¥¤¥ë¤¬¤¢¤ì¤Ð1¤Ä¤À¤±´¶À÷¤·¡¢¤Ê¤±¤ì¤Ð¥ª¥ê
¥¸¥Ê¥ë¥ë¡¼¥Á¥ó¤ò¼Â¹Ô¤¹¤ë¡£
¸¡º÷¥Ñ¥¹¤ÏPATH¤ËÀßÄꤵ¤ì¤¿Ä̤ꡣ
10¡Á64000¥Ð¥¤¥È¥µ¥¤¥º¤Î̤´¶À÷.COM¥Õ¥¡¥¤¥ë¤Ë¤Î¤ß´¶À÷¤¹
¤ë¡£
Ç˲õ:´¶À÷¡¢Áý¿£°Ê³°¤Î³èư¤Ï¤Ê¤·¡£
È÷¡¡¡¡¹Í:1¡Ë´¶À÷¥Õ¥¡¥¤¥ë¤ÎÆüÉդȻþ¹ï¤ÏÊѹ¹¤µ¤ì¤Ê¤¤¡£
2¡Ë´¶À÷¥Õ¥¡¥¤¥ë¤Ï906+G¥Ð¥¤¥ÈÁý²Ã¤¹¤ë¡£ (0<=G<=247)
̾¡¡¡¡¾Î:PCBB
ʬ¡¡¡¡Îà:¥Õ¥¡¥¤¥ë´¶À÷·¿
ÂС¡¡¡¾Ý:.COM
¥¦¥¤¥ë¥¹¥µ¥¤¥º:1675¡Á1687¥Ð¥¤¥È
ȯ¾ÍÃÏ:ÉÔÌÀ
ȯ¸«Æü:ÉÔÌÀ
¾Ü¡¡¡¡ºÙ:´¶À÷ÊýË¡:
¤Þ¤º¡¢¥¦¥¤¥ë¥¹¤Ï¼«¿È¤Î¥³¡¼¥É¤ò°Å¹æ²òÆÉ¤¹¤ë¡£
¥á¥â¥ê¤Ë¾ïÃ󤷤Ƥ¤¤Ê¤±¤ì¤Ð¾å°Ì¥á¥â¥ê¤Ë¾ïÃ󤹤롣¾ïÃó
¸å¡¢¥ª¥ê¥¸¥Ê¥ë¥ë¡¼¥Á¥ó¤ËÌá¤ë¡£
¥Õ¥¡¥¤¥ë¤ò¼Â¹Ô¡¢¥³¥Ô¡¼¡¢Â°ÀÊѹ¹¡¢¥ª¡¼¥×¥ó¡¢¥¯¥í¡¼¥º
¤Þ¤¿¤Ï¥ê¥Í¡¼¥à¤¹¤ë¤È´¶À÷¤¹¤ë¡£
´¶À÷¤¹¤ë¤È¡¢¤Þ¤º¥·¥¹¥Æ¥à¤ÎÍËÆü¤ò¥Á¥§¥Ã¥¯¤¹¤ë¡£
ÍËÆü¤´¤È¤Ë7¼ïÎà¤Î°Å¹æ¥³¡¼¥É¤ò¤â¤Ã¤Æ¤ª¤ê¡¢¤½¤ÎÃæ¤«¤éº£
Æü¤ÎÍËÆü¤Ë¹ç¤¦¤â¤Î¤òÁªÂò¤¹¤ë¡£
Ʊ¤¸¥Õ¥¡¥¤¥ë¤Ë¤ÏºÆ´¶À÷¤·¤Ê¤¤¡£
´¶À÷²Äǽ¤Ê¥Õ¥¡¥¤¥ë¥µ¥¤¥º¤Ï16¡Á61440¥Ð¥¤¥È¡£
ÆÃħ:
ȯɤ¹¤ë¤È¡¢¥¡¼ÆþÎϤβó¿ô¤¬¤¬957²ó¤Ë¤Ê¤ëÅ٤˲èÌ̤¬¾Ã
¤¨¤ë¡£
¤½¤Î¸å¡¢¥«¥¦¥ó¥¿¤ò¥ê¥»¥Ã¥È¤·¡¢ºÆ¤Ó¥«¥¦¥ó¥È¤·»Ï¤á¤ë¡£
¥¡¼¥Ü¡¼¥É¾å¤Ç¡¢Ž¢ALTŽ£¥¡¼¡¢[Control]¥¡¼µÚ¤Óº¸±¦¤Î[
Shift]¥¡¼¤ò¤¹¤Ù¤ÆÆ±»þ¤Ë
²¡¤¹¤È²èÌ̤¬ºÆ¤Óɽ¼¨¤µ¤ì¤ë¡£
¼±ÊÌÊýË¡:
1¡Ë´¶À÷¥Õ¥¡¥¤¥ë¤ÎÆüÉդȻþ¹ï¤ÏÊѹ¹¤µ¤ì¤ë¡£
2¡Ë´¶À÷¥Õ¥¡¥¤¥ë¤ÏÍËÆü¤´¤È¤Ë¡¢ÆüÍËÆü¤«¤éÅÚÍËÆü¤Þ¤Ç½ç
¤Ë¡¢
¡¡¤½¤ì¤¾¤ì1675¡¢1677¡¢1679¡¢1679¡¢1680¡¢1683¡¢1687¥Ð
¥¤¥ÈÁý²Ã¤¹¤ë¡£
3¡Ë"PCBB" ¤È¤¤¤¦Ê¸»ú¤¬´¶À÷¥Õ¥¡¥¤¥ë¤ÎºÇ¸å¤ËÄɲ䵤ì
¤ë¡£
̾¡¡¡¡¾Î:PCBB-11
ʬ¡¡¡¡Îà:¥Õ¥¡¥¤¥ë´¶À÷·¿
ÂС¡¡¡¾Ý:.COM;.EXE
¥¦¥¤¥ë¥¹¥µ¥¤¥º:3052¥Ð¥¤¥È
ȯ¾ÍÃÏ:ÉÔÌÀ
ȯ¸«Æü:ÉÔÌÀ
¾Ü¡¡¡¡ºÙ:´¶À÷ÊýË¡:
¥á¥â¥ê¤Ë¾ïÃ󤷤Ƥ¤¤Ê¤±¤ì¤Ð¡¢¾å°Ì¥á¥â¥ê¤Ë¾ïÃ󤹤롣
¾ïÃó¸å¡¢¥ª¥ê¥¸¥Ê¥ë¥ë¡¼¥Á¥ó¤ò¼Â¹Ô¤¹¤ë¡£
̤´¶À÷¤Î.COM¤Þ¤¿¤Ï.EXE¥Õ¥¡¥¤¥ë¤¬¼Â¹Ô¤µ¤ì¤ëÅ٤˴¶À÷¤¹
¤ë¡£
»ÈÍѳä¤ê¹þ¤ßÌ¿Îá:INT 21h¡¢INT 24h
È÷¡¡¡¡¹Í:
̾¡¡¡¡¾Î:PCBB-3072
ʬ¡¡¡¡Îà:¥Õ¥¡¥¤¥ë´¶À÷·¿
ÂС¡¡¡¾Ý:.COM;.EXE
¥¦¥¤¥ë¥¹¥µ¥¤¥º:3072¥Ð¥¤¥È
ȯ¾ÍÃÏ:ÉÔÌÀ
ȯ¸«Æü:ÉÔÌÀ
¾Ü¡¡¡¡ºÙ:´¶À÷ÊýË¡:
¥á¥â¥ê¤Ë¾ïÃ󤷤Ƥ¤¤Ê¤±¤ì¤Ð¡¢¾å°Ì¥á¥â¥ê¤Ë¾ïÃ󤹤롣
¾ïÃó¸å¡¢¥ª¥ê¥¸¥Ê¥ë¥ë¡¼¥Á¥ó¤ËÌá¤ë¡£
̤´¶À÷¤Î.COM¤Þ¤¿¤Ï.EXE¥Õ¥¡¥¤¥ë¤¬¼Â¹Ô¤µ¤ì¤ëÅ٤˴¶À÷¤¹
¤ë¡£
»ÈÍѳä¤ê¹þ¤ßÌ¿Îá:INT 21h¡¢INT 24h
È÷¡¡¡¡¹Í:
̾¡¡¡¡¾Î:PCBB-B
ʬ¡¡¡¡Îà:¥Õ¥¡¥¤¥ë´¶À÷·¿
ÂС¡¡¡¾Ý:.COM;.EXE
¥¦¥¤¥ë¥¹¥µ¥¤¥º:3072¥Ð¥¤¥È¡Ê.COM¡¢.EXE¡Ë
ȯ¾ÍÃÏ:ÉÔÌÀ
ȯ¸«Æü:ÉÔÌÀ
¾Ü¡¡¡¡ºÙ:´¶À÷ÊýË¡:
1¡Ë¥á¥â¥ê¤Ë¾ïÃ󤷤Ƥ¤¤Ê¤±¤ì¤Ð¡¢ºÇ¾å°Ì¥á¥â¥ê¤Ë¾ïÃó¤¹
¤ë¡£
2¡Ë¾ïÃó¸å¡¢¥ª¥ê¥¸¥Ê¥ë¥Õ¥¡¥¤¥ë¤ò¼Â¹Ô¤¹¤ë¡£
3¡Ë¥á¥â¥ê¤Ë¾ïÃó¤·¡¢Ì¤´¶À÷¤Î¥Õ¥¡¥¤¥ë¤¬¼Â¹Ô¤µ¤ì¤ëÅ٤˴¶
À÷¤¹¤ë¡£
Ç˲õ:´¶À÷¡¢Áý¿£°Ê³°¤Î³èư¤Ï¤Ê¤·¡£
¼±ÊÌÊýË¡:´¶À÷¥Õ¥¡¥¤¥ë¤Ï3072¥Ð¥¤¥ÈÁý²Ã¤¹¤ë¡£
»ÈÍѳä¤ê¹þ¤ßÌ¿Îá:INT 21h¡¢INT 24h
È÷¡¡¡¡¹Í:¥á¥Ç¥£¥¢¤Ê¤É¤Ë¥é¥¤¥È¥×¥í¥Æ¥¯¥È¡Ê½ñ¤¹þ¤ß¶Ø
»ß½èÍý¡Ë¤¬»Ü¤µ¤ì¤Æ¤¤¤ë¾ì¹ç¤Ç¤â¡¢
¥×¥í¥°¥é¥à¼Â¹Ô»þ¤Ë"½ñ¤¹þ¤ßÉÔ²Ä"¤È¤¤¤¦°ÕÌ£¤Î¥¨¥é¡¼¥á
¥Ã¥»¡¼¥¸¤òɽ¼¨¤·¤Ê¤¤¡£
̾¡¡¡¡¾Î:PE_ANXIETY
ÊÌ¡¡¡¡Ì¾:ANXIETY.POPPY, ANXIETY.POPPY.95, PE_ANXTY.
POPY.II, POPPY, ANXIETY, W95.ANXIETY
ʬ¡¡¡¡Îà:¥Õ¥¡¥¤¥ë´¶À÷·¿
ÂС¡¡¡¾Ý:PE 32-bit (Windows 95)
¾Ü¡¡¡¡ºÙ:PE_Anxiety ¤Ï¡¢Windows 95¾å¤Î32-bit EXE¤Ë´¶
À÷¤¹¤ë¥¦¥¤¥ë¥¹¤Ç¤¢¤ë¡£
´¶À÷¥Õ¥¡¥¤¥ë¤ò¼Â¹Ô¤¹¤ë¤È¡¢¥á¥â¥ê¤Ë¾ïÃ󤹤롣
¤½¤Î¸å´¶À÷¤·¤Æ¤¤¤Ê¤¤PE¥Õ¥¡¥¤¥ë¤¬¼Â¹Ô¤µ¤ì¤ë¤È¡¢¥³¡¼¥É
Æâ¤Î»ÈÍѤµ¤ì¤Æ¤¤¤Ê¤¤Éôʬ¤Ë
¥¦¥¤¥ë¥¹¥³¡¼¥É¤ò¥³¥Ô¡¼¤¹¤ë¡£
¥¦¥¤¥ë¥¹¥³¡¼¥É¤Î¤Ê¤«¤Ë¤Ï°Ê²¼¤Î¥Æ¥¥¹¥È¤¬¤¢¤ë¡£
"Anxiety.1358":
Anxiety.Poppy.95 by VicodinES
"Anxiety.1823": Anxiety.Poppy.II by VicodinES
...feel the pain, mine not yours!
all alone and I dont understand
a cry for help and no one answers
will I last for more than a week
will I taste the gunpowder
can I end it all and make it easy is it sick to ask |
is it safe to cry
will I be gone soon
will I last
will you care
will I?
--
if you dont hear from me in a while -
say a prayer for me because I have left, never to
return.
--
peaceful goodnight, hopefully...
Vic
--
̾¡¡¡¡¾Î:PE_BABYLONIA
ÊÌ¡¡¡¡Ì¾:W95.BABYLONIA, W95/BABYLONIA
ʬ¡¡¡¡Îà:¥Õ¥¡¥¤¥ë´¶À÷·¿
ÂС¡¡¡¾Ý:Windows 95/98
ȯ¾ÍÃÏ:Brazil
¾Ü¡¡¡¡ºÙ:´¶À÷
´¶À÷¥Õ¥¡¥¤¥ë¤ò¼Â¹Ô¤¹¤ë¤È¡¢¥·¥¹¥Æ¥à¥É¥é¥¤¥Ð¡¼(VxD)¤È¤·
¤ÆÅÐÏ¿¤µ¤ì¥á¥â¥ê¤Ë¾ïÃó¤·¤Þ¤¹¡£Æ±»þ¤Ë¡¢¤³¤Î¤È¤¡¢C¥É¥é
¥¤¥Ö¤Î¥ë¡¼¥È¥Ç¥£¥ì¥¯¥È¥ê¤ËBabylonia.exe(4096
Bytes)¤¬ºîÀ®¤µ¤ì¤Þ¤¹¡£
¤Þ¤¿¡¢Kernel32.exe(4096 Bytes)¤¬ c:\windows
\system¤ÎÃæ¤ËºîÀ®¤µ¤ì¤Þ¤¹¡£¤½¤·¤Æ°Ê²¼¤Î¥ì¥¸¥¹¥È¥ê
¤ËÃͤòÄɲä·¡¢µ¯Æ°»þ¤Ëɬ¤º¥¦¥¤¥ë¥¹¤¬¼Â¹Ô¤µ¤ì¤ë¤è¤¦¤Ë
ÀßÄꤷ¤Þ¤¹¡£
HKEY_LOCAL_MACHINE\
SOFTWARE\Microsoft\Windows\CurrentVersion\Run
KERNEL32.EXE="KERNEL32.EXE"
¤³¤Î¤È¤¡¢Ã»¤¤´Ö¡¢Instalar.exe ¤È¤¤¤¦¥µ¥ó¥¿¤Î¥¢¥¤¥³¥ó
¤ò¤·¤¿¥Õ¥¡¥¤¥ë¤¬C¥É¥é¥¤¥Ö¤Î¥ë¡¼¥È¤ËºîÀ®¤µ¤ì¤Þ¤¹¡£¤³¤ì
¤Ï´¶À÷¥ë¡¼¥Á¥ó¤¬»Ï¤Þ¤ëÁ°¤Ëºï½ü¤µ¤ì¤Þ¤¹¡£
¥á¥â¥ê¤Ë¾ïÃó¤·¤¿¥¦¥¤¥ë¥¹¤Ï¡¢¥Õ¥¡¥¤¥ëŽ¥¥¢¥¯¥»¥¹¤ò´Æ»ë
¤·¡¢¥¢¥¯¥»¥¹¤·¤¿PE¥Õ¥¡¥¤¥ë¤Ë´¶À÷¤·¤Þ¤¹¡£´¶À÷¤·¤¿¥Õ¥¡
¥¤¥ë¤Ï¥Õ¥¡¥¤¥ë¥µ¥¤¥º¤¬Â礤¯¤Ê¤ê¡¢¥¿¥¤¥à¥¹¥¿¥ó¥×¤¬´¶
À÷»þ¤ËÊѹ¹¤µ¤ì¤Þ¤¹¡£
¤Þ¤¿¡¢Windows¤Î ¥Ø¥ë¥×¥Õ¥¡¥¤¥ë(.HLP)¤ËÂФ·¤Æ¤â´¶À÷¤ò
¹Ô¤¤¤Þ¤¹¡£PE_BABYLONIA¤Ï¡¢HLP¥Õ¥¡¥¤¥ë¤¬¥·¥¹¥Æ¥à¤Ç»ÈÍÑ
¤µ¤ì¤¿¤È¤¡¢¥Õ¥¡¥¤¥ë¤Ë¥¹¥¯¥ê¥×¥È¤òËä¤á¹þ¤ß¤Þ¤¹¡£¤³¤Î
¥¹¥¯¥ê¥×¥È¤¬Ëä¤á¹þ¤Þ¤ì¤¿HLP¥Õ¥¡¥¤¥ë¤¬»ÈÍѤµ¤ì¤ë¤È¡¢¥¹
¥¯¥ê¥×¥È¤¬¼Â¹Ô¤µ¤ì¡¢Windows32bit¥¢¥×¥ê¥±¡¼¥·¥ç¥ó¤È¤·
¤Æ¤Î¥¦¥¤¥ë¥¹¤¬À¸À®¤µ¤ì¤Þ¤¹¡£¤³¤ì¤¬¼Â¹Ô¤µ¤ì¤ë¤È¡¢¾åµ
¤Î¤è¤¦¤Ê¥·¥¹¥Æ¥à¤Ø¤Î´¶À÷³èư¤ò³«»Ï¤·¤Þ¤¹¡£
ÆÃħ:
PE_Babylonia¤Ï¥¤¥ó¥¿¡¼¥Í¥Ã¥È¤«¤é¥¦¥¤¥ë¥¹¤Î¥³¥ó¥Ý¡¼¥Í
¥ó¥È¤ò¥À¥¦¥ó¥í¡¼¥É¤¹¤ëµ¡Ç½¤ò»ý¤Ã¤Æ¤¤¤Þ¤¹¡£´¶À÷¸å¤Ë¡¢
¥Þ¥·¥ó¤òºÆµ¯Æ°¤¹¤ë¤È¡¢¥¤¥ó¥¿¡¼¥Í¥Ã¥È¤Ø¤ÎÀܳ¤ò´Æ»ë¤·
¤Æ¡¢¥¤¥ó¥¿¡¼¥Í¥Ã¥È¤Ø¤ÎÀܳ¥ë¡¼¥È¤òõ¤·¤Þ¤¹¡£¸«¤Ä¤±¤ë
¤È¡¢60É䴤Ȥˡ¢ÆüËܤΥµ¡¼¥Ð¡¼¤ËÃÖ¤¤¤Æ¤¢¤ë¡¢¥¦¥¤¥ë¥¹
ºî¼Ô¤ÎWebsite¤ËÀܳ¤ò»î¤ß¡¢¿·¤·¤¤Ž¢¥×¥é¥°¥¤¥óŽ£¤¬¤Ê¤¤¤«
¤òõ¤·¤Ë¹Ô¤¤Þ¤¹¡£Àܳ¤¹¤ë¤È¡¢¤Þ¤ººÇ½é¤ËVirus.txt¤È¤¤
¤¦¥Õ¥¡¥¤¥ë¤¬¥À¥¦¥ó¥í¡¼¥É¤µ¤ì¡¢¿·¤·¤¤¥×¥é¥°¥¤¥ó¤Ë´Ø¤¹
¤ë¾ðÊó¤ò¼èÆÀ¤·¤Þ¤¹¡£¤â¤·¡¢¿·¤·¤¤¤â¤Î¤¬¤¢¤ì¤Ð¡¢¤³¤ì¤ò
¥À¥¦¥ó¥í¡¼¥É¤·¡¢¿·¤·¤¤µ¡Ç½¤È¤·¤ÆÅ¬ÍѤ·¤Þ¤¹¡£¤³¤Î¡¢¥¦
¥¤¥ë¥¹¼«¿È¤ÎŽ¢¥¢¥Ã¥×¥Ç¡¼¥ÈŽ£µ¡Ç½¤Î¤¿¤á¡¢¥¦¥¤¥ë¥¹ºî¼Ô¤Ë
¤è¤ë¥¦¥¤¥ë¥¹¤ÎŽ¢¥³¥ó¥È¥í¡¼¥ëŽ£¤¬²Äǽ¤È¤Ê¤Ã¤Æ¤¤¤Þ¤¹¡£
¤³¤Î¥¦¥¤¥ë¥¹¤¬È¯¸«¤µ¤ì¤¿»þÅÀ¤Ç°Ê²¼¤Î4¤Ä¤Î¥×¥é¥°¥¤¥ó¤¬
³Îǧ¤µ¤ì¤Þ¤·¤¿¡£
Dropper.dat:
¤³¤ì¤ÏC:\INSTALAR.EXE¤òºîÀ®¤·¡¢¼Â¹Ô¤·¤Þ¤¹¡£¤³¤ì¤Ï¥¦¥¤
¥ë¥¹ËÜÂÎ¤ÈÆ±¤¸¤â¤Î¤Ç¤¢¤ê¡¢¥·¥¹¥Æ¥à¤òºÆ´¶À÷¤µ¤»¤ë¤Î¤¬
ÌÜŪ¤Ç¤¹¡£¤³¤Î¥Õ¥¡¥¤¥ë¤Ï¼Â¹Ô¸å¤Ë¼«Æ°Åª¤Ëºï½ü¤µ¤ì¤Þ
¤¹¡£
Greetz.dat:
AUTOEXEC.BAT¥Õ¥¡¥¤¥ë¤ò²þÊѤ·¡¢¥Þ¥·¥ó¤Îµ¯Æ°»þ¤Ë°Ê²¼¤Î
¥á¥Ã¥»¡¼¥¸¤òɽ¼¨¤¹¤ë¤è¤¦¤Ë¥·¥¹¥Æ¥à¤òÊѹ¹¤·¤Þ¤¹¡£
W95/Babylonia by Vecna (c) 1999
Greetz to RoadKil and VirusBusterBig thankz to
sok4ever webmaster
Abracos pra galera brazuca!!!
---Eu boto fogo na Babilonia!
Ircworm.dat:
mIRC¤¬¥·¥¹¥Æ¥à¤Ë¥¤¥ó¥¹¥È¡¼¥ë¤µ¤ì¤Æ¤¤¤¿¾ì¹ç¤Ï¡¢
mIRC¤ÎScript.ini¤ò½ñ¤´¹¤¨¤Þ¤¹¡£¥æ¡¼¥¶¡¼¤¬mIRC¤ËÀܳ
¤¹¤ë¤È¡¢Æ±¤¸¥Á¥ã¥ó¥Í¥ë¤Ë¤¤¤ë¥æ¡¼¥¶¡¼¤¹¤Ù¤Æ¤ËÂФ·¤Æ ¥¦
¥¤¥ë¥¹¥Õ¥¡¥¤¥ë¤òÁ÷¿®¤·¤Þ¤¹¡£Á÷¿®¤µ¤ì¤ë¥Õ¥¡¥¤¥ë̾¤Ï
"2KBug-MircFix.exe"¤È¤¤¤¦Ì¾¾Î¤Ç¡¢Y2KÌäÂê¤Î½¤Àµ¥×
¥í¥°¥é¥à¤òÁõ¤Ã¤Æ¤¤¤Þ¤¹¡£
Poll.dat:
E-mail¤ò»È¤Ã¤Æ¡¢°Ê²¼¤Î¥¢¥É¥ì¥¹¤ËÂФ·¤Æ¥á¡¼¥ë¤òÁ÷¿®
¤·¡¢´¶À÷¤·¤¿¥Þ¥·¥ó¤¬¤¢¤ë¤³¤È¤òÃΤ餻¤Þ¤¹¡£¤³¤ì¤Ï´¶À÷
¤·¤¿¥Þ¥·¥ó¤Î¿ô¤ò¿ô¤¨¤ë°Ù¤È¹Í¤¨¤é¤ì¤Æ¤¤¤Þ¤¹¡£
babylonia_counter
@hotmail.com
½ÅÊ£¤·¤ÆÁ÷¤Ã¤Æ¤·¤Þ¤¦¤³¤È¤Î¤Ê¤¤¤è¤¦¤Ë¡¢Á÷¿®¤ËÀ®¸ù¤¹¤ë
¤ÈWindows\System ¥Ç¥£¥ì¥¯¥È¥ê¤ÎÃæ¤Ë"05_12_99" ¤È¤¤¤¦
¥Õ¥¡¥¤¥ë¤òºîÀ®¤·¤Þ¤¹¡£¤³¤Î¥Õ¥¡¥¤¥ë¤¬Â¸ºß¤·¤Æ¤¤¤ë¾ì¹ç
¤Ï¥á¡¼¥ë¤òÁ÷¿®¤·¤Þ¤»¤ó¡£
¤Þ¤¿¡¢¤³¤Î¥¦¥¤¥ë¥¹¤ÏTROJ_SKA¤ÈƱÍͤˡ¢WSOCK32.DLL¤ò²þ
ÊѤ·¡¢¥æ¡¼¥¶¡¼¤¬¥á¡¼¥ë¤òÁ÷¿®¤¹¤ë¤È¤¤Ë¼«Æ°Åª¤Ë¥¦¥¤¥ë
¥¹¥Õ¥¡¥¤¥ë¤òźÉÕ¤·¤Þ¤¹¡£¤³¤Î¤È¤ÅºÉÕ¤µ¤ì¤ë¥Õ¥¡¥¤¥ë̾
¤ÏX-MAS.EXE¤È¤Ê¤ê¤Þ¤¹¡£X-MAS.EXE¤ÏINSTALAR.EXE
¤ÈƱ¤¸¤â¤Î¤Ç¤¹¡£(¤¿¤À¤·¥È¥ì¥ó¥É¥Þ¥¤¥¯¥í¤Î¥Æ¥¹¥È¤Ç¤Ï¡¢
¤³¤ÎƯ¤¤ÏÀµ¾ï¤Ëưºî¤·¤Þ¤»¤ó¤Ç¤·¤¿¡£)
̾¡¡¡¡¾Î:PE_BONK.1232
ÊÌ¡¡¡¡Ì¾:Win95.BONK
ʬ¡¡¡¡Îà:¥Õ¥¡¥¤¥ë´¶À÷·¿
ÂС¡¡¡¾Ý:.EXE(Win95 / Win98 / Win NT)
¥¦¥¤¥ë¥¹¥µ¥¤¥º:1232¥Ð¥¤¥È
¾Ü¡¡¡¡ºÙ:¥á¥â¥ê¾ïÃ󷿤Υ¦¥¤¥ë¥¹¤Ç¡¢WIN95/98¤Ë´¶À÷¤¹
¤ë¡£Windows¤Î¥á¥â¥ê¤Ë¾ïÃó¤·¤¿¥¦¥¤¥ë¥¹¤Ï¡¢¤½¤Î¸å³«¤«¤ì
¤¿EXE¥Õ¥¡¥¤¥ë(WIN32)¤Ë´¶À÷¤·¤Æ¤¤¤¯¡£¤¿¤À¤·¡¢´¶À÷¥ë
¡¼¥Á¥ó¤Ë¥Ð¥°¤¬¤¢¤ê¡¤Â¿¤¯¤Ï´¶À÷¤Ë¼ºÇÔ¤·¤Æ¡¢¥·¥¹¥Æ¥à¤ò
Ää»ß¤µ¤»¤ë¤³¤È¤Ë¤Ê¤ë¡£
CIH¥¦¥¤¥ë¥¹¤ËÎà»÷¤·¤¿¥ë¡¼¥Á¥ó¤ò»È¤Ã¤Æ¡¢¥á¥â¥ê¡¼¤Ë¾ïÃó
¤·¡¢¥Õ¥¡¥¤¥ë´¶À÷¤¹¤ë¡£¤½¤Î¤¿¤á¡¢CIH¥¦¥¤¥ë¥¹¤ÈƱ¤¸Ç˲õ
¥³¡¼¥É¤ò¤â¤Ä¤È¹Í¤¨¤é¤ì¤ë¡£
´¶À÷¥Õ¥¡¥¤¥ë¤Î¥¨¥ó¥È¥êÉô0x100¥Ð¥¤¥È¤ò°Å¹æ²½¤¹¤ë¤¬¡¢°Å
¹æ¥ë¡¼¥Á¥ó¤Î¥¡¼¤ÏÊݸ¤µ¤ì¤Ê¤¤¡£Âå¤ï¤Ã¤Æ¡¢´¶À÷¥Õ¥¡¥¤
¥ë¤ËÀ©¸æ¸¢¤òÊÖ¤¹Á°¤Ë¡¢°Å¹æ²½¤µ¤ì¤¿¥Ç¡¼¥¿¤ÎCRC¡Ê½ä²ó¾é
Ÿ¡ºº¡ËÃͤò·×»»¤·¡¢Êݸ¤·¤Æ¡¢¤¢¤È¤Ç¥Ç¥³¡¼¥É¤Ç¤¤ë¤è
¤¦¤Ë¤·¤Æ¤ª¤¯¡£
¥Ç¥³¡¼¥É¤¹¤ë¤È¤¤Ï¡¢²Äǽ¤Ê¥¡¼¤ò¤¹¤Ù¤ÆÄ´¤Ù¡¢CRCÃͤò·×
»»¤¹¤ë¡£¤½¤ÎÃͤ¬°Å¹æ²½¤ÎºÝÊݸ¤·¤¿CRCÃͤ˰ìÃפ¹¤ë¤È¡¢
¤½¤Î¥³¡¼¥É¤ò´¶À÷¥Õ¥¡¥¤¥ë¤Î¥¨¥ó¥È¥êÉô¤Ë¤¹¤ë¡£
È÷¡¡¡¡¹Í:¥¦¥¤¥ë¥¹ËÜÂΤˤϡ¢¼¡¤Î¥Æ¥¥¹¥È¤¬´Þ¤Þ¤ì¤ë:
¡¡[BONK32] by Vecna/29A
̾¡¡¡¡¾Î:PE_BONK.1243
ÊÌ¡¡¡¡Ì¾:Win95.BONK
ʬ¡¡¡¡Îà:¥Õ¥¡¥¤¥ë´¶À÷·¿
ÂС¡¡¡¾Ý: .EXE(Win95 / Win98 / Win NT)¥¦¥¤¥ë¥¹¥µ¥¤¥º
:1243¥Ð¥¤¥È
¾Ü¡¡¡¡ºÙ:¥á¥â¥ê¾ïÃ󷿤Υ¦¥¤¥ë¥¹¤Ç¡¢WIN95/98¤Ë´¶À÷¤¹
¤ë¡£Windows¤Î¥á¥â¥ê¤Ë¾ïÃó¤·¤¿¥¦¥¤¥ë¥¹¤Ï¡¢¤½¤Î¸å³«¤«¤ì
¤¿EXE¥Õ¥¡¥¤¥ë(WIN32)¤Ë´¶À÷¤·¤Æ¤¤¤¯¡£¤¿¤À¤·¡¢´¶À÷¥ë
¡¼¥Á¥ó¤Ë¥Ð¥°¤¬¤¢¤ê¡¤Â¿¤¯¤Ï´¶À÷¤Ë¼ºÇÔ¤·¤Æ¡¢¥·¥¹¥Æ¥à¤ò
Ää»ß¤µ¤»¤ë¤³¤È¤Ë¤Ê¤ë¡£
CIH¥¦¥¤¥ë¥¹¤ËÎà»÷¤·¤¿¥ë¡¼¥Á¥ó¤ò»È¤Ã¤Æ¡¢¥á¥â¥ê¡¼¤Ë¾ïÃó
¤·¡¢¥Õ¥¡¥¤¥ë´¶À÷¤¹¤ë¡£¤½¤Î¤¿¤á¡¢CIH¥¦¥¤¥ë¥¹¤ÈƱ¤¸Ç˲õ
¥³¡¼¥É¤ò¤â¤Ä¤È¹Í¤¨¤é¤ì¤ë¡£
´¶À÷¥Õ¥¡¥¤¥ë¤Î¥¨¥ó¥È¥êÉô0x100¥Ð¥¤¥È¤ò°Å¹æ²½¤¹¤ë¤¬¡¢°Å
¹æ¥ë¡¼¥Á¥ó¤Î¥¡¼¤ÏÊݸ¤µ¤ì¤Ê¤¤¡£Âå¤ï¤Ã¤Æ¡¢´¶À÷¥Õ¥¡¥¤
¥ë¤ËÀ©¸æ¸¢¤òÊÖ¤¹Á°¤Ë¡¢°Å¹æ²½¤µ¤ì¤¿¥Ç¡¼¥¿¤ÎCRC¡Ê½ä²ó¾é
Ÿ¡ºº¡ËÃͤò·×»»¤·¡¢Êݸ¤·¤Æ¡¢¤¢¤È¤Ç¥Ç¥³¡¼¥É¤Ç¤¤ë¤è
¤¦¤Ë¤·¤Æ¤ª¤¯¡£
¥Ç¥³¡¼¥É¤¹¤ë¤È¤¤Ï¡¢²Äǽ¤Ê¥¡¼¤ò¤¹¤Ù¤ÆÄ´¤Ù¡¢CRCÃͤò·×
»»¤¹¤ë¡£¤½¤ÎÃͤ¬°Å¹æ²½¤ÎºÝÊݸ¤·¤¿CRCÃͤ˰ìÃפ¹¤ë¤È¡¢
¤½¤Î¥³¡¼¥É¤ò´¶À÷¥Õ¥¡¥¤¥ë¤Î¥¨¥ó¥È¥êÉô¤Ë¤¹¤ë¡£
È÷¡¡¡¡¹Í:¥¦¥¤¥ë¥¹ËÜÂΤˤϡ¢¼¡¤Î¥Æ¥¥¹¥È¤¬´Þ¤Þ¤ì¤ë:
¡¡[BONK32] by Vecna/29A
̾¡¡¡¡¾Î:PE_BOZA.C.INTD
ÊÌ¡¡¡¡Ì¾:BIZATCH
ʬ¡¡¡¡Îà:¥Õ¥¡¥¤¥ë´¶À÷·¿
ÂС¡¡¡¾Ý:.EXE¡ÊPE·Á¼°¤ÎWindowsÍÑ 32Bit¼Â¹Ô¥Õ¥¡¥¤¥ë¡Ë
¥¦¥¤¥ë¥¹¥µ¥¤¥º:N/A
ȯ¾ÍÃÏ:Australia
ȯ¸«Æü:1996/01
¾Ü¡¡¡¡ºÙ:-¡¡¤³¤Î¥¦¥¤¥ë¥¹¤ÏWindows95¤ÎPE¥Õ¥¡¥¤¥ë¤Ë¤Î
¤ß´¶À÷¤¹¤ëŽ¡
Windows NT¤ÈWindows 3.x¾å¤Ç¤Ïưºî¤·¤Ê¤¤Ž¡
´¶À÷ÊýË¡:
-¡¡´¶À÷¥Õ¥¡¥¤¥ë¤ò¼Â¹Ô¤¹¤ë¤Èޤ¥«¥ì¥ó¥È¥Ç¥£¥ì¥¯¥È¥ê¤ÎPE
¥Õ¥¡¥¤¥ë¤Ë´¶À÷¤¹¤ëŽ¡
°ìÅ٤μ¹ԤÇ3¤Ä¤Î¥Õ¥¡¥¤¥ë¤Ë´¶À÷¤¹¤ëŽ¡¥æ¡¼¥¶¡¼¤Ë´¶À÷¹Ô
ư¤òµ¤¤Å¤«¤»¤Ê¤¤¤è¤¦¤Ë¤¹¤ë¤¿¤áޤ
¥¦¥¤¥ë¥¹¥³¡¼¥É¤ò¼Â¹Ô¤·¤Æ´¶À÷¤ò½ª¤¨¤¿¸å¤Ëޤ¤â¤È¤Î¥Õ¥¡¥¤
¥ë¤Î¥³¡¼¥É¤Ë¤â¤É¤Ã¤Æ
¥×¥í¥°¥é¥à¤ò¼Â¹Ô¤¹¤ëŽ¡
»³²:
-¡¡ÆÃ¤ËÈï³²¤ò¤â¤¿¤é¤¹¹Ôư¤Ï¤Ê¤¤¤¬Ž¤Ëè·î31Æü¤Ê¤ë¤È°Ê²¼
¤Î¥á¥Ã¥»¡¼¥¸¤ò¥¹¥¯¥ê¡¼¥ó¤Ëɽ¼¨¤¹¤ëŽ¡
¡ÈThe taste of fame just got tastier!¡É
¡ÈFrom the old school to the new¡É.
È÷¡¡¡¡¹Í:¥¦¥¤¥ë¥¹¥³¡¼¥ÉÆâ¤Ë°Ê²¼¤Îʸ»úÎ󤬵¤µ¤ì¤Æ¤¤
¤ëŽ¡
¡ÈBizatch by Quantum/VLAD¡É
¡ÈVLAD Australia does it again with the world¡Çs
first Win95 Virus¡É
¡ÈPlease note: the name of this virus is [Bizatch]
written by Quantum of VLAD
C:\Win¡É
̾¡¡¡¡¾Î:PE_BYE_TROJAN
ʬ¡¡¡¡Îà:¥È¥í¥¤¤ÎÌÚÇÏ·¿
¥¦¥¤¥ë¥¹¥µ¥¤¥º:N/A
¾Ü¡¡¡¡ºÙ:Ç˲õ:
¡ÝWindows95¾å¤Ç´¶À÷¥Õ¥¡¥¤¥ë¤ò¼Â¹Ô¤¹¤ë¤È¡¢°Ê²¼¤Î¥Õ¥¡¥¤
¥ë¤òºï½ü¤¹¤ë¡£
¡¦C:\WINDOWS\WIN.COM
¡¦C:\WINDOWS\COMMAND²¼¤Î¤¹¤Ù¤Æ¤Î¥Õ¥¡¥¤¥ë
¡¦PE_BYE_TROJAN¤Î¼Â¹Ô¥Õ¥¡¥¤¥ë¼«¿È¡ÊÄ̾ï¤ÏPE_
BYE.EXE¡Ë
È÷¡¡¡¡¹Í:¡Ý¥È¥í¥¤¤ÎÌÚÇϤΤ¿¤á¶î½ü¤Ï¤Ç¤¤Ê¤¤¡£¥Õ¥¡¥¤
¥ë¤Îºï½ü¤ÇÂн褹¤ëɬÍפ¬¤¢¤ë¡£
̾¡¡¡¡¾Î:PE_CABANAS
ʬ¡¡¡¡Îà:¥Õ¥¡¥¤¥ë´¶À÷·¿
ÂС¡¡¡¾Ý:.EXE¡ÊPE·Á¼°¤ÎWindowsÍÑ 32Bit¼Â¹Ô¥Õ¥¡¥¤¥ë¡Ë
¥¦¥¤¥ë¥¹¥µ¥¤¥º:Ìó3.1KB
ȯ¸«Æü:1997ǯËö
¾Ü¡¡¡¡ºÙ:´¶À÷ÊýË¡:
¡Ý¤³¤Î¥¦¥¤¥ë¥¹¤Ï32¥Ó¥Ã¥È.EXE¥Õ¥¡¥¤¥ë¤Ë´¶À÷¤¹¤ë¡£
Windows95/98¤ÈWindowsNT¾å¤Ç´¶À÷¤¹¤ë¡£
¡Ý´¶À÷¥Õ¥¡¥¤¥ë¤¬¼Â¹Ô¤µ¤ì¤ë¤È¡¢¤½¤Î¥×¥í¥°¥é¥à¤¬½ªÎ»¤¹
¤ë¤Þ¤Ç´¶À÷¤ò³¤±¤ë¡£¤â¤·¤âRundll32.exe¡Ê¥·¥¹¥Æ¥à¤ÎÌ¿
Îá¤ò²ò¼á¤¹¤ë¥¤¥ó¥¿¡¼¥×¥ê¥¿¡Ë¤¬´¶À÷¤¹¤ë¤È¡¢
¥·¥¹¥Æ¥àµ¯Æ°»þ¤Ë¥¦¥¤¥ë¥¹¤âµ¯Æ°¤µ¤ì¤ë¤¿¤á¡¢¥·¥¹¥Æ¥à¤ò
¥·¥ã¥Ã¥È¥À¥¦¥ó¤¹¤ë¤Þ¤Ç
´¶À÷¤ò³¤±¤ë¡£
Ç˲õ³èư:
¡Ý´¶À÷¤ò»ß¤á¤ë¤¿¤á¤Ë¥×¥í¥°¥é¥à¤ò½ªÎ»¤¹¤ëɬÍפ¬¤¢¤ë¡£
¤½¤Î¤Û¤«¤Î»³²¤Ï¤Ê¤¤¡£
¡Ý¥á¥Ã¥»¡¼¥¸¤òɽ¼¨¤¹¤ë°¡¼ï¤â¤¢¤ë¡£
È÷¡¡¡¡¹Í:¡Ý¤³¤Î¥¦¥¤¥ë¥¹¤Ï¥Ù¥Í¥º¥¨¥é¤Î29A¥°¥ë¡¼¥×¤Î15
ºÐ¤Î¾¯Ç¯¤¬ºî¤Ã¤¿¡Ê¤³¤Î¾¯Ç¯¤Ï14ºÐ¤Î»þWM_CAP¥¦¥¤¥ë¥¹¤ò
ºî¤Ã¤¿¡Ë¡£¤³¤Îºî¼Ô¤Ï¼«Ê¬¤òJackyQwerty¡Ê¡ÇJ4cKy Qw3rTy
¡Ç¡Ë¤È¸Æ¤Ö¡£
̾¡¡¡¡¾Î:PE_CAW
ʬ¡¡¡¡Îà:File Infector
¾Ü¡¡¡¡ºÙ:¡¡
¡¡¤³¤Î¥¦¥¤¥ë¥¹¤Ï32¥Ó¥Ã¥È(PE)·Á¼°¤Î¥á¥â¥ê¾ïÃ󷿤Υե¡
¥¤¥ë´¶À÷·¿¥¦¥¤¥ë¥¹¤Ç¤¹¡£32¥Ó¥Ã¥È·Á¼°¤Î¼Â¹Ô²Äǽ¥Õ¥¡¥¤
¥ë¤Ë¼«Ê¬¤Î¥¦¥¤¥ë¥¹¥³¡¼¥É¤òÄɲ䷤ƴ¶À÷¤·¤Þ¤¹¡£¤³¤Î¤¿
¤á´¶À÷¤µ¤ì¤¿¥Õ¥¡¥¤¥ë¤Ï´¶À÷Á°¤è¤ê¤â¥Õ¥¡¥¤¥ë¥µ¥¤¥º¤¬Âç
¤¤¯¤Ê¤ê¤Þ¤¹¤¬¡¢¾å½ñ¤´¶À÷¤¹¤ë¾ì¹ç¤â¤¢¤ê¤Þ¤¹¡£
Ç˲õ³èư:
£±¡Ë£··î£·Æü¤Ë¼Â¹Ô¤µ¤ì¤ë¤È¥Ï¡¼¥É¥Ç¥£¥¹¥¯¤ò¥é¥ó¥À¥à¤Ë
¾å½ñ¤¤·¥Ç¡¼¥¿¤òÇ˲õ¤·¤Þ¤¹¡£
£²¡Ë¥¦¥¤¥ë¥¹¾ïÃó»þ¤Ë"WINWORD.EXE"¤â¤·¤¯¤Ï³ÈÄ¥»Ò¤¬BMP,
JPG, DOC, WRI, BAS, SAV, PDF, RTF, TXT ¤Î¥Õ¥¡¥¤¥ë¤Ë
¥¢¥¯¥»¥¹¤¹¤ë¤È¥Õ¥¡¥¤¥ë¤Ïºï½ü¤µ¤ì¤Æ¤·¤Þ¤¤¤Þ¤¹¡£¥¦¥¤¥ë
¥¹¤Ï¼Â¹Ô¤µ¤ì¤ë¤È¤Þ¤ºC:¥É¥é¥¤¥Ö¤Î¥ë¡¼¥È¥Ç¥£¥ì¥¯¥È¥ê¤Ë"
AW" ¤È¤¤¤¦¥Õ¥¡¥¤¥ë¤¬Â¸ºß¤¹¤ë¤«¤É¤¦¤«¤òÄ´¤Ù¤Þ¤¹¡£¤³¤Î"
AW"¤È¤¤¤¦Ì¾Á°¤Î¥Õ¥¡¥¤¥ë¤Ë¤³¤ì¤«¤éºï½ü¤¹¤ë¥Õ¥¡¥¤¥ë¤Î¥í
¥°¤ò¤È¤ê¤Þ¤¹¡£
¡¡
̾¡¡¡¡¾Î:PE_CHOLERA.CTX
ÊÌ¡¡¡¡Ì¾:CTX.PHAGE, Worm.Cholera, Win32.CTX , W32/
CTX
ʬ¡¡¡¡Îà:¥Õ¥¡¥¤¥ë´¶À÷·¿/¥ï¡¼¥à
ÂС¡¡¡¾Ý:WIN 32bit
¥¦¥¤¥ë¥¹¥µ¥¤¥º:49,187 bytes
ȯ¸«Æü:99/09
¾Ü¡¡¡¡ºÙ:¤³¤ì¤Ï°Å¹æ²½µ¡Ç½¤ò»ý¤Ä¥Ý¥ê¥â¥Õ¥£¥Ã¥¯·¿¥¦¥¤
¥ë¥¹¤Ç¤¢¤ê¡¢Pe¥¿¥¤¥×¡ÊWindows 32bit¼Â¹Ô²Äǽ¥×¥í¥°¥é
¥à¡Ë¤Î¥Õ¥¡¥¤¥ë¤Ë´¶À÷¤¹¤ë¡£¤µ¤é¤Ë¥¤¥ó¥¿¡¼¥Í¥Ã¥È¤È¥í
¡¼¥«¥ë¡¦¥Í¥Ã¥È¥ï¡¼¥¯¤òÍøÍѤ·¤Æ¹¤¬¤ë¥ï¡¼¥à¥¦¥¤¥ë¥¹¤È
¤·¤Æ¤Îµ¡Ç½¤âͤ·¤Æ¤¤¤ë¡£Ç˲õŪ³èư¤Ï³Îǧ¤µ¤ì¤Æ¤¤¤Ê
¤¤¡£
¤³¤Î¥¦¥¤¥ë¥¹¤Ï¡¤¡ÖSetup.exe¡×¤È¤¤¤¦¥Õ¥¡¥¤¥ë̾¤ÎźÉÕ½ñ
ÎबÉÕ¤¤¤¿ÅŻҥ᡼¥ë¤È¤·¤ÆÁ÷¿®¤µ¤ì¤ë¡£¤³¤ÎźÉÕ¥Õ¥¡¥¤
¥ë¤ÏWindowsɸ½à¤Î¥»¥Ã¥È¥¢¥Ã¥×¥×¥í¥°¥é¥à¤Î¥¢¥¤¥³¥ó¤Ë»÷
¤¿¥¢¥¤¥³¥ó¤ò»ÈÍѤ·¤Æ¤ª¤ê¡¢¥¤¥ó¥¹¥È¡¼¥é¤Î¤è¤¦¤Ë¸«¤¨
¤ë¡£¤·¤«¤·¡¢¤³¤Î¥Õ¥¡¥¤¥ë¤ò¼Â¹Ô¤¹¤ë¤È¡¤¼¡¤Î¤è¤¦¤Ê¥á¥Ã
¥»¡¼¥¸¤¬É½¼¨¤µ¤ì¤ë¡£
Cannot open file: it does not appear to be a valid
archive.
If you downloaded this file, try downloading this
file again.
¡Ê¥Õ¥¡¥¤¥ë¤ò³«¤±¤Þ¤»¤ó¡£Àµ¤·¤¤¥¢¡¼¥«¥¤¥Ö¤Ç¤Ï¤Ê¤¤¤è¤¦
¤Ç¤¹¡£¤³¤Î¥Õ¥¡¥¤¥ë¤¬¥À¥¦¥ó¥í¡¼¥É¤µ¤ì¤¿¤â¤Î¤Ç¤¢¤ë¾ì¹ç
¤Ï¡¤¤³¤Î¥Õ¥¡¥¤¥ë¤òºÆÅÙ¥À¥¦¥ó¥í¡¼¥É¤·¤Æ¤ß¤Æ¤¯¤À¤µ¤¤¡Ë
¤³¤Î´Ö¤Ë¥¦¥¤¥ë¥¹¤Ï³èư¤ò³«»Ï¤·¤Æ¤¤¤ë¡£
¤³¤Î¥¦¥¤¥ë¥¹¤Ï¥ï¡¼¥à¡¦¥×¥í¥°¥é¥à¤È¥Õ¥¡¥¤¥ë´¶À÷·¿¥¦¥¤
¥ë¥¹¤Îµ¡Ç½¤òƱ»þ¤ËÍøÍѤ·¡¢Ä̾ï¤Î¥¦¥¤¥ë¥¹¤è¤ê¤â³È»¶¤Î
²ÄǽÀ¤òÁýÂ礵¤»¤ë¡£
¥¦¥¤¥ë¥¹¤È¤·¤Æ¤Ï¡¢¤Þ¤º¡¢¥«¥ì¥ó¥È¡¦¥Ç¥£¥ì¥¯¥È¥ê¡Ê¥É¥é
¥¤¥Ö¥ë¡¼¥È¥Ç¥£¥ì¥¯¥È¥ê°Ê³°¡Ë,Windows ¥Ç¥£¥ì¥¯¥È¥ê¡¢
Windows \System\¥Ç¥£¥ì¥¯¥È¥ê¤ÎÃæ¤Î PE ¥Õ¥¡¥¤¥ë¤ò¸¡º÷
¤·¡¢´¶À÷¤¹¤ë¡£¤½¤ì¤¾¤ì¤Î¥Ç¥£¥ì¥¯¥È¥ê¤Ç°ìÅ٤˺ǹ⣵¤Ä
¤Î¥Õ¥¡¥¤¥ë¤ò´¶À÷¤µ¤»¤ë¤³¤È¤¬¤Ç¤¤ë¡£¤Þ¤¿¡¢²òÁüÅÙ¤¬¹â
¤¯ÀßÄꤵ¤ì¤Æ¤¤¤ë¾ì¹ç¤Ï¡¢²òÁüÅÙ¤ò640*480¤ËÍî¤È¤·¤Æ¤·¤Þ
¤¦¡£
°ìÊý¡¢¥ï¡¼¥à¤È¤·¤Æ¤Ï¡¢RPCSRV.EXE ¤È¤¤¤¦¥Õ¥¡¥¤¥ë̾¤Ç
Windows ¥Ç¥£¥ì¥¯¥È¥ê¤Ë¥¦¥¤¥ë¥¹¤ÎÊ£À½¤òºîÀ®¤¹¤ë¡£ ¤µ¤é
¤Ë¡¢WIN.INI ¥Õ¥¡¥¤¥ë¤Ë¡ÖRUN=RPCSRV.EXE ¡×¤È¤¤¤¦¥Æ¥
¥¹¥È¤òÄɲä·¡¢¥Þ¥·¥ó¤Îµ¯Æ°»þ¤Ëɬ¤º¤³¤Î¥ï¡¼¥à¤¬¼Â¹Ô¤µ
¤ì¤ë¤è¤¦¤ËÀßÄꤹ¤ë¡£
¤Þ¤¿¡¢TROJ_EXPLORE.ZIP¤Î¤è¤¦¤Ë¥í¡¼¥«¥ë¡¦¥Í¥Ã¥È¥ï¡¼¥¯
´¶À÷¤Îµ¡Ç½¤ò»ý¤Ã¤Æ¤¤¤ë¡£¥Í¥Ã¥È¥ï¡¼¥¯¾å¤Ç¶¦Í¤µ¤ì¤¿¥É
¥é¥¤¥Ö¤ò¸¡º÷¤·¤ÆWIN.INI¥Õ¥¡¥¤¥ë¤òõ¤·¡¢¤½¤Î¥Ç¥£¥ì¥¯¥È
¥ê¤ËRPCSRV.EXE¤òºîÀ®¤¹¤ë¡£¤½¤·¤ÆWIN.INI ¥Õ¥¡¥¤¥ë¤Ç¤½
¤ì¤òÅÐÏ¿¤·¡¢µ¯Æ°»þ¤Ë¼Â¹Ô¤µ¤ì¤ë¤è¤¦¤ËÀßÄꤹ¤ë¡£
¤µ¤é¤Ë¡¢"OK..."¤È¤¤¤¦¥¿¥¤¥È¥ë¤Î¥á¡¼¥ë¤Ë¡¢¥¦¥¤¥ë¥¹ËÜÂÎ
¤Ç¤¢¤ë¡ÖSETUP.EXE ¡×¥Õ¥¡¥¤¥ë¤òźÉÕ¤·¤Æ¼«Æ°Åª¤ËÁ÷¿®¤¹
¤ë¡£¥á¡¼¥ëËÜʸ¤Ë¤Ï¡È:)¡É¤È¤¤¤¦´éʸ»ú¤À¤±¤¬½ñ¤«¤ì¤Æ¤¤
¤ë¡£
¼«Ê¬¼«¿È¤òÁ÷¿®¤¹¤ë¤¿¤á¤Ë¡¢£¶ÉÃËè¤Ë¤¹¤Ù¤Æ¤Î¥¢¥¯¥Æ¥£¥Ö
¤Ê¥×¥í¥°¥é¥à¤ò¥Á¥§¥Ã¥¯¤·¤Æ¡¢¥¤¥ó¥¿¡¼¥Í¥Ã¥È¥¢¥×¥ê¥±
¡¼¥·¥ç¥ó----Î㤨¤Ð¡¢Outlook¡¢ Cuteftp ¡¢Internet
Explorer ¡¢ Telnet ¡¢ Mirc ¤Ê¤É¤òõ¤¹¡£¤â¤·¤³¤Î¤è¤¦¤Ê
¥¢¥×¥ê¥±¡¼¥·¥ç¥ó¤¬¥¢¥¯¥Æ¥£¥Ö¤Ç¤¢¤ì¤Ð¡¢¤½¤ì¤Ï¥³¥ó¥Ô¥å
¡¼¥¿¤¬¥¤¥ó¥¿¡¼¥Í¥Ã¥È¤ËÀܳ¤·¤Æ¤¤¤ë¤³¤È¤ò°ÕÌ£¤¹¤ë¤«¤é
¤Ç¤¢¤ë¡£
¤³¤Î¤è¤¦¤Ê¥×¥í¥°¥é¥à¤òȯ¸«¤¹¤ë¤È¡¢¥ï¡¼¥à¤Ï¥·¥¹¥Æ¥à¥ì
¥¸¥¹¥È¥ê¤Î¥¡¼¤«¤é SMTP ¥µ¡¼¥Ð¡¼¥¢¥É¥ì¥¹¤È¥æ¡¼¥¶¡¼¤Î
ÅŻҥ᡼¥ë¥¢¥É¥ì¥¹¤ò¼èÆÀ¤·¡¢¥µ¡¼¥Ð¤ËÀܳ¤·¤Æ¡¢¥ï¡¼¥à
¤Î¥³¥Ô¡¼ ¤Ç¤¢¤ëSETUP.EXE¤òźÉÕ¤·¤¿¥á¡¼¥ë¤òºîÀ®¤·¤ÆÁ÷
¿®¤¹¤ë¡£ ¤Ä¤Þ¤ê¤³¤Î¥ï¡¼¥à¤Ï¥·¥¹¥Æ¥à¤Ç»È¤ï¤ì¤ëÅŻҥá
¡¼¥ë¡¦¥¯¥é¥¤¥¢¥ó¥È¥½¥Õ¥È¤Î¥¿¥¤¥×¤Ë°Í¸¤·¤Ê¤¤¤Î¤Ç¤¢
¤ë¡£
¥á¡¼¥ë¤ÎÁ÷¿®Àè¤Ï¡¢ Windows ¥Ç¥£¥ì¥¯¥È¥ê¤È¥µ¥Ö¥Ç¥£¥ì¥¯
¥È¥ê¤ÎÃæ¤«¤é¡¢ .EML ¡¢ .DBX ¡¢ .MBX ¡¢ .NCH ¡¢ .IDX
.htm ¡¢ .txt ¡¢¤Î³ÈÄ¥»Ò¤ò»ý¤Ã¤Æ¤¤¤ë¥Õ¥¡¥¤¥ë¤ò¸¡º÷¤·
¤Æ½¸¤á¤é¤ì¤ë¡£¤³¤ì¤é¤Î¥Õ¥¡¥¤¥ë¤Ë¥Æ¥¥¹¥È¤È¤·¤Æ½ñ¤«¤ì
¤Æ¤¢¤ëÅŻҥ᡼¥ë¥¢¥É¥ì¥¹¤Î¥¹¥È¥ê¥ó¥°¤ò¼èÆÀ¤·¡¢¤³¤ì¤Ë
ÂФ·¤Æ¤½¤ì¤¾¤ì¥á¡¼¥ë¤òÁ÷¿®¤·¤Æ¤·¤Þ¤¦¡£Á÷¤é¤ì¤ë¥á¡¼¥ë
¤Ï10ÄÌÄøÅ٤Ǥ¢¤ë¤¬¤½¤Î¾ÜºÙ¤Ï¸½ºß³ÎÇ§Ãæ¤Ç¤¢¤ë¡£
È÷¡¡¡¡¹Í:¤³¤Î¥¦¥¤¥ë¥¹¡¦¥×¥í¥°¥é¥à¤Ï¥Þ¥¤¥¯¥í¥½¥Õ¥È ¤Î
C++ Ver6.0¤ÇºîÀ®¤µ¤ì¤Æ¤ª¤ê¡¢¥³¡¼¥É¤ÎÂçÉôʬ¤Ï C++ ¥é¥ó
¥¿¥¤¥à¥é¥¤¥Ö¥é¥ê¤¬Àê¤á¤Æ¤¤¤ë¡£
¤Ê¤ª¡¢¤³¤Î¥¦¥¤¥ë¥¹¤Ï¡¢ ¥¢¥ó¥Á¥¦¥¤¥ë¥¹¡¦¥½¥Õ¥È¥¦¥§¥¢¤Ë
¤è¤ë¸¡½Ð¤òÈò¤±¤ë¤¿¤á¤Ë¡¢ÆÃ¼ì¤Ê°Å¹æ²½¥ë¡¼¥Á¥ó¤ò»ÈÍѤ·
¤Æ¤¤¤ë¡£¥¦¥¤¥ë¥¹¤Î¥Ð¥°¤Î¤¿¤á´¶À÷»þ¤ËÂоݥե¡¥¤¥ë¤ò¾å
½ñ¤¤·¤Æ¤·¤Þ¤¦¤³¤È¤¬¤¢¤ë¡£
¼¡¤Î°Å¹æ²½¤µ¤ì¤¿¥Æ¥¥¹¥È¤¬¥¦¥¤¥ë¥¹¥³¡¼¥É¤Ç¸«¤¤¤À¤µ¤ì
¤ë:
CTX Phage Virus BioCoded by GriYo / 29A Disclaimer:
This software has been designed for research
purposes only.
The author is not responsible for any problems caused
due to improper or illegal usage of it
¡Ê¤³¤Î¥½¥Õ¥È¥¦¥§¥¢¤Ï¸¦µæÌÜŪ¤Î¤ß¤Î¤¿¤á¤ËÀ߷פµ¤ì¤¿¡£
¤³¤Î¥×¥í¥°¥é¥à¤ÎÉÔÀµ»ÈÍѤˤè¤Ã¤Æµ¯¤³¤µ¤ì¤¿ÌäÂê¤ËÂФ·
¤Æºî¼Ô¤Ï°ìÀÚÀÕǤ¤òÉé¤ï¤Ê¤¤¡£¡Ë
*¤³¤Î¥¦¥¤¥ë¥¹¤Ï¡¢WindowsNT¾å¤Ç¤âưºî¤¹¤ë¤¬¡¢OS¥Ö¡¼¥È
»þ¤Î¥Á¥§¥Ã¥¯¤Ë¤è¤ê¥·¥¹¥Æ¥à¤¬µ¯Æ°¤Ç¤¤Ê¤¯¤Ê¤ë¤³¤È¤¬¤¢
¤ë¡£
¤â¤·NT¾å¤Ç¼Â¹Ô¤µ¤ì¤¿¾ì¹ç¤Ï¡¢°Ê²¼¤Î¥ì¥¸¥¹¥È¥ê¥¨¥ó¥È¥ê
¤ËÃͤòÉÕ¤±²Ã¤¨¡¢¥Þ¥·¥ó¤Îµ¯Æ°»þ¼Â¹Ô¤µ¤ì¤ë¤è¤¦ÀßÄꤹ
¤ë¡£
\HKEY_CURRENT_USER\Software\Microsoft\WindowsNT\
CurrentVersion\Windows¡ïrun ÃÍ¡ÖRPCSRV.EXE ¡×
̾¡¡¡¡¾Î:PE_CIH
ÊÌ¡¡¡¡Ì¾:PE_CIHV1.2, PE_CIHV1.3, PE_CIHV1.4, WIN32.
CIH, WIN95/CIH
ʬ¡¡¡¡Îà:¥Õ¥¡¥¤¥ë´¶À÷·¿
ÂС¡¡¡¾Ý:.EXE¡ÊPE·Á¼°¤ÎWindowsÍÑ 32Bit¼Â¹Ô¥Õ¥¡¥¤¥ë¡Ë
¥¦¥¤¥ë¥¹¥µ¥¤¥º:N/A
¾Ü¡¡¡¡ºÙ:´¶À÷ÊýË¡:
¡Ý¤³¤Î¥¦¥¤¥ë¥¹¤Ï¡¢.EXE³ÈÄ¥»Ò¤Î¤Ä¤¤¤¿PE¥Õ¥¡¥¤¥ë¡Ê
WindowsÍÑ32Bit¼Â¹Ô¥Õ¥¡¥¤¥ë¡Ë¤Î¤ß¤Ë´¶À÷¤¹¤ë¥¿¥¤¥×¤Î¥¦
¥¤¥ë¥¹¤Ç¤¢¤ë¡£.EXE¥Õ¥¡¥¤¥ë¤ÎÃæ¤Ç¤â¡¢NE¥¿¥¤¥×¥Õ¥¡¥¤¥ë
(WindowsÍÑ16Bit¼Â¹Ô¥Õ¥¡¥¤¥ë) ¤â¤·¤¯¤Ï¡¢DOS¼Â¹Ô¥Õ¥¡¥¤
¥ë ¤Ë¤Ï´¶À÷¤·¤Ê¤¤Ž¡
¡Ý´¶À÷¥Õ¥¡¥¤¥ë¤ò¼Â¹Ô¤¹¤ë¤È¡¢¥á¥â¥ê¤Ë¾ïÃ󤹤롣¤½¤Î
¸å¡¢PE¥Õ¥¡¥¤¥ë¤¬¼Â¹Ô¤µ¤ì¤¿¤ê¥³¥Ô¡¼¤µ¤ì¤¿¤ê¤¹¤ë¤È¡¢¥á
¥â¥êÆâ¤Ë¾ïÃó¤·¤¿PE_CIH¥¦¥¤¥ë¥¹¤¬´¶À÷³èư¤ò¹Ô¤¦¡£
¤·¤«¤·¡¢Windows NT¤Î´Ä¶²¼¤Ç¤Ï¡¢PE_CIH¥¦¥¤¥ë¥¹¤Ï´¶À÷
¤¹¤ë¤³¤È¤¬¤Ç¤¤Ê¤¤¡£¤È¤¤¤¦¤Î¤â¡¢¤³¤Î¥¦¥¤¥ë¥¹¤Ï¥á¥â¥ê
¾ïÃ󤹤뤿¤á¤ËVxD ¥×¥í¥°¥é¥àµ»½Ñ¤ò»ÈÍѤ·¤Æ¤¤¤ë¤¿¤á¤Ç
¤¢¤ë¡£¸½ºß¡¢VxD µ»½Ñ¤ÏWindows 95 / 98 ¾å¤Ç¤Î¤ß͸ú¤Ê
¤Î¤Ç¡¢Windows NT´Ä¶¤Ç¤Ï¥á¥â¥ê¤Ë¾ïÃó¤Ç¤¤º¡¢¥¦¥¤¥ë¥¹
´¶À÷¤Î³ÈÂç¤ä¥Ç¡¼¥¿¤òÇ˲õ¤¹¤ë¤È¤¤¤Ã¤¿³èư¤Ï¹Ô¤¦¤³¤È¤Ï
¤Ç¤¤Ê¤¤¡£
Ç˲õ³èư:
¡ÝÆÃÄê¤ÎÆü»þ¤Ë²¼µ¤Î¤è¤¦¤ÊÇ˲õ³èư¤ò¹Ô¤¦¡£
¡¦CIHV1.2 :Ëèǯ4·î26Æü¤Ë¥Ï¡¼¥É¥Ç¥£¥¹¥¯¤òÇ˲õ¤¹¤ë
¡¦CIHV1.3 :Ëèǯ6·î26Æü¤Ë¥Ï¡¼¥É¥Ç¥£¥¹¥¯¤òÇ˲õ¤¹¤ë
¡¦CIHV1.4 :Ëè·î26Æü¤Ë¥Ï¡¼¥É¥Ç¥£¥¹¥¯¤òÇ˲õ¤¹¤ë
Ž¥ CIH (TNN Remix) :¡¡Ç˲õ³èư¤Ê¤·
¡ÝȯÉÂÆü¤Ë¡¢´¶À÷¤µ¤ì¤¿¥×¥í¥°¥é¥à¤ò¼Â¹Ô¤¹¤ë¤È¡¢¤½¤Î¥×
¥í¥°¥é¥à¤¬¼Â¹Ô¤µ¤ì¤¿Ä¾¸å¤Ë
¥×¥í¥°¥é¥à¤Ï¥Ï¥ó¥°¥¢¥Ã¥×¤·¡¢¤½¤ì¤ÈƱ»þ¤Ë¥Ï¡¼¥É¥Ç¥£¥¹
¥¯¤ÎºÇ½é¤Î2048¥»¥¯¥¿¤Ë¤Ç¤¿¤é¤á¤Ê¥Ç¡¼¥¿¤¬½ñ¤¹þ¤Þ¤ì
¤ë¡£¤³¤Î¤¿¤áޤ¥Ï¡¼¥É¥Ç¥£¥¹¥¯¤ÎÃæ¿È¤ò»²¾È¤Ç¤¤Ê¤¯¤Ê¤Ã¤Æ
¤·¤Þ¤¦¡£
- ¤Þ¤¿¡¢PE_CIH¤ÈƱÍÍ¡¢FlashBIOS¤ò»ÈÍѤ·¤Æ¤¤¤Æ½ñ¤¹þ¤ß
²Äǽ¤Ç¤¢¤ë¾õÂ֤Υޥ·¥ó¤Ç¤¢¤ì¤Ðޤ¤½¤ÎBIOS¤Ë¤â¥´¥ß¥Ç¡¼¥¿
¤ò½ñ¤¹þ¤ó¤ÇÇ˲õ¤¹¤ë¡£¤³¤Î¾ì¹ç¤ÏROM¤ò½¤Éü¤·¤Ê¤¤¸Â¤êÆó
Å٤ȥ³¥ó¥Ô¥å¡¼¥¿¤òµ¯Æ°¤¹¤ë¤³¤È¤¬¤Ç¤¤Ê¤¤¡£
¤³¤Î¤è¤¦¤ËPE_CIH¤ÎÇ˲õ³èư¤Ï¶Ë¤á¤Æ°¼Á¤Ê¤â¤Î¤Ç¡¢¤¿¤È
¤¨´¶À÷Âæ¿ô¤Ï¾¯¤Ê¤¯¤Æ¤â¡¢¸Ä¡¹¤Î¥Þ¥·¥ó¤ËÍ¿¤¨¤ë¥À¥á¡¼¥¸
¤Ï¤«¤Ê¤ê¿¼¹ï¤Ç¤¢¤ë¡£
ȯɤμºÝ:
ȯÉÂÆü¤ËWindows95¤òµ¯Æ°¤¹¤ë¤È¡¢´¶À÷¥Õ¥¡¥¤¥ë¤¬¼Â¹Ô¤µ
¤ì¡¢¥¦¥¤¥ë¥¹¤¬¥á¥â¥ê¤Ë¾ïÃ󤹤롣¤¹¤ë¤Èľ¸å¡Ê»þ´Ö¤È¤·
¤Æ¤Ï¿ôÉøå¡Ë¤Ë¥·¥¹¥Æ¥à¤¬¥Ï¥ó¥°¥¢¥Ã¥×¤¹¤ë¡£Æ±»þ¤Ë¥Ï
¡¼¥É¥Ç¥£¥¹¥¯¤Î¥¢¥¯¥»¥¹¥é¥ó¥×¤¬ÅÀÌǤ·¡¢Ç˲õ¤¬»Ï¤Þ¤ëŽ¡
È÷¡¡¡¡¹Í:-¡¡CIH (TNN Remix)¤Î¥³¡¼¥ÉÆâ¤Ë¤Ï°Ê²¼¤Îʸ»ú
Î󤬤¢¤ëŽ¡
CIH (TNN Remix) written by TTIT of TATUNG --[
]-- remixed by VicodinES --[
]-- The Narkotic Network Virus Warehouse
http://users.skynet.be/somnus/virnnvw.html --[
Vic¡Çs Not Workin¡Ç With A Full Deck!¡É
̾¡¡¡¡¾Î:PE_CRYPTO
ÊÌ¡¡¡¡Ì¾:W32/Crypto
ʬ¡¡¡¡Îà:¥Õ¥¡¥¤¥ë´¶À÷·¿
ÂС¡¡¡¾Ý:Windows 98/NT/2000ȯ¾ÍÃÏ:Spain
¾Ü¡¡¡¡ºÙ:-
¡¡¤³¤Î¥¦¥¤¥ë¥¹¤Ï32¥Ó¥Ã¥È(PE)·Á¼°¤Î¥á¥â¥ê¾ïÃ󷿤Υե¡
¥¤¥ë´¶À÷·¿¥¦¥¤¥ë¥¹¤Ç¤¹¡£32¥Ó¥Ã¥È·Á¼°¤Î¼Â¹Ô²Äǽ¥Õ¥¡¥¤
¥ë¤Ë¤Î¤ß´¶À÷¤·¤Þ¤¹¡£
¡¡¤³¤Î¥¦¥¤¥ë¥¹¤Ï¼Â¹Ô¤µ¤ì¤ë¤È¤Þ¤º¡¢KERNEL32.DLL¤ò½ñ¤
´¹¤¨¤Þ¤¹¡£¤³¤Î½ñ¤´¹¤¨¤ÏWindows¥¢¥Ã¥×¥Ç¡¼¥Èµ¡Ç½¤ÈƱÍÍ
¤Î¤ä¤êÊý¤òÍѤ¤¤Æ¤¤¤Þ¤¹¡£WININIT.INI¤Î¾ðÊó¤ò½ñ¤´¹¤¨¡¢
¼¡²óµ¯Æ°»þ¤ËËÜʪ¤ÎKernel32.dll¤ò²þÊѤ·¤¿¤â¤Î¤ÈÃÖ¤´¹
¤¨¤ë¤è¤¦¤ËÀßÄꤷ¤Æ¤·¤Þ¤¦¤Î¤Ç¤¹¡£
¡¡Kernel32.dll¤ò½ñ¤´¹¤¨¤ë¤³¤È¤Ë¤è¤ê¡¢¥¦¥¤¥ë¥¹¤Ï¥·¥¹
¥Æ¥àµ¯Æ°»þ¤Ë¼«Æ°Åª¤Ëµ¯Æ°¤µ¤ì¡¢¥Õ¥¡¥¤¥ë¥¢¥¯¥»¥¹¤ò´Æ»ë
¤·¡¢¤½¤ì¤Ë¥Õ¥Ã¥¯¤¹¤ë¤³¤È¤¬²Äǽ¤Ë¤Ê¤Ã¤Æ¤¤¤Þ¤¹¡£¥¦¥¤¥ë
¥¹¤Î¥á¥â¥ê¾ïÃó°Ê¸å¤Ï¥¢¥¯¥»¥¹¤·¤¿PE·Á¼°¤ÎEXE¥Õ¥¡¥¤¥ë¤Ë
¤¹¤Ù¤Æ´¶À÷¤·¤Þ¤¹¡£
È÷¡¡¡¡¹Í:´¶À÷¤¹¤ë¤È°Ê²¼¤Î¥ì¥¸¥¹¥È¥ê¤ËÃͤòÄɲä·¤Þ
¤¹¡£
HKEY_CLASSES_ROOT\CLID\{D3E34B21-9D75-101A-8C3D-
00AA001A1652}\DefaultIcon
HKEY_CLASSES_ROOT\CLID\{D3E34B21-9D75-101A-8C3D-
00AA001A1652}\LocalServer32
HKEY_CLASSES_ROOT\CLID\{D3E34B21-9D75-101A-8C3D-
00AA001A1652}\MiscStatus
HKEY_CLASSES_ROOT\Pbrush\protocol\StdFileEditing\
server
HKEY_CLASSES_ROOT\Paint.Picture\shell\open\command
HKEY_CLASSES_ROOT\ Paint.Picture\shell\print\command
HKEY_CLASSES_ROOT\ Paint.Picture\shell\printto\
command
HKEY_CLASSES_ROOT\ Paint.Picture\protocol\
StdFileEditing\server
HKEY_CURRENT_USER\Software\Microsoft\Cryptography\
UserKeys\Prizzy/29A
HKEY_CURRENT_USER\Software\Microsoft\Cryptography\
UserKeys\Prizzy/29A
HKEY_CURRENT_USER\Software\Microsoft\Cryptography\
UserKeys\Prizzy/29A
HKEY_CURRENT_USER\Software\Microsoft\Cryptography\
UserKeys\Prizzy/29A
HKEY_CURRENT_USER\Software\Microsoft\Cryptography\
UserKeys\Prizzy/29A
HKEY_CURRENT_USER\Software\Microsoft\Cryptography\
UserKeys\Prizzy/29A
HKEY_CURRENT_USER\Software\Microsoft\Cryptography\
UserKeys\Prizzy/29A
HKEY_CURRENT_USER\Software\Microsoft\Cryptography\
IEDirtyFlags
HKEY_CURRENT_USER\Software\Microsoft\Protected
Storage System _
Provider\*Default*\Data\4d1fa410-6fd9-11d0-
8c58-00c04-fd9126b\4d1fa411-6fd9-11d0-8c58-
_
00c04fd9126b
HKEY_LOCAL_MACHINE\Software\Microsoft\Protected
Storage System _
Provider\*Default*\Data\4d1fa410-6fd9-11d0-
8c58-00c04-fd9126b\4d1fa411-6fd9-11d0-8c58-
_
00c04fd9126b
HKEY_ LOCAL_MACHINE \Software\Microsoft\Protected
Storage System _
Provider\*Default*\Data\4d1fa410-6fd9-11d0-
8c58-00c04-fd9126b\4d1fa412-6fd9-11d0-8c58-
_
00c04fd9126b\Prizzy/29A
HKEY_ LOCAL_MACHINE \Software\Microsoft\Protected
Storage System _
Provider\*Default*\Data\4d1fa410-6fd9-11d0-
8c58-00c04-fd9126b\4d1fa412-6fd9-11d0-8c58-
_
00c04fd9126b\Prizzy/29A
HKEY_ LOCAL_MACHINE \Software\Microsoft\Protected
Storage System _
Provider\*Default*\Data\4d1fa410-6fd9-11d0-
8c58-00c04-fd9126b\4d1fa412-6fd9-11d0-8c58-
_
00c04fd9126b
HKEY_ LOCAL_MACHINE \Software\Microsoft\Protected
Storage System _
Provider\*Default*\Data\4d1fa410-6fd9-11d0-
8c58-00c04-fd9126b\4d1fa412-6fd9-11d0-8c58-
_
00c04fd9126b
HKEY_ LOCAL_MACHINE \Software\Microsoft\Protected
Storage System _
Provider\*Default*\Data\4d1fa410-6fd9-11d0-
8c58-00c04-fd9126b
HKEY_ LOCAL_MACHINE \Software\CLASSES\CLSID\{D3E34B21
-9D75-101A-8C3D-
00AA001A1652}\DefaultIcon
HKEY_ LOCAL_MACHINE \Software\CLASSES\CLSID\{D3E34B21
-9D75-101A-8C3D-
00AA001A1652}\LocalServer32
HKEY_ LOCAL_MACHINE \Software\CLASSES\CLSID\{D3E34B21
-9D75-101A-8C3D-
00AA001A1652}\MiscStatus
HKEY_ LOCAL_MACHINE \Software\CLASSES\Pbrush\protocol
\StdFileEditing\server
HKEY_ LOCAL_MACHINE \Software\CLASSES\\Paint.Picture\
shell\open\command
HKEY_ LOCAL_MACHINE \Software\CLASSES\\Paint.Picture\
shell\print\command
HKEY_ LOCAL_MACHINE \Software\CLASSES\\Paint.Picture\
shell\printto\command
HKEY_USERS\.DEFAULT\Software\Microsoft\Cryptography\
UserKeys\Prizzy/29A
HKEY_USERS\.DEFAULT\Software\Microsoft\Cryptography\
UserKeys\Prizzy/29A
HKEY_USERS\.DEFAULT\Software\Microsoft\Cryptography\
UserKeys\Prizzy/29A
HKEY_USERS\.DEFAULT\Software\Microsoft\Cryptography\
UserKeys\Prizzy/29A
HKEY_USERS\.DEFAULT\Software\Microsoft\Cryptography\
UserKeys\Prizzy/29A
HKEY_USERS\.DEFAULT\Software\Microsoft\Cryptography\
UserKeys\Prizzy/29A
HKEY_USERS\.DEFAULT\Software\Microsoft\Cryptography\
UserKeys\Prizzy/29A
̾¡¡¡¡¾Î:PE_ESMERALDA.807
ÊÌ¡¡¡¡Ì¾:WIN95.ESMERALDA.807
ʬ¡¡¡¡Îà:¥Õ¥¡¥¤¥ë´¶À÷·¿
ÂС¡¡¡¾Ý:WIN 32bit
ȯ¾ÍÃÏ:Columbia
ȯ¸«Æü:1999/12
¾Ü¡¡¡¡ºÙ:¤³¤ì¤ÏWindows9x/ NT¾å¤Çưºî²Äǽ¤Î32bit ¥Õ¥¡
¥¤¥ë´¶À÷·¿¥¦¥¤¥ë¥¹¤Ç¤¹¡£¥á¥â¥ê¤Ë¾ïÃ󤹤뤿¤á¡¢¥¢¥¯¥»
¥¹¤·¤¿EXE(PE ¥¿¥¤¥×)¥Õ¥¡¥¤¥ë¤¹¤Ù¤Æ¤Ë´¶À÷¤¹¤ë¤³¤È¤¬²Ä
ǽ¤Ç¤¹¡£
´¶À÷¤·¤¿¥Õ¥¡¥¤¥ë¤ò¼Â¹Ô¤¹¤ë¤È¡¢PE_ESMERALDA.807¤Ï´¶À÷
³èư¤ò³«»Ï¤·¡¢¤Þ¤º¥á¥â¥ê¤Ë¾ïÃó¤·¤Þ¤¹¡£°Ê¸å¡¢¼Â¹Ô¤·¤¿
¤¹¤Ù¤Æ¤ÎPE¥Õ¥¡¥¤¥ë¤Ë´¶À÷¤¹¤ë¤³¤È¤¬¤Ç¤¤Þ¤¹.
´¶À÷»þ¤Ë¡¢´¶À÷ÂоݤΥե¡¥¤¥ë¤Î°ìÈֺǸå¤Î¥»¥¯¥·¥ç¥ó¤Ë
¥¦¥¤¥ë¥¹¥³¡¼¥É¤òÄɲä·¡¢¥¨¥ó¥È¥ê¡¼¥Ý¥¤¥ó¥È¤ò²þÊѤ·¤Æ
¥¦¥¤¥ë¥¹¥³¡¼¥É¤Ø¤Î¥¸¥ã¥ó¥×Ì¿Îá¤ò²Ã¤¨¤Þ¤¹¡£
¤Þ¤¿¡¢CheckSum¥»¥¯¥·¥ç¥ó¤ò²þÊѤ·¡¢´¶À÷¤·¤¿¤³¤È¤ò°õ¤Å
¤±¡¢Æó½Å´¶À÷¤òËɤ°¤è¤¦¤Ë¤·¤Æ¤¤¤Þ¤¹¡£¤³¤Î¥¦¥¤¥ë¥¹¥³
¡¼¥É¤Ë¤Ï¡¢°Ê²¼¤Î¥Æ¥¥¹¥È¤¬´Þ¤Þ¤ì¤Æ¤¤¤Þ¤¹¡£
ESMERALDA para Esmeralda Vera Vera
Bucaramanga, Colombia, 1999
´¶À÷¤¹¤ë¤À¤±¤Ç¡¢Ç˲õ³èư¤Ï¤¢¤ê¤Þ¤»¤ó¡£
̾¡¡¡¡¾Î:PE_FUNLOVE.4099
ÊÌ¡¡¡¡Ì¾:W32/Flcss, W32.FUNLOVE.4099 , WIN32.FLC
ʬ¡¡¡¡Îà:¥Õ¥¡¥¤¥ë´¶À÷·¿
ÂС¡¡¡¾Ý:WIN 32bit
¾Ü¡¡¡¡ºÙ:-
¡¡32¥Ó¥Ã¥È¤Î¥Õ¥¡¥¤¥ë´¶À÷·¿¥¦¥¤¥ë¥¹¤Ç¤¹¡£´¶À÷¤Î¤¿¤á¤Ë
Ê̤˼¹ԲÄǽ¥Õ¥¡¥¤¥ë¤òºîÀ®¤·¤Þ¤¹¡£¤³¤Î¤è¤¦¤Ê³èư¤ò¹Ô
¤¦¥¦¥¤¥ë¥¹¤ò°ìÈÌŪ¤Ë¡Ö¥¦¥¤¥ë¥¹¥É¥í¥Ã¥Ñ¡¼¡×¤È¸Æ¤Ö¾ì¹ç
¤¬¤¢¤ê¤Þ¤¹¡£
¡¡¤³¤Î¥¦¥¤¥ë¥¹¤¬¼Â¹Ô¤µ¤ì¤ë¤È¡¢¤Þ¤º¡¢Windows¤Î¥·¥¹¥Æ¥à
¥Ç¥£¥ì¥¯¥È¥ê¡ÊÎã:C:\WINDOWS\SYSTEM¡Ë¤Ë"FCLSS.EXE"¥Õ
¥¡¥¤¥ë¤òºîÀ®¤·¤Þ¤¹¡£¤³¤Î¥Õ¥¡¥¤¥ë¤Ï¥¦¥¤¥ë¥¹¤Î¥×¥í¥°¥é
¥à¥³¡¼¥É¤¬¤½¤Î¤Þ¤Þµ½Ò¤µ¤ì¤Æ¤¤¤ë¤â¤Î¤Ç¤¹¡£¼¡¤Ë"FCLSS.
EXE"¤òµ¯Æ°¤·¤Æ´¶À÷¥Õ¥¡¥¤¥ë¤Î¥¦¥¤¥ë¥¹¤Ï½ªÎ»¤·¤Þ¤¹¡£
¡¡"FCLSS.EXE"¤Ïµ¯Æ°¤µ¤ì¤ë¤ÈC:¤«¤éZ:¤Þ¤Ç¤Î¤¹¤Ù¤Æ¤Î¥í
¡¼¥«¥ë¥É¥é¥¤¥ÖÆâ¤ò¥µ¥Ö¥Ç¥£¥ì¥¯¥È¥ê¤ò´Þ¤á¤Æ¸¡º÷¤·¡¢
EXE, .SCR, .OCX¤Î³ÈÄ¥»Ò¤ò¤â¤Ä¤¹¤Ù¤Æ¤ÎPE·¿¥Õ¥¡¥¤¥ë¤Ë´¶
À÷¤·¤Þ¤¹¡£¥Í¥Ã¥È¥ï¡¼¥¯¾å¤Î¶¦Í¥Ç¥£¥ì¥¯¥È¥ê¤Ç¤â¥Í¥Ã¥È
¥ï¡¼¥¯¥É¥é¥¤¥Ö¤È¤·¤Æ³ä¤êÅö¤Æ¤é¤ì¤Æ¤¤¤ì¤Ð¸¡º÷ÂоݤˤÊ
¤ê¡¢½ñ¤¹þ¤ß¸¢¸Â¤¬¥æ¡¼¥¶¤Ë¤¢¤ì¤Ð´¶À÷¤¹¤ë¤³¤È¤¬¤Ç¤¤Þ
¤¹¡£¤¿¤À¤·´¶À÷»þ¤Ë¥Õ¥¡¥¤¥ë̾¤ò¥Á¥§¥Ã¥¯¤·¡¢°Ê²¼¤Î̾Á°
¤Î¥Õ¥¡¥¤¥ë¤Ë¤Ï´¶À÷¤·¤Þ¤»¤ó¡£
¡¡ALER*, AMON*, _AVP*, AVP3*, AVPM*, F-PR*, NAVW*,
SCAN*, SMSS*, DDHE*, DPLA*, MPLA* ¡Ê*¤Ï¥ï¥¤¥ë¥É¥«¡¼
¥É¡Ë
¡¡´¶À÷¤·¤¿¥Õ¥¡¥¤¥ë¤Ï¡¢¥³¡¼¥É¤ÎºÇ¸å¤Î¥»¥¯¥·¥ç¥ó¤Ë¥¦¥¤
¥ë¥¹¥³¡¼¥É¤¬Äɲ䵤졢¥Õ¥¡¥¤¥ë¥µ¥¤¥º¤¬4,099¥Ð¥¤¥ÈÁý²Ã
¤·¤Þ¤¹¡£¤³¤ì¤Ï"FCLSS.EXE"¥Õ¥¡¥¤¥ë¤Î¥µ¥¤¥º¤Ç¤â¤¢¤ê¤Þ
¤¹¡£
¡¡"FCLSS.EXE"¥Õ¥¡¥¤¥ë¤òºîÀ®¤¹¤ë¥×¥í¥»¥¹Ãæ¤Ë¥¨¥é¡¼¤¬È¯
À¸¤·¤¿¾ì¹ç¤Ï¡¢´¶À÷¸µ¥Õ¥¡¥¤¥ë¤Î´¶À÷¥ë¡¼¥Á¥ó¤ò¼Â¹Ô¤µ
¤»¡¢Â¾¤Î¥Õ¥¡¥¤¥ë¤Ë´¶À÷¤ò»î¤ß¤Þ¤¹¡£¤³¤Î´¶À÷¥×¥í¥»¥¹¤Ï
¤¹¤Ù¤Æ¥Ð¥Ã¥¯¥°¥é¥¦¥ó¥É¤Çưºî¤·¡¢¥æ¡¼¥¶¡¼¤¬¤½¤ì¤Èµ¤ÉÕ
¤¯¤Û¤É¤Î¥·¥¹¥Æ¥àưºî¤ÎÃٱ䤬À¸¤¸¤ë¤³¤È¤Ï¤¢¤ê¤Þ¤»¤ó¡£
¤Þ¤¿¡¢NT¾å¤Ç¤Ï¡¢NTLDR ¤È NTOSKRNL.EXE ¤Ë¥Ñ¥Ã¥Á¤ò¤¢¤Æ
¤Æ¡¢¤¹¤Ù¤Æ¤Î¥æ¡¼¥¶¤ËAdministrator¸¢¸Â¤òÍ¿¤¨¤ë¤è¤¦¥·
¥¹¥Æ¥à¤ò²þÊѤ·¤Æ¤·¤Þ¤¤¤Þ¤¹¡£¤¿¤À¤·¡¢¤³¤Î²þÊѤϡ¢¤½¤Î
¤È¤¤Î¥æ¡¼¥¶¡¼¤¬Administrator¸¢¸Â¤Ç¥í¥°¥ª¥ó¤·¤Æ¤ª
¤ê¡¢¤Þ¤¿¼¡¤ÎºÆµ¯Æ°»þ¤ËºÆ¤ÓƱ¤¸¸¢¸Â¤Ç¥í¥°¥ª¥ó¤·¤¿¾ì¹ç
¤Ë¤·¤«¼Â¹Ô¤Ç¤¤Þ¤»¤ó¡£
¡¡FUNLOVE¤Ë¤Ï°Ê²¼¤Î¥Æ¥¥¹¥È¤¬´Þ¤Þ¤ì¤Þ¤¹¡£DOS¥â¡¼¥É¤Ç
µ¯Æ°¤¹¤ë¤È¤³¤Î¥Æ¥¥¹¥È¤¬É½¼¨¤µ¤ì¡¢¥Þ¥·¥ó¤¬ºÆµ¯Æ°¤µ¤ì
¤Þ¤¹¡£
¡È~Fun Loving Criminal~¡É
¡¡´¶À÷¤¹¤ë¤À¤±¤Ç¡¢°¼Á¤ÊÇ˲õ³èưÅù¤Ï¤¢¤ê¤Þ¤»¤ó¡£
È÷¡¡¡¡¹Í:
¡¡"FCLSS.EXE"¤Ï¡ÖPE_FUNLOVEDROP¡×¤Î̾¾Î¤Çȯ¸«¤µ¤ì¤Þ
¤¹¡£
̾¡¡¡¡¾Î:PE_FUNLOVEDROP
¸À¡¡¡¡¸ì:±Ñ¸ì
ʬ¡¡¡¡Îà:¤½¤Î¾
ÂС¡¡¡¾Ý:WIN 32bit
¥¦¥¤¥ë¥¹¥µ¥¤¥º:4099bytes
¾Ü¡¡¡¡ºÙ:-
¡¡¤³¤ì¤Ï32¥Ó¥Ã¥È(PE)¤Î¥Õ¥¡¥¤¥ë´¶À÷·¿¥¦¥¤¥ë¥¹¡ÖPE_
FUNLOVE.4099¡×¤¬´¶À÷³èư¤Î¤¿¤á¤ËºîÀ®¤¹¤ë¥×¥í¥°¥é¥à¥Õ
¥¡¥¤¥ë¤Ç¤¹¡£°ìÈÌŪ¤Ë¤³¤Î¤è¤¦¤Ê¥Õ¥¡¥¤¥ë¤ò¡Ö¥¦¥¤¥ë¥¹Ž¥¥É
¥í¥Ã¥Ñ¡¼¡×¤È¾Î¤·¤Þ¤¹¡£°ì¸Ä¤Î¥×¥í¥°¥é¥à¤Ê¤Î¤Ç¶î½ü¤Ï¤Ç
¤¤Þ¤»¤ó¡£
¡¡¡ÖPE_FUNLOVE.4099¡×¥¦¥¤¥ë¥¹¤¬¼Â¹Ô¤µ¤ì¤ë¤È¡¢¤Þ¤º
Windows\system ¥Ç¥£¥ì¥¯¥È¥ê¤Ë¡¢"flcss.exe" ¤È¤¤¤¦¥Õ¥¡
¥¤¥ë¤òºîÀ®¤·¤Þ¤¹¡£¤³¤Î¥Õ¥¡¥¤¥ë¤¬¤³¤Î¡ÖPE_
FUNLOVEDROP¡×¤Ç¤¹¡£¤³¤Î¥Õ¥¡¥¤¥ë¤Ï¡ÖPE_FUNLOVE.4099¡×
¥¦¥¤¥ë¥¹¤Î¥¦¥¤¥ë¥¹¥³¡¼¥É¤Î¥³¥Ô¡¼¤Ç¤¹¡£
¡¡¡ÖPE_FUNLOVEDROP¡×¤ÏñÂΤǵ¯Æ°¤µ¤ì¤¿¾ì¹ç¤â´¶À÷³èư
¤ò¹Ô¤¤¤Þ¤¹¡£¥Õ¥¡¥¤¥ë̾¤ÏÄ̾ï"FCLSS.EXE"¤Ç¤¹¤¬¡¢¥Õ¥¡¥¤
¥ë̾¤¬Êѹ¹¤µ¤ì¤Æ¤âÌäÂê¤Ê¤¯Æ°ºî¤·¤Þ¤¹¤Î¤ÇÃí°Õ¤¬É¬ÍפÇ
¤¹¡£
¡¡¤â¤·¡¢¤¹¤Ç¤Ë¡ÖPE_FUNLOVE.4099¡×¤¬´¶À÷¤·¤Æ¤¤¤ë¥Þ¥·¥ó
¾å¤Ç¡ÖPE_FUNLOVEDROP¡×¤¬¼Â¹Ô¤µ¤ì¤ë¤È°Ê²¼¤Î¤è¤¦¤Êµ¶¤Î
¥¨¥é¡¼¥á¥Ã¥»¡¼¥¸¤òɽ¼¨¤·¡¢½ªÎ»¤·¤Þ¤¹¡£
¡ãFlscc¡ä
This program has performed an illegal operation and
will be shut down.
If the problem persists, contact the program vendor.
¡¡¡ÖPE_FUNLOVEDROP¡×¤Î¥Õ¥¡¥¤¥ë̾¤ÏÄ̾ï¤Ï"FCLSS.EXE"¤Ç
¤¹¤¬¡¢¥Õ¥¡¥¤¥ë̾¤¬Êѹ¹¤µ¤ì¤Æ¤âÌäÂê¤Ê¤¯Æ°ºî¤·¤Þ¤¹¤Î¤Ç
Ãí°Õ¤¬É¬ÍפǤ¹¡£
̾¡¡¡¡¾Î:PE_HLLC.NAN
ÊÌ¡¡¡¡Ì¾:HLLC_Nan, WIN32.PRURIENT.TORTUROUS.PAIN,
Win32_HLLC_Nan
ʬ¡¡¡¡Îà:¥Õ¥¡¥¤¥ë´¶À÷·¿
ÂС¡¡¡¾Ý:Win32 / Win95 / Win98 / WinNT
¥¦¥¤¥ë¥¹¥µ¥¤¥º:89,600 bytes
¾Ü¡¡¡¡ºÙ:¤³¤Î¥¦¥¤¥ë¥¹¤ÏPE¥¿¥¤¥×¤Î¥Õ¥¡¥¤¥ë´¶À÷·¿¥¦¥¤
¥ë¥¹¤Ç¤¢¤ë¡£¥á¥â¥ê¤Ë¾ïÃ󤷤ʤ¤Ä¾ÀÜ´¶À÷·¿¤Ç¡¢
¤¢¤ë·è¤Þ¤Ã¤¿¥Õ¥¡¥¤¥ë¤Ë¤Î¤ß´¶À÷¤¹¤ë¡£¥³¡¼¥É¤ÏDELPHI¤Ç
µ½Ò¤µ¤ì¤Æ¤¤¤ë¡£
´¶À÷ÊýË¡¡¨
- ¤³¤Î¥¦¥¤¥ë¥¹¤Ë´¶À÷¤·¤¿¥Õ¥¡¥¤¥ë¤ò¼Â¹Ô¤¹¤ë¤È¡¢Ê£¿ô¤Î
¥Õ¥¡¥¤¥ë¤òõ¤·½Ð¤·¡¢ÊÌ̾¤ÇÊݸ¤·¤¿¤¢¤È¡¢¥ª¥ê¥¸¥Ê¥ë¥Õ¥¡¥¤¥ë¤ò¥¦¥¤¥ë¥¹¥³ ¡¼¥É¤Ç¾å½ñ¤¤¹¤ë¡£
¤µ¤é¤Ë¥¦¥¤¥ë¥¹¤Ï¥Õ¥í¥Ã¥Ô¡¼¥Ç¥£¥¹¥¯¤ò´Þ¤à¥Ç¥£¥¹¥¯¾å
¤Ë¡¢WIN32APP.EXE, WINLOGIN.EXE ZIPTOOLS.EXE¤È¤¤¤¦Ì¾Á°
¤Ç¥¦¥¤¥ë¥¹¤Î¥³¥Ô¡¼¤òºîÀ®¤¹¤ë¡£
- ¤½¤·¤Æ°Ê²¼¤Î¥ì¥¸¥¹¥È¥ê¡¦¥¨¥ó¥È¥ê¤òºîÀ®¤·¡¢¥Þ¥·¥ó¤Î
µ¯Æ°»þ¤ËWIN32APP.EXE¤¬É¬¤º¼Â¹Ô¤µ¤ì¤ë¤è¤¦¤ËÀßÄꤹ¤ë¡£
\Software\Microsoft\Windows\CurrentVersion\Run c:\
Win32App.exe
- ¤Þ¤¿¡¢ PE_HLLC.NAN ¤Ï¥·¥¹¥Æ¥à¤ÎÆüÉդȻþ¹ï¤ò¥Á¥§¥Ã¥¯
¤·¡¢¥³¡¼¥ÉÆâ¤Ç¥é¥ó¥À¥à¤ËÀ¸À®¤·¤¿
¿ôÃͤȡ¢¤½¤Î¤È¤¤Î»þ¹ï¤¬°ìÃפ·¤¿¤È¤¡¢°Ê²¼¤Î¥ë¡¼¥Á¥ó
¤ò¼Â¹Ô¤¹¤ë¡£
1.¥³¥ó¥Ô¥å¡¼¥¿¡¼Ì¾¤È¥Ï¡¼¥É¥Ç¥£¥¹¥¯¤Î¥Ü¥ê¥å¡¼¥à̾¤ò½é
´ü²½¤¹¤ë¡£
2.*.URL¥Õ¥¡¥¤¥ë¡Ê¤ªµ¤¤ËÆþ¤ê¤òÅÐÏ¿¤¹¤ë¡Ë¤òõ¤·¡¢°Ê²¼¤Î
¤¤¤º¤ì¤«¤Î¥¨¥ó¥È¥ê¤ØÃÖ¤´¹¤¨¤ë¡£
URL=http://www.hustler.com
URL=http://www.playboy.com
URL=http://www.penthouse.com
3.°Ê²¼¤Î¥Õ¥¡¥¤¥ë¤òõ¤·¤À¤·¡¢0¥Ð¥¤¥È¤Ç¾å½ñ¤¤·¤Æ¤·¤Þ
¤¦¡£
C:\windows\hosts
C:\windows\lmhosts
C:\windows\system32\drivers\etc\hosts
C:\windows\system32\drivers\etc\lmhosts
4.¤Þ¤¿¥é¥ó¥À¥à¤Ë²¼µ¤Î¤¤¤º¤ì¤«¤Îưºî¤ò¼Â¹Ô¤¹¤ë¡£
¡ Windows¤ò½ªÎ»¤µ¤»¤ë¡£
¢ C¥É¥é¥¤¥Ö¤Ë¥é¥ó¥À¥à¤Ê̾¾Î¤Ç700.000.000¥Õ¥©¥ë¥À¤òºî
À® ¤¹¤ë¡£
£ PE_CIH¥¦¥¤¥ë¥¹¤Ë´¶À÷¤·¤Æ¤¤¤ë¡ÉDAPARTY.EXE¡É¤È¤¤¤¦
¥Õ¥¡¥¤¥ë¤òC¥É¥é¥¤¥Ö¤Î¥ë¡¼¥È¤Ë
ºîÀ®¤·¡¢¼Â¹Ô¤¹¤ë¡£
¤²¼µ¤Î¥á¥Ã¥»¡¼¥¸¤òɽ¼¨¤¹¤ë¡£Greets to VirusBuster:
darknode@oninet.es
Congratulations, you have Win32.Prurient.Torturous.
Pain
̾¡¡¡¡¾Î:PE_HLLPDETROIE
ÊÌ¡¡¡¡Ì¾:W95.HLLP.DETROIE
ʬ¡¡¡¡Îà:¥Õ¥¡¥¤¥ë´¶À÷·¿
ÂС¡¡¡¾Ý:Windows95:32ŽËŽÞޝŽÄPE·Á¼°ŽÌާ޲ŽÙ
¥¦¥¤¥ë¥¹¥µ¥¤¥º:Ìó1000¥Ð¥¤¥È
ȯ¾ÍÃÏ:ÉÔÌÀ
ȯ¸«Æü:ÉÔÌÀ
¾Ü¡¡¡¡ºÙ:-¡¡PE_HLLPDeTroie¤ÏWin95 EXE¥Õ¥¡¥¤¥ë¤Ë´¶À÷
¤¹¤ë¥·¥ó¥×¥ë¤ÊľÀÜ´¶À÷·¿¥¦¥¤¥ë¥¹¤Ç¤¢¤ëŽ¡
-¡¡¤¿¤Þ¤Ë´¶À÷¤¹¤ëÂоݥե¡¥¤¥ë¤ò¾å½ñ¤¤·¤Æ¤·¤Þ¤¦¡£¤³¤Î
¤è¤¦¤Ê¤È¤¤Ï¶î½ü¤Ç¤¤Ê¤¤¡£
̾¡¡¡¡¾Î:PE_HPS.5124
ʬ¡¡¡¡Îà:¥Õ¥¡¥¤¥ë´¶À÷·¿
ÂС¡¡¡¾Ý:WIN 32bit(WIN95/98)
¥¦¥¤¥ë¥¹¥µ¥¤¥º:5,124¥Ð¥¤¥È
¾Ü¡¡¡¡ºÙ:
¡¡PE_HPS.5124¤Ï¥ß¥å¡¼¥Æ¡¼¥·¥ç¥óÊý¼°¤Î¥¹¥Æ¥ë¥¹
³èư¤ò¹Ô¤¦32¥Ó¥Ã¥È¤Î¥Õ¥¡¥¤¥ë´¶À÷·¿¥¦¥¤¥ë¥¹¤Ç¤¹¡£PE(
Portable Executable)·Á¼°¤Î¼Â¹Ô²Äǽ¥Õ¥¡¥¤¥ë¤Ë¤Î¤ß´¶À÷
¤·¤Þ¤¹¡£
³èư:
¡¡´¶À÷¥Õ¥¡¥¤¥ë¤òµ¯Æ°¤¹¤ë¤È¥á¥â¥ê¤Ë¥í¡¼¥É¤µ¤ì¤Þ¤¹¡£¤½
¤Î¸å¡¢»ÈÍѤ·¤¿PE·Á¼°¤Î¥Õ¥¡¥¤¥ë¤Ë´¶À÷¤·¤Æ¤¤¤¤Þ¤¹¡£¥¦
¥¤¥ë¥¹¥³¡¼¥É¤ò¥Õ¥¡¥¤¥ëËöÈø¤ËÄɲ乤뤳¤È¤Ë¤è¤Ã¤Æ´¶À÷
¤·¤Þ¤¹¡£´¶À÷Ëè¤Ë¼«¿È¤Î¥¦¥¤¥ë¥¹¥³¡¼¥É¤Ë°ã¤Ã¤¿°Å¹æ²½¤ò
¤«¤±¤ë¥ß¥å¡¼¥Æ¡¼¥·¥ç¥óÊý¼°¤Î¥¹¥Æ¥ë¥¹³èư¤ò¹Ô¤¤¡¢¥¦¥¤
¥ë¥¹ÂкöÀ½Éʤ«¤éȯ¸«¤µ¤ì¤Ë¤¯¤¯¤·¤Þ¤¹¡£¤½¤Î¸å¡¢ANTI-
VIR.DAT, CHKLIST.MS, AVP.CRC, IVB.NTZ¤È¤¤¤Ã¤¿¡¢¥¦¥¤¥ë
¥¹½üµî¥½¥Õ¥È¤Î¥Ç¡¼¥¿¤¬¤¢¤ì¤Ð¡¢¤½¤ì¤é¥Ç¡¼¥¿¤òºï½ü¤·¤Þ
¤¹¡£
¡¡ÅÚÍËÆü¤Ë´¶À÷¥Þ¥·¥ó¤òµ¯Æ°¤¹¤ë¤È¥¦¥¤¥ë¥¹¤Ï¥Ó¥Ã¥È¥Þ¥Ã
¥×·Á¼°¤Î²èÁü¥Õ¥¡¥¤¥ë¤ò²þÊѤ·¤Þ¤¹¡£²èÁü¤ÏÅ·ÃϤòµÕ¤µ¤Þ
¤Ë¤µ¤ì¡¢"DEADBABEh"¤È¤¤¤¦Ê¸»úÎó¤¬ÁÞÆþ¤µ¤ì¤Þ¤¹¡£¼¡¤Ë¥¦
¥¤¥ë¥¹¤Ï²þÊѤ·¤¿¥Ó¥Ã¥È¥Þ¥Ã¥×¥Õ¥¡¥¤¥ë¤òɽ¼¨¤·¡¢²èÌ̾å
¤ò±¦¤«¤éº¸¤Ë°Üư¤µ¤»¤Þ¤¹¡£
¡¡¥¦¥¤¥ë¥¹¥³¡¼¥ÉÆâ¤Ë°Ê²¼¤Îʸ»úÎó¤ò´Þ¤ß¤Þ¤¹:
"< Hantavirus Pulmonary Syndrome (HPS) Virus BioCoded
by GriYo / 29A >"
È÷¡¡¡¡¹Í:
̾¡¡¡¡¾Î:PE_HPS-1
ÊÌ¡¡¡¡Ì¾:HPS-1, Hanta, Win95.HPS, PE_HPS-2
ʬ¡¡¡¡Îà:¥Õ¥¡¥¤¥ë´¶À÷·¿
ÂС¡¡¡¾Ý:Win9x
¥¦¥¤¥ë¥¹¥µ¥¤¥º:26563 Bytes
ȯ¸«Æü:1998/01
¾Ü¡¡¡¡ºÙ:
¡¡PE_HPS-1¤Ï¥ß¥å¡¼¥Æ¡¼¥·¥ç¥óÊý¼°¤Î¥¹¥Æ¥ë¥¹³èư
¤ò¹Ô¤¦32¥Ó¥Ã¥È¤Î¥Õ¥¡¥¤¥ë´¶À÷·¿¥¦¥¤¥ë¥¹¤Ç¤¹¡£PE(
Portable Executable)·Á¼°¤Î¼Â¹Ô²Äǽ¥Õ¥¡¥¤¥ë¤Ë¤Î¤ß´¶À÷
¤·¤Þ¤¹¡£
³èư:
¡¡´¶À÷¥Õ¥¡¥¤¥ë¤òµ¯Æ°¤¹¤ë¤È¥á¥â¥ê¤Ë¥í¡¼¥É¤µ¤ì¤Þ¤¹¡£¤½
¤Î¸å¡¢»ÈÍѤ·¤¿PE·Á¼°¤Î¥Õ¥¡¥¤¥ë¤Ë´¶À÷¤·¤Æ¤¤¤¤Þ¤¹¡£¥¦
¥¤¥ë¥¹¥³¡¼¥É¤ò¥Õ¥¡¥¤¥ëËöÈø¤ËÄɲ乤뤳¤È¤Ë¤è¤Ã¤Æ´¶À÷
¤·¤Þ¤¹¡£´¶À÷Ëè¤Ë¼«¿È¤Î¥¦¥¤¥ë¥¹¥³¡¼¥É¤Ë°ã¤Ã¤¿°Å¹æ²½¤ò
¤«¤±¤ë¥ß¥å¡¼¥Æ¡¼¥·¥ç¥óÊý¼°¤Î¥¹¥Æ¥ë¥¹³èư¤ò¹Ô¤¤¡¢¥¦¥¤
¥ë¥¹ÂкöÀ½Éʤ«¤éȯ¸«¤µ¤ì¤Ë¤¯¤¯¤·¤Þ¤¹¡£
¡¡ÅÚÍËÆü¤Ë´¶À÷¥Þ¥·¥ó¤òµ¯Æ°¤¹¤ë¤È¥Ó¥Ã¥È¥Þ¥Ã¥×·Á¼°¤Î²è
Áü¥Õ¥¡¥¤¥ë¤òÅ·ÃϤòµÕ¤µ¤Þ¤Ë²þÊѤ·¤Þ¤¹¡£¼¡¤Ë¥¦¥¤¥ë¥¹¤Ï
²þÊѤ·¤¿²èÁü¥Õ¥¡¥¤¥ë¤ò²èÌ̾å¤Ëɽ¼¨¤·¤Þ¤¹¡£¤Þ¤¿¡¢¥¦¥¤
¥ë¥¹ÂкöÀ½ÉʤΥե¡¥¤¥ë¤òõ¤·¡¢¸«¤Ä¤±¤¿¥Õ¥¡¥¤¥ë¤òºï½ü
¤·¤Þ¤¹¡£
¡¡¥¦¥¤¥ë¥¹¥³¡¼¥ÉÆâ¤Ë°Ê²¼¤Îʸ»úÎó¤ò´Þ¤ß¤Þ¤¹:
"Hantavirus Pulmonary Syndrome (HPS) Virus BioCoded
by GriYo/29A.HPS Virus."
̾¡¡¡¡¾Î:PE_INFIS.4608
ÊÌ¡¡¡¡Ì¾:WINNT.INFIS.4608, WNT/INFIS.4608
ʬ¡¡¡¡Îà:¥Õ¥¡¥¤¥ë´¶À÷·¿
ÂС¡¡¡¾Ý:WinNT4.0 w/SP2¡Á
¥¦¥¤¥ë¥¹¥µ¥¤¥º:4608bytes
ȯ¸«Æü:1999/10
¾Ü¡¡¡¡ºÙ:¤³¤Î¥¦¥¤¥ë¥¹¤ÏWindowsNT¾å¤Ç´¶À÷¤¹¤ë¿·¤·¤¤¥¦
¥¤¥ë¥¹¤Ç¤¹¡£¥¤¥ó¥Õ¥£¥¹¤Ï¥á¥â¥ê¾ïÃ󷿤Υ¦¥£¥ë¥¹¤Ç¡¢¡Ö
Service Pack¡×¤Î2°Ê¾å¤¬¥¤¥ó¥¹¥È¡¼¥ë¤µ¤ì¤¿¡ØWindows NT
4.0¡Ù¾å¤Çưºî¤·¡¢PE¥¿¥¤¥×¤ÎEXE¥Õ¥¡¥¤¥ë¤Ë´¶À÷¤·¤Þ¤¹¡£
¤¿¤À¤·¡¢CMD.EXE(Windows NT¤Î¥³¥Þ¥ó¥É¥×¥í¥»¥Ã¥µ¡¼)¤Ë¤Ï
´¶À÷¤·¤Þ¤»¤ó¡£¤Þ¤¿¡¢Windows 95/98¡¢Windows 2000¤ª¤è¤Ó
¾¤ÎWindows NT OS¤Ç¤Ïưºî¤·¤Þ¤»¤ó¡£
PE_INFIS¥¦¥¤¥ë¥¹´¶À÷¥Õ¥¡¥¤¥ë¤ò¼Â¹Ô¤¹¤ë¤È¡¢¤Þ¤º¡¢PE¥¿
¥¤¥×¤ÎEXE¥Õ¥¡¥¤¥ë¤Ë´¶À÷¤·¤è¤¦¤È»î¤ß¤Þ¤¹¡£¤³¤Î¤È¤¡¢¥¦
¥¤¥ë¥¹¤Î¥Ð¥°¤Î¤¿¤á¡¢´¶À÷¤·¤¿¥Õ¥¡¥¤¥ë¤Ï²õ¤ì¤Æ¤·¤Þ¤¤¤Þ
¤¹¡£
°ìÊý¤Ç¡¢WINNT\System32\Drivers¥Ç¥£¥ì¥¯¥È¥ê¤ËINF.SYS¤È
¤¤¤¦¥Õ¥¡¥¤¥ë̾¤òºîÀ®¤·¡¢´°Á´¤Ê¥¦¥¤¥ë¥¹¥³¡¼¥É¤òÊݸ¤·
¤Þ¤¹¡£
¼¡¤Ë°Ê²¼¤Î¥ì¥¸¥¹¥È¥ê¥¨¥ó¥È¥ê¤Ë»°¤Ä¤ÎÃͤòÉÕ¤±²Ã¤¨¤Þ
¤¹¡£
\Registry\Machine\System\CurrentControlSet\Services\
inf Type = 1 Start = 2
ErrorControl = 1 _
°Ê¸å¡¢PE_INFIS¥¦¥¤¥ë¥¹¤Ï¥·¥¹¥Æ¥à¤Îµ¯Æ°»þ¤Ëɬ¤ºÆÉ¤ß¹þ
¤Þ¤ì¡¢¥á¥â¥ê¤Ë¾ïÃó¤·¤Þ¤¹¡£PE_INFIS¤Ï¥Ç¥Ð¥¤¥¹¥É¥é¥¤¥Ð
¡¼¤È¤·¤Æµ¡Ç½¤·¡¢NT¤Î¥·¥¹¥Æ¥à¤òÀ©¸æ¤·¤Æ¥Õ¥¡¥¤¥ë¤Î¥ª
¡¼¥×¥ó¤ò´Æ»ë¤·¡¢³«¤¤¤¿PE¥¿¥¤¥×¤Î¥Õ¥¡¥¤¥ë¤Ë´¶À÷¤·¤è¤¦
¤È»î¤ß¤Þ¤¹¡£
¡¡¤³¤Î¥¦¥¤¥ë¥¹¤Ë¤ÏÇ˲õ³èư¤ò¹Ô¤¦Í×ÁÇ¤Ï´Þ¤Þ¤ì¤Æ¤¤¤Þ¤»
¤ó¡£¤·¤«¤·¥¦¥¤¥ë¥¹¤Î¥Ð¥°¤Î¤¿¤á¡¢¥Õ¥¡¥¤¥ë¤ò´¶À÷¤µ¤»¤¿
»þ¤Ë¤½¤Î¥Õ¥¡¥¤¥ë¤ò²õ¤ï¤·¤Æ¤·¤Þ¤¤¤Þ¤¹¡£²õ¤ì¤¿¥Õ¥¡¥¤¥ë
¤¬¼Â¹Ô¤µ¤ì¤ë¤È¡¢É¸½àŪ¤ÊWindows NT¤Î¥¢¥×¥ê¥±¡¼¥·¥ç¥ó
¡¦¥¨¥é¡¼¡¦¥á¥Ã¥»¡¼¥¸¤¬É½¼¨¤µ¤ì¤Þ¤¹¡£
È÷¡¡¡¡¹Í:´¶À÷¤·¤Æ²õ¤ì¤¿¥Õ¥¡¥¤¥ë¤â¡¢¥È¥ì¥ó¥É¥Þ¥¤¥¯¥í
À½ÉʤǶî½ü¤¹¤ì¤Ð¸µÄ̤ê¤Ë»ÈÍѤǤ¤ë¤è¤¦¤Ë¤Ê¤ê¤Þ¤¹¡£
̾¡¡¡¡¾Î:PE_INTA.1676
ÊÌ¡¡¡¡Ì¾:PE_INSTA.676, W2K.INSTALLER.1676, WIN2K.
INTA.1676
ʬ¡¡¡¡Îà:¥Õ¥¡¥¤¥ë´¶À÷·¿
ÂС¡¡¡¾Ý:Windows 2000
¥¦¥¤¥ë¥¹¥µ¥¤¥º:1676 bytes
¾Ü¡¡¡¡ºÙ:PE_INTA¤ÏWindows2000¤Ç¤Î¤ß´¶À÷¤¹¤ëºÇ½é¤Î¥¦
¥¤¥ë¥¹¤Ç¤¹¡£32¥Ó¥Ã¥È(PE)·Á¼°¤Î¥Õ¥¡¥¤¥ë´¶À÷·¿¥¦¥¤¥ë¥¹
¤Ç¡¢´¶À÷Á°¤ËWindows¤Î¥Ð¡¼¥¸¥ç¥ó¤ò¥Á¥§¥Ã¥¯¤·¡¢
Windows2000¤Î¾ì¹ç¤Î¤ß´¶À÷¤·¤Þ¤¹¡£
¤Þ¤¿¡¢MSI¡ÊMicrosoft Windows Installer¡Ë¥Õ¥¡¥¤
¥ë¤ò¤â´¶À÷ÂоݤȤ·¤¿½é¤á¤Æ¤Î¥¦¥¤¥ë¥¹¤Ç¤¹¡£
´¶À÷ÊýË¡:
¡¡¼Â¹Ô¤µ¤ì¤ë¤È¥«¥ì¥ó¥È¥Ç¥£¥ì¥¯¥È¥ê¤È¤½¤ì°Ê²¼¤Î¥µ¥Ö¥Ç
¥£¥ì¥¯¥È¥ê¤ò¸¡º÷¤·¡¢È¯¸«¤·¤¿PE·Á¼°¤Î¼Â¹Ô²Äǽ¥Õ¥¡¥¤¥ë
¤Ë´¶À÷¤·¤Þ¤¹¡£´¶À÷¤Ë¤Ï°Ê²¼¤Î³ÈÄ¥»Ò¤Î¥Õ¥¡¥¤¥ë¤¬ÂоݤÈ
¤Ê¤ê¤Þ¤¹¡£
ACM, AX, CNV, COM, CPL. DLL, DRV, EXE,
MPD, OCX, PCI, SCR, SYS, TLB, TSP, VWP, WPC, MSI (
Microsoft Windows Installer)
´¶À÷»þ¤Ë¤Ï¥Õ¥¡¥¤¥ëÆâ¤Î»ÈÍѤµ¤ì¤Æ¤¤¤Ê¤¤Éôʬ¤òõ¤·½Ð
¤·¡¢¤½¤³¤Ë¥¦¥¤¥ë¥¹¥³¡¼¥É¤ò½ñ¤¹þ¤ó¤Ç´¶À÷¤·¤Þ¤¹¡£¤³¤Î
¤¿¤á¡¢´¶À÷¤·¤Æ¤â¥Õ¥¡¥¤¥ë¥µ¥¤¥º¤ÎÁý²Ã¤Ïǧ¤á¤é¤ì¤Þ¤»
¤ó¡£
»³²:
´¶À÷¤¹¤ë°Ê³°¤Ë¤ÏÆÃ¤ËÇ˲õ³èư¤Ï¤¢¤ê¤Þ¤»¤ó¡£
È÷¡¡¡¡¹Í:¥¦¥¤¥ë¥¹¥³¡¼¥ÉÆâ¤Ë°Ê²¼¤Îʸ»úÎ󤬤¢¤ê¤Þ¤¹:
¡¡[Win2000.Installer] by Benny/29A & Darkman/29A
¤³¤Î¥¦¥¤¥ë¥¹¤Ï29A¤È¤¤¤¦¥¦¥¤¥ë¥¹ºîÀ®¥°¥ë¡¼¥×¤Ë¤è¤Ã¤Æºî
À®¤µ¤ì¤¿¤È¹Í¤¨¤é¤ì¤Æ¤¤¤Þ¤¹¡£
̾¡¡¡¡¾Î:PE_INTA.1688
ÊÌ¡¡¡¡Ì¾:W2K.Installer.1688, Win2K.Inta.1688, PE_
INSTA.688
ʬ¡¡¡¡Îà:¥Õ¥¡¥¤¥ë´¶À÷·¿
ÂС¡¡¡¾Ý:Windows 2000
¥¦¥¤¥ë¥¹¥µ¥¤¥º:1688 bytes
¾Ü¡¡¡¡ºÙ:PE_INTA¤ÏWindows2000¤Ç¤Î¤ß´¶À÷¤¹¤ëºÇ½é¤Î¥¦
¥¤¥ë¥¹¤Ç¤¹¡£32¥Ó¥Ã¥È(PE)·Á¼°¤Î¥Õ¥¡¥¤¥ë´¶À÷·¿¥¦¥¤¥ë¥¹
¤Ç¡¢´¶À÷Á°¤ËWindows¤Î¥Ð¡¼¥¸¥ç¥ó¤ò¥Á¥§¥Ã¥¯¤·¡¢
Windows2000¤Î¾ì¹ç¤Î¤ß´¶À÷¤·¤Þ¤¹¡£
¤Þ¤¿¡¢MSI¡ÊMicrosoft Windows Installer¡Ë¥Õ¥¡¥¤
¥ë¤ò¤â´¶À÷ÂоݤȤ·¤¿½é¤á¤Æ¤Î¥¦¥¤¥ë¥¹¤Ç¤¹¡£
´¶À÷ÊýË¡:
¡¡¼Â¹Ô¤µ¤ì¤ë¤È¥«¥ì¥ó¥È¥Ç¥£¥ì¥¯¥È¥ê¤È¤½¤ì°Ê²¼¤Î¥µ¥Ö¥Ç
¥£¥ì¥¯¥È¥ê¤ò¸¡º÷¤·¡¢È¯¸«¤·¤¿PE·Á¼°¤Î¼Â¹Ô²Äǽ¥Õ¥¡¥¤¥ë
¤Ë´¶À÷¤·¤Þ¤¹¡£´¶À÷¤Ë¤Ï°Ê²¼¤Î³ÈÄ¥»Ò¤Î¥Õ¥¡¥¤¥ë¤¬ÂоݤÈ
¤Ê¤ê¤Þ¤¹¡£
ACM, AX, CNV, COM, CPL. DLL, DRV, EXE,
MPD, OCX, PCI, SCR, SYS, TLB, TSP, VWP, WPC, MSI (
Microsoft Windows Installer)
´¶À÷»þ¤Ë¤Ï¥Õ¥¡¥¤¥ëÆâ¤Î»ÈÍѤµ¤ì¤Æ¤¤¤Ê¤¤Éôʬ¤òõ¤·½Ð
¤·¡¢¤½¤³¤Ë¥¦¥¤¥ë¥¹¥³¡¼¥É¤ò½ñ¤¹þ¤ó¤Ç´¶À÷¤·¤Þ¤¹¡£¤³¤Î
¤¿¤á¡¢´¶À÷¤·¤Æ¤â¥Õ¥¡¥¤¥ë¥µ¥¤¥º¤ÎÁý²Ã¤Ïǧ¤á¤é¤ì¤Þ¤»
¤ó¡£
»³²:
´¶À÷¤¹¤ë°Ê³°¤Ë¤ÏÆÃ¤ËÇ˲õ³èư¤Ï¤¢¤ê¤Þ¤»¤ó¡£
È÷¡¡¡¡¹Í:¥¦¥¤¥ë¥¹¥³¡¼¥ÉÆâ¤Ë°Ê²¼¤Îʸ»úÎ󤬤¢¤ê¤Þ¤¹:
¡¡[Win2000.Installer] by Benny/29A & Darkman/29A
¤³¤Î¥¦¥¤¥ë¥¹¤Ï29A¤È¤¤¤¦¥¦¥¤¥ë¥¹ºîÀ®¥°¥ë¡¼¥×¤Ë¤è¤Ã¤Æºî
À®¤µ¤ì¤¿¤È¹Í¤¨¤é¤ì¤Æ¤¤¤Þ¤¹¡£
̾¡¡¡¡¾Î:PE_K32.3030
ÊÌ¡¡¡¡Ì¾:W95.K32
ʬ¡¡¡¡Îà:¥Õ¥¡¥¤¥ë´¶À÷·¿, ľÀÜ´¶À÷·¿
ÂС¡¡¡¾Ý:.EXE(PE)
¥¦¥¤¥ë¥¹¥µ¥¤¥º:3030¥Ð¥¤¥È
¾Ü¡¡¡¡ºÙ:¼Â¹Ô¤µ¤ì¤¿EXE¥Õ¥¡¥¤¥ë¤ËľÀÜ´¶À÷¤·¤Æ¤¤¤¯¡£
Ç˲õŪ¥³¡¼¥É¤Ï´Þ¤Þ¤º¡¢Ã±¤Ë´¶À÷¤¹¤ë¤Î¤ß¤Ç¤¢¤ë¡£´¶À÷¤·
¤¿EXE¥Õ¥¡¥¤¥ë¤Ë3,030¥Ð¥¤¥È¤Î¥³¡¼¥É¤òÉղ乤롣
¤Þ¤¿¡¢¾å½ñ¤´¶À÷¤ò¤¹¤ë¾ì¹ç¤â¤¢¤ë¡£´¶À÷¤ò¸«¤Ä¤±¤Ë¤¯¤¯
¤¹¤ë¤¿¤á¤Î¥¹¥Æ¥ë¥¹µ»½Ñ¤ÏÍѤ¤¤Æ¤¤¤Ê¤¤¡£
¾É¾õ:
2·î19Æü¤Ë°Ê²¼¤Î¥á¥Ã¥»¡¼¥¸¤òɽ¼¨¤¹¤ë¡£
" Virus K32 por nIgr0 ... "Hazlo o no lo hagas pero
no lo intentes". "
̾¡¡¡¡¾Î:PE_KENSTON
ÊÌ¡¡¡¡Ì¾:WIN32/KENSTON, WIN95/KENSTON
ʬ¡¡¡¡Îà:¥Õ¥¡¥¤¥ë´¶À÷·¿
ÂС¡¡¡¾Ý:.EXE(PE)
¥¦¥¤¥ë¥¹¥µ¥¤¥º:1,895¥Ð¥¤¥È
ȯ¾ÍÃÏ:¥¢¥á¥ê¥«¹ç½°¹ñ(¡©)
¾Ü¡¡¡¡ºÙ:´¶À÷¥Õ¥¡¥¤¥ë¤ò¼Â¹Ô¤¹¤ë¤È¡¢¥á¥â¥ê¡¼¤Ë¾ïÃó¤ò
¤·¡¢EXE¥Õ¥¡¥¤¥ë¤Ø¤Î´¶À÷³èư¤ò³«»Ï¤¹¤ë¡£´¶À÷»þ¤Ë¤Ï¡¢°Å
¹æ²½¤·¤¿¥¦¥¤¥ë¥¹¥³¡¼¥É¤ò´¶À÷¥Õ¥¡¥¤¥ë¤ÎËöÈø¤ËÉÕ¤±²Ã¤¨
¤ë¡£
È÷¡¡¡¡¹Í:¥¦¥¤¥ë¥¹¤¬Å¸³«¤·¤¿¥³¡¼¥ÉÃæ¤Ë¤Ï¡¢°Ê²¼¤Î¥Æ¥
¥¹¥È¤¬´Þ¤Þ¤ì¤Æ¤¤¤ë¡£
Boles and Manning are arrogant facists.
They have no computer sk1llzand KENSTON HIGH SCHOOL
s computers are 0wn3d.I AM BACK KOONS YOU
MOTHERFUCKER dowN wiThKenSTON..... yOU tRIED tO rID
yOUrSELf oF mEBefoREbUT
fAILEDHAHAHAHAHAHAHAHAHAHAHAHAHAHAHA
̾¡¡¡¡¾Î:PE_KLUNKY
ʬ¡¡¡¡Îà:¥Õ¥¡¥¤¥ë´¶À÷·¿
ÂС¡¡¡¾Ý:EXE(Win95/Win98)
¥¦¥¤¥ë¥¹¥µ¥¤¥º:7939bytes
¾Ü¡¡¡¡ºÙ:¤³¤Î¥¦¥¤¥ë¥¹¤ÏPE¥¿¥¤¥×¤Î¼Â¹Ô¥Õ¥¡¥¤¥ë¤Ë´¶À÷
¤¹¤ë¡£
´¶À÷¥Õ¥¡¥¤¥ë¤ò¼Â¹Ô¤¹¤ë¤È¡¢MRKlunky.VXD ¤È¤¤¤¦Ì¾¾Î¤Ç¼«
ʬ¼«¿È¤ÎÊ£À½¥Õ¥¡¥¤¥ë¤òºîÀ®¤¹¤ë¡£
¤½¤·¤Æ¡¢²¼µ¤Î¥ì¥¸¥¹¥È¥ê¤ËÃͤòÄɲ乤롣
HKEY_LOCAL_MACHINE\system\currentcontrolset\services\
vxd\MrKlunky StaticVxd
¤³¤¦¤·¤Æ¥Þ¥·¥óµ¯Æ°»þ¤Ë¥¦¥¤¥ë¥¹¤¬É¬¤º¼Â¹Ô¤µ¤ì¤ë¤è¤¦¤Ë
¤Ê¤ë¡£
»³²:
´¶À÷¤¹¤ë¤À¤±¤ÇÆÃ¤Ë¤Ê¤·¡£
̾¡¡¡¡¾Î:PE_KRIZ.3862
ÊÌ¡¡¡¡Ì¾:KRIZ, W32/KRIZ.3862, WIN32_KRIZ
ʬ¡¡¡¡Îà:¥Õ¥¡¥¤¥ë´¶À÷·¿¡¢¥á¥â¥ê¾ïÃó·¿
ÂС¡¡¡¾Ý:EXE (PE)
¾Ü¡¡¡¡ºÙ:CIH¥¦¥¤¥ë¥¹¤ò»²¹Í¤ËºîÀ®¤µ¤ì¤¿PE_KRIZ.3740
¤Ï¡¢PE¥¿¥¤¥×¤Î¼Â¹Ô·¿¥Õ¥¡¥¤¥ë(.EXE .SCR)¤Ë´¶À÷¤·¡¢´¶À÷
¤´¤È¤Ë¥¦¥¤¥ë¥¹¥³¡¼¥É¤òÊѹ¹¤¹¤ë¥Ý¥ê¥â¥Õ¥£¥Ã¥¯·¿¥¦¥¤¥ë
¥¹¤Ç¤¢¤ë¡£¤Þ¤¿¡¢¼«¿È¤Î¥³¡¼¥É¤ò°Å¹æ²½¤¹¤ëµ¡Ç½¤âͤ·¤Æ
¤¤¤ë¡£
´¶À÷ÊýË¡:
´¶À÷¤·¤¿¥Õ¥¡¥¤¥ë¤ò¼Â¹Ô¤¹¤ë¤È¤Þ¤º¡¢KERNEL32.DLL¤ò´¶À÷
ÂоݤȤ·¤ÆÃµ¤¹¡£¤·¤«¤·¡¢KERNEL32.DLL¤ÏWindowsOS¤¬¾ï»þ
»ÈÍѤ¹¤ë¥Õ¥¡¥¤¥ë¤Ç¤¢¤ë¤¿¤á¡¢¤³¤Î¤È¤Ä¾ÀÜ´¶À÷¤¹¤ë¤³¤È
¤Ï¤Ç¤¤Ê¤¤¡£¤½¤³¤Ç¤Þ¤º¡¢KERNEL32.DLL¤ò ..\WINDOWS\
SYSTEM\KRIZED.TT6 ¤È¤¤¤¦¥Õ¥¡¥¤¥ë̾¤Ç¥³¥Ô¡¼¤·¡¢¤³¤Î
KRIZED.TT6¥Õ¥¡¥¤¥ë¤Ë´¶À÷¤¹¤ë¡£
¼¡¤Ë¡¢WININIT.INI¥Õ¥¡¥¤¥ë¤Ë°Ê²¼¤Î¥³¥Þ¥ó¥É¤ò½ñ¤¹þ¤ß¡¢
¼¡²ó¥·¥¹¥Æ¥àµ¯Æ°»þ¤Ë¡¢KERNEL32.DLL¤ò KRIZED.TT6 ¤Ç¾å
½ñ¤¤¹¤ë¡£
rename
C:\WINDOWS\SYSTEM\KERNEL32.DLL=C:\WINDOWS\SYSTEM\
KRIZED.TT6
´¶À÷¤·¤¿KERNEL32.DLL¤ò½¤Éü¤¹¤ë¤³¤È¤Ï¤Ç¤¤Ê¤¤¡£
¤³¤¦¤·¤ÆKERNEL32.DLL¤Ë´¶À÷¤·¤¿¥¦¥¤¥ë¥¹¤Ï¡¢°Ê²¼¤Î¥Õ¥¡
¥ó¥¯¥·¥ç¥ó¤Ë¥Õ¥Ã¥¯¤·¤Æ¡¢¥Õ¥¡¥¤¥ë¤ÎÆþ½ÐÎϤò´Æ»ë¤·¡¢¿·
µ¬ºîÀ®¡¦³«¤¯¡¦ÊĤ¸¤ë¡¦¥³¥Ô¡¼¤¹¤ë¡¦°Üư¤¹¤ëÅù¤Îưºî¤ò
¤·¤¿¤¹¤Ù¤Æ¤ÎPE¥Õ¥¡¥¤¥ë¤Ë´¶À÷¤¹¤ë¤³¤È¤¬²Äǽ¤È¤Ê¤ë¡£
CopyFileA CopyFileW
CreateFileA CreateFileW
DeleteFileA DeleteFileW
MoveFileA MoveFileExA MoveFileW MoveFileExW
GetFileAttributesA SetFileAttributesW
SetFileAttributesA SetFileAttributesExA
CreateProcessA CreateProcessW
¤¿¤À¤·¡¢°Ê²¼¤Î¥Õ¥¡¥¤¥ë̾¤Î¥Õ¥¡¥¤¥ë¤Ë¤Ï´¶À÷¤Ï¤·¤Ê¤¤¡£
¤³¤ì¤é¤Ï¥¢¥ó¥Á¥¦¥¤¥ë¥¹¥½¥Õ¥È¥¦¥§¥¢¤¬»ÈÍѤ¹¤ë̾Á°¤Ç¤¢
¤ë¡£
_AVP32.EXE,
_AVPM.EXE,
ALERTSVC.EXE,
AMON.EXE,
AVP32.EXE,
AVPM.EXE,N32SCANW.EXE,
NAVAPSVC.EXE,
NAVAPW32.EXE,
NAVLU32.EXE,
NAVRUNR.EXE,NAVWNT.EXE,
NOD32.EXE,
NPSSVC.EXE,
NSCHEDNT.EXE,
NSPLUGIN.EXE,
SCAN.EXE,
SMSS.EXE
Ç˲õ³èư:
- 12·î25Æü¤Ë´¶À÷¥Õ¥¡¥¤¥ë¤ò¼Â¹Ô¤¹¤ë¤È¡¢¥³¥ó¥Ô¥å¡¼¥¿¤Î
CMOS¥Ç¡¼¥¿¤ò£°¥¯¥ê¥¢¤·¡¢¤µ¤é¤Ë¥Ï¡¼¥É¥Ç¥£¥¹¥¯¤Î¥Ç¡¼¥¿
¤òÇ˲õ¤¹¤ë¡£¤³¤Î¤¿¤áȯɸå¤Ï¡¢¥·¥¹¥Æ¥à¤òµ¯Æ°¤Ç¤¤Ê¤¯
¤Ê¤êOSÅù¤ÎºÆ¥¤¥ó¥¹¥È¡¼¥ë¤¬É¬ÍפȤʤ롣
- ¤Þ¤¿¡¢PE_CIH¤ÈƱÍÍ¡¢FlashBIOS¤ò»ÈÍѤ·¤Æ¤¤¤Æ½ñ¤¹þ¤ß
²Äǽ¤Ç¤¢¤ë¾õÂ֤Υޥ·¥ó¤Ç¤¢¤ì¤Ðޤ¤½¤ÎBIOS¤Ë¤â¥´¥ß¥Ç¡¼¥¿
¤ò½ñ¤¹þ¤ó¤ÇÇ˲õ¤¹¤ë¡£¤³¤Î¾ì¹ç¤ÏROM¤ò½¤Éü¤·¤Ê¤¤¸Â¤êÆó
Å٤ȥ³¥ó¥Ô¥å¡¼¥¿¤òµ¯Æ°¤¹¤ë¤³¤È¤¬¤Ç¤¤Ê¤¤¡£
È÷¡¡¡¡¹Í:¥¦¥¤¥ë¥¹¥³¡¼¥É¤Ë¤Ï°Ê²¼¤Îʸ»úÎó(¥á¥Ã¥»¡¼¥¸)
¤¬´Þ¤Þ¤ì¤Æ¤¤¤ë¡£
=( [c] 1999 [t] )=
YOU CALL IT RELIGION, YOU¡ÇRE FULL OF SHIT
YOU NEVER KNEW, YOU NEVER DID, YOU NEVER WILL
YOU¡ÇRE SO FULL OF SHIT, I DON¡ÇT WANT TO HEAR IT
ALL YOU DO IS TALK ABOUT YOURSELF
I DON¡ÇT WANNA HEAR IT, COZ I KNOW NONE OF IT¡ÇS TRUE
I¡ÇM SICK AND TIRED OF ALL YOUR GODDAMN LIES
LIES IN THE NAME OF GOD
WHEN ARE YOU GOING TO REALIZE THAT I DON¡ÇT WANT TO
HEAR IT?!
I KNOW YOU¡ÇRE SO FULL OF SHIT, SO SHUT YOUR FUCKING
MOUTH
YOU KEEP ON TALKING, TALKING EVERYDAY
FIRST YOU¡ÇRE TELLING STORIES, THEN YOU¡ÇRE TELLING
LIES
WHEN THE FUCK ARE YOU GOING TO REALIZE THAT I DON¡ÇT
WANT TO HEAR IT!!
AH, SHUT THE FUCK UP...
̾¡¡¡¡¾Î:PE_LAME
ÊÌ¡¡¡¡Ì¾:BACKDOOR.KAMIKAZE, IRC_TROJAN, TROJ_
BACKDOOR
ʬ¡¡¡¡Îà:¥È¥í¥¤¤ÎÌÚÇÏ·¿
¥¦¥¤¥ë¥¹¥µ¥¤¥º:335,872 bytes
¾Ü¡¡¡¡ºÙ:- ¤³¤ì¤Ï¥µ¡¼¥Ð¡¼/¥¯¥é¥¤¥¢¥ó¥È·¿¤Î¥Í¥Ã¥È¥ï
¡¼¥¯Ž¥¥Ï¥Ã¥¥ó¥°¥Ä¡¼¥ë¤Ç¤¢¤ëŽ¡DELPHI3¤òÍøÍѤ·¤ÆºîÀ®¤µ¤ì
¤¿Ž¡
- ¥Õ¥¡¥¤¥ë¤ò¼Â¹Ô¤¹¤ë¤ÈޤMSCHV32.EXE ¤È¤¤¤¦¥Õ¥¡¥¤¥ë¤¬\
WINDOWS\SYSTEM ¥Ç¥£¥ì¥¯¥È¥ê¤ËºîÀ®¤µ¤ìޤ¤µ¤é¤Ë°Ê²¼¤Î¥ì
¥¸¥¹¥È¥ê¤ËÅÐÏ¿¤µ¤ì¤ëŽ¡ \HKEY_CURRENT_USER\Software\
Microsoft\Windows\CurrentVersion\Run
¤³¤ì¤Ë¤è¤êޤ¥Þ¥·¥ó¤òµ¯Æ°¤¹¤ëÅ٤ˎ¤¤³¤Î¥È¥í¥¤¤ÎÌÚÇϤ¬¼Â
¹Ô¤µ¤ì¤ëŽ¡
¼Â¹ÔÃæ¤Ë¥Õ¥¡¥¤¥ë¤òºï½ü¤¹¤ë¤³¤È¤Ï¤Ç¤¤Ê¤¤Ž¡-¡¡¤³¤Î¥È¥í
¥¤¤ÎÌÚÇÏ¥×¥í¥°¥é¥à¤¬¥¤¥ó¥¹¥È¡¼¥ë¤µ¤ì¤Æ¤¤¤ë¤Èޤ¥¯¥é¥¤¥¢
¥ó¥È¥×¥í¥°¥é¥à¤ò
»ÈÍѤ·¤Æ¤¤¤ë¹¶·â¼Ô¤¬Ž¤¥¤¥ó¥¿¡¼¥Í¥Ã¥È¤ò²ð¤·¤Æ¥ê¥â¡¼¥È¤Ç
¥Õ¥ë¥¢¥¯¥»¥¹¤¹¤ë¤³¤È¤òµö¤·¤Æ¤·¤Þ¤¦Ž¡
-¤³¤Î¥µ¡¼¥Ð¡¼¥×¥í¥°¥é¥à¤¬¼Â¹Ô¤µ¤ì¤Æ¤¤¤ë¥Þ¥·¥ó¤¬¥¤¥ó¥¿
¡¼¥Í¥Ã¥È¤ËÀܳ¤·¤Æ¤¤¤ë¤È¤Ž¤
¥¯¥é¥¤¥¢¥ó¥È¥×¥í¥°¥é¥à¤«¤éIP¥¢¥É¥ì¥¹¤ä¥Ñ¥¹¥ï¡¼¥É¤ò¼è
ÆÀ¤¹¤ë¤³¤È¤¬¤Ç¤¤ëŽ¡
¤³¤Î¾ðÊó¤òÍøÍѤ·¤ÆŽ¤¥Þ¥·¥ó¤Ë¥¢¥¯¥»¥¹¤·¤¿¹¶·â¼Ô¤Ïޤ¥Õ¥¡
¥¤¥ë¤ÎÁàºî¤Ï¤â¤Á¤í¤ó¤Î¤³¤Èޤ
¥â¥Ë¥¿¡¼¤ä¥¹¥Ô¡¼¥«¡¼¤ÎÀßÄꎤ¥Þ¥¦¥¹¤ä¥¡¼¥Ü¡¼¥Éޤ¥×¥ê¥ó
¥¿¡¼¤Ê¤É¤¹¤Ù¤Æ¤Î¥Ç¥Ð¥¤¥¹¤òÁàºî¤¹¤ë
¤³¤È¤¬¤Ç¤¤ëŽ¡
¤µ¤é¤Ë¥Á¥ã¥Ã¥È¤Î¤è¤¦¤Ê¥¦¥¤¥ó¥É¥¦¤òɽ¼¨¤µ¤»Ž¤´¶À÷¥Þ¥·¥ó
¤Î¥æ¡¼¥¶¡¼¤È"²ñÏÃ"¤¹¤ë¤³¤È¤¹¤é²Äǽ¤Ç¤¢¤ëŽ¡
̾¡¡¡¡¾Î:PE_LOREZ
ÊÌ¡¡¡¡Ì¾:LOREZ.W95, WIN95.LOREZ.1766, WIN95/LOREZ
ʬ¡¡¡¡Îà:¥Õ¥¡¥¤¥ë´¶À÷·¿
ÂС¡¡¡¾Ý:.EXE¡ÊPE·Á¼°¤ÎWindowsÍÑ 32Bit¼Â¹Ô¥Õ¥¡¥¤¥ë¡Ë
¥¦¥¤¥ë¥¹¥µ¥¤¥º:1766bytes
ȯ¾ÍÃÏ:ÉÔÌÀ
ȯ¸«Æü:ÉÔÌÀ
¾Ü¡¡¡¡ºÙ:´¶À÷ÊýË¡:
-¡¡´¶À÷¥Õ¥¡¥¤¥ë¤ò¼Â¹Ô¤¹¤ë¤Èޤ¥á¥â¥ê¤Ë¾ïÃó¤·Ž¤°Ê¸å¼Â¹Ô¤µ
¤ì¤¿Â¾¤Î.EXE¥Õ¥¡¥¤¥ë¤Ë´¶À÷¤¹¤ëŽ¡
-¡¡¥¹¥¿¥ó¥À¡¼¥É¤Ê¥¿¥¤¥×¤Î¥Õ¥¡¥¤¥ë´¶À÷·¿¥¦¥¤¥ë¥¹¤Çޤ¥³
¡¼¥É¤ò°Å¹æ²½¤·¤¿¤ê¥¹¥Æ¥ë¥¹¹Ôư¤ò
¤È¤ë¤è¤¦¤Ê¥ë¡¼¥Á¥ó¤Ï¤Ê¤¤Ž¡
»³²:
-¡¡¥¦¥¤¥ë¥¹¥³¡¼¥É¤ò¥³¥Ô¡¼¤¹¤ë¤À¤±¤ÇޤÆÃ¤ËÇ˲õ³èư¤Ï¤Ê
¤¤Ž¡
´¶À÷Ãû¸õ:
-¡¡¥Õ¥¡¥¤¥ë¥µ¥¤¥º¤¬1766¥Ð¥¤¥ÈÁý²Ã¤¹¤ëŽ¡
̾¡¡¡¡¾Î:PE_LOVESONG.998
ÊÌ¡¡¡¡Ì¾:WIN95.LOVE.998
¸À¡¡¡¡¸ì:English
ʬ¡¡¡¡Îà:¥Õ¥¡¥¤¥ë´¶À÷·¿
ÂС¡¡¡¾Ý:Win95/98
¥¦¥¤¥ë¥¹¥µ¥¤¥º:998¥Ð¥¤¥È
ȯ¾ÍÃÏ:´Ú¹ñ
ȯ¸«Æü:1999
¾Ü¡¡¡¡ºÙ:PE_LOVESONG.998¤ÏWindows32¥á¥â¥ê¾ïÃó·¿¥¦¥¤
¥ë¥¹¤Ç¤¹¡£Win95/98¤Î¤ß´¶À÷³èư¤ò¹Ô¤¤¤Þ¤¹¡£WinNT¤Ç¤Ï´¶
À÷¤·¤Þ¤»¤ó¡£
¼Â¹Ô¤µ¤ì¤¿¤é¡¢¥á¥â¥ê¤Ë¾ïÃó¤·¡¢¤Û¤«¤Î²Ä¼Â¹Ô¥Õ¥¡¥¤¥ë¤Î
ºÇ¸å¤Î998¥Ð¥¤¥È¤ò¤Û¤«¤Î¾ì½ê¤Ë°Ü¤·¡¢¥¦¥¤¥ë¥¹¥³¡¼¥É¤ò¤³
¤Î998¥Ð¥¤¥È¤òÍøÍѤ·¾å½ñ¤¤·¤Þ¤¹¡£°Üư¤µ¤ì¤¿¥Ç¡¼¥¿¤Ï£°
¤Ë¤·¤Þ¤¹¡£´¶À÷ÊýË¡¤ÏPE_CIH¤È¤è¤¯»÷¤Æ¤ª¤ê¡¢´¶À÷¥¹¥Ô
¡¼¥É¤Ï¤È¤Æ¤â®¤¤¤Ç¤¹¡£¤·¤«¤·¡¢¥·¥¹¥Æ¥à¤òÇ˲õ¤¹¤ë¤³¤È
¤Ï¤¢¤ê¤Þ¤»¤ó¡£
2000ǯ2·î16Æü°Ê¹ß¡Ê30Æü¤ò½ü¤¯¡Ë¡¢´Ú¹ñ¤ÇÍ̾¤Ê¥³¥Þ¡¼¥·
¥ã¥ë¥½¥ó¥°¤ò±éÁÕ¤·¤Þ¤¹¡£
È÷¡¡¡¡¹Í:¥¦¥¤¥ë¥¹¥³¡¼¥É¤Î¤Ê¤«¤Ëlove¤Îʸ»úÎ󤬴ޤޤì
¤Æ¤¤¤Þ¤¹¡£
̾¡¡¡¡¾Î:PE_MARBURG
ʬ¡¡¡¡Îà:¥Õ¥¡¥¤¥ë´¶À÷·¿
ÂС¡¡¡¾Ý:.EXE¡ÊPE·Á¼°¤ÎWindowsÍÑ 32Bit¼Â¹Ô¥Õ¥¡¥¤¥ë¡Ë
¥¦¥¤¥ë¥¹¥µ¥¤¥º:7500Byte
¾Ü¡¡¡¡ºÙ:´¶À÷ÊýË¡:
¡Ý¡ÖPE_MARBURG¡×¤ÏľÀÜ´¶À÷·¿¤ÎWindows95¡¦Windows98¤ò
´¶À÷ÂоݤȤ·¤¿¥¦¥¤¥ë¥¹¤Ç¤¢¤ë¡£
´¶À÷¥Õ¥¡¥¤¥ë¤¬¼Â¹Ô¤µ¤ì¤ë¤È¡¢¥¦¥¤¥ë¥¹¤Ï´û¸¥Ç¥£¥ì¥¯¥È
¥êÆâ¤ÎWindows95/98¤Î32bit
EXE¥Õ¥¡¥¤¥ë¤òõ¤·¤À¤·¡¢¥Õ¥¡¥¤¥ë¤Ø´¶À÷¤¹¤ë¡£
´¶À÷ÂоݤȤʤëEXE¥Õ¥¡¥¤¥ë¤¬¤Ò¤È¤Ä¤âȯ¸«¤µ¤ì¤Ê¤«¤Ã¤¿
¾ì¹ç¡¢¥¦¥¤¥ë¥¹¤ÏWindows95¡¦
Windows98¤Ë°¤¹¤ë¥Ç¥£¥ì¥¯¥È¥ê¤ä¥·¥¹¥Æ¥à¡¦¥Ç¥£¥ì¥¯¥È¥ê
Æâ¤«¤éEXE¥Õ¥¡¥¤¥ë¤òõ¤·¤À¤¹¡£
.EXE¥Õ¥¡¥¤¥ë¤ÎÃæ¤Ç¤â¡¢NE¥¿¥¤¥×¥Õ¥¡¥¤¥ë(WindowsÍÑ16Bit
¼Â¹Ô¥Õ¥¡¥¤¥ë) ¤â¤·¤¯¤Ï¡¢DOS¼Â¹Ô¥Õ¥¡¥¤¥ë ¤Ë¤Ï´¶À÷¤·¤Ê
¤¤¡£
ÆÃħ:
¡Ý¡¡¤³¤Î¥¦¥¤¥ë¥¹¤Ï¥³¡¼¥É¤òWindows95¡¦Windows98¥Õ¥¡¥¤
¥ë¤Î¥¨¥ó¥È¥ê¥Ý¥¤¥ó¥È¤ËÉÕ°¤¹¤ë
¤³¤È¤Ë¤è¤ê´¶À÷¤·¡¢JMPÌ¿Îá¤ò»ÈÍѤ·¤Æ¥¦¥¤¥ë¥¹¥³¡¼¥É¤ò¼Â
¹Ô¤¹¤ë¡£
¤½¤Î¤¿¤á¤Ë´¶À÷¥Õ¥¡¥¤¥ë¤ÎPE¥Ø¥Ã¥À¡¼¤ÏÊѹ¹¤¬¤Ê¤«¤Ã¤¿¤è
¤¦¤Ë¸«¤¨¤ë¡£ ¤Þ¤¿¡¢¼«Ê¬¼«¿È¤Î¥á¥¤¥ó¥¦¥¤¥ë¥¹¥³¡¼¥É¤ò°Å
¹æ²½¤¹¤ë¡£¤Ä¤Þ¤ê¡¢Ž¢PE_MARBURG¡×¤ÏWindows95¡¦Windows98
¥Ý¥ê¥â¥Õ¥£¥Ã¥¯¥¦¥¤¥ë¥¹¤Ç¤¢¤ëŽ¡
¡Ý¡¡¥¦¥¤¥ë¥¹¥³¡¼¥ÉÆâ¤Ë¡¢°Ê²¼¤Îʸ»úÎó¤¬´Þ¤Þ¤ì¤Æ¤¤¤ë:
[ Marburg ViRuS BioCoded by GriYo/29A ]
KERNEL32.dll USER32.dll
Ç˲õ³èư:
¡Ý¡¡¤³¤Î¥¦¥¤¥ë¥¹¤Ï¡¢Windows¤Î¥¨¥é¡¼É½¼¨¥¢¥¤¥³¥ó¡ÊÀÖ´Ý
¤ËÇò¤¤¡ß°õ¡Ë¤ò¡¢²èÌ̤ˤ¤¤¯¤Ä¤â
̵ºî°Ù¤Ëɽ¼¨¤µ¤»¤ë¡£È¯ÉÂÆü¤ÏÉÔÆÃÄꎡ
È÷¡¡¡¡¹Í:¡Ý¡¡¥¢¥ó¥Á¥¦¥¤¥ë¥¹À½ÉʤǤÎȯ¸«¤òÈò¤±¤ë¤¿
¤á¡¢¡ÖANTI-VIR.DAT¡×¡¢¡ÖCHKLIST.MS¡×¡¢¡ÖAVP.CRC¡×¡¢
¡ÖIVB.NTZ¡×¥Õ¥¡¥¤¥ë¤òºï½ü¤¹¤ë¡£
¤½¤·¤Æ¡¢¥Õ¥¡¥¤¥ë̾¤ËV¤ò´Þ¤à¥Õ¥¡¥¤¥ëޤ¤Þ¤¿¤Ï¥Õ¥¡¥¤¥ë̾
¤ËŽ¢PAND*.*¡×¡¢¡ÖF-PR*.*¡×¡¢¡ÖSCAN*.*¡×¤Ê¤É¤ÎÍ̾¤Ê¥¦
¥¤¥ë¥¹Âкö¥½¥Õ¥È̾¤¬´Þ¤Þ¤ì¤ë¥Õ¥¡¥¤¥ë¤Ë¤Ï´¶À÷¤·¤Ê¤¤¡£
̾¡¡¡¡¾Î:PE_MARKJVIRUS
ÊÌ¡¡¡¡Ì¾:TROJ_MARKJVIRUS
ʬ¡¡¡¡Îà:¥Õ¥¡¥¤¥ë´¶À÷·¿
ÂС¡¡¡¾Ý:Win 32 Exe
¥¦¥¤¥ë¥¹¥µ¥¤¥º:8 Kb
¾Ü¡¡¡¡ºÙ:¤³¤ì¤ÏWin32 .Exe¥Õ¥¡¥¤¥ë¤Ë´¶À÷¤¹¤ë¥¦¥¤¥ë¥¹
¤Ç¤¢¤ëŽ¡
¼Â¹Ô¤¹¤ë¤È¥á¥â¥ê¤Ë¾ïÃó¤·¡¢¤½¤Î¸å¥¢¥¯¥»¥¹¤·¤¿.EXE¥Õ¥¡
¥¤¥ë¤¹¤Ù¤Æ¤Ë´¶À÷¤¹¤ëŽ¡
¥¹¥Æ¥ë¥¹¹Ôư¤ä°Å¹æ²½µ»½Ñ¤Ê¤É¤Ï»ý¤Ã¤Æ¤¤¤Ê¤¤¡£
»³²:
´¶À÷¤¹¤ë°Ê³°ÆÃ¤ËÇ˲õ³èư¤Ï¤Ê¤¤¡£
̾¡¡¡¡¾Î:PE_MIRC_NEW
ÊÌ¡¡¡¡Ì¾:IRC WORM
¥¦¥¤¥ë¥¹¥µ¥¤¥º:2KB
¾Ü¡¡¡¡ºÙ:-¤³¤ì¤Ïޤ¥Í¥Ã¥È¥ï¡¼¥¯¤ò²ð¤·¤ÆÁý¿£¤¹¤ë¥ï¡¼¥à
¥¿¥¤¥×¤Ç¤¢¤ëŽ¡´¶À÷³èư¤ò¹Ô¤¦¤³¤È¤Ï¤Ê¤¤Ž¡
-¤³¤Î¥×¥í¥°¥é¥à¤ò¼Â¹Ô¤¹¤ë¤ÈޤmIRC v6.0(IRC¥Á¥ã¥ó¥Í¥ëÀì
ÍÑ¥×¥í¥°¥é¥à)¤òºÇ¿·¤Î¤â¤Î¤Ë
¥¢¥Ã¥×¥Ç¡¼¥È¤¹¤ë¤è¤¦¤ËÍ׵᤹¤ëŽ¡IRC¥Á¥ã¥ó¥Í¥ë¤ËÀܳ¤µ
¤ì¤ë¤ÈŽ¤Â¾¤ÎIRC¥æ¡¼¥¶¡¼¤Ë¼«Ê¬¼«¿È¤ò
¥Õ¥¡¥¤¥ë¤È¤·¤ÆÁ÷¿®¤·Ž¤Áý¿£¤·¤Æ¤¤¤¯Ž¡
È÷¡¡¡¡¹Í:-¡¡¤³¤Î¥ï¡¼¥à¤ÏޤmIRC ¤¬¥Þ¥·¥ó¤Ë¥¤¥ó¥¹¥È¡¼¥ë
¤µ¤ì¤Æ¤¤¤Ê¤±¤ì¤Ðޤ²¿¤éÈï³²¤ò
¤â¤¿¤é¤¹¤³¤È¤Ï¤Ê¤¤Ž¡
-¡¡¶î½ü¤Ï¤Ç¤¤Ê¤¤¤Î¤Çޤ¥Õ¥¡¥¤¥ë¤òºï½ü¤¹¤ë¤³¤È¤ÇÂн褹
¤ëŽ¡
̾¡¡¡¡¾Î:PE_OPORTO.3076
ÊÌ¡¡¡¡Ì¾:PE_Oporto.3078
¸À¡¡¡¡¸ì:±Ñ¸ì
ʬ¡¡¡¡Îà:¥Õ¥¡¥¤¥ë´¶À÷·¿
ÂС¡¡¡¾Ý:Win95/98/NT
ȯ¾ÍÃÏ:¥Ý¥ë¥È¥¬¥ë
¾Ü¡¡¡¡ºÙ:PE_Oporto.3078 ¤ÏWindows95/98/NT¥·¥¹¥Æ¥à¾å
¤Ç´¶À÷¤¹¤ë¥Õ¥¡¥¤¥ë´¶À÷·¿¥¦¥¤¥ë¥¹¤Ç¤¹¡£9·î24Æü¤Ë¼Â¹Ô¤µ
¤ì¤ë¤Èȯɤ·¡¢¥á¥Ã¥»¡¼¥¸¥Ü¥Ã¥¯¥¹¤ò¤¤¤¯¤Ä¤âɽ¼¨¤·¤Þ
¤¹¡£
´¶À÷
¡¡¼Â¹Ô¤µ¤ì¤ë¤È¥«¥ì¥ó¥È¥Ç¥£¥ì¥¯¥È¥ê¤ÈWindows¥Ç¥£¥ì¥¯¥È
¥ê°Ê²¼¤Î¤¹¤Ù¤Æ¤Î¥Ç¥£¥ì¥¯¥È¥ê¤Ë¤¢¤ë¤¹¤Ù¤Æ¤ÎPE·Á¼°¤Î¥×
¥í¥°¥é¥à¥Õ¥¡¥¤¥ë¤Ë´¶À÷¤ò»î¤ß¤Þ¤¹¡££³£°¼ïÎà¤Î
WIndowsAPI¤òÍøÍѤ·¤Æ´¶À÷¤¹¤Ù¤¥Õ¥¡¥¤¥ë¤òõ¤·¤Þ¤¹¡£¤Þ
¤¿¡¢¥Õ¥¡¥¤¥ë̾¤ÎƬ£´Ê¸»ú¤¬"NVTD"¤Ç»Ï¤Þ¤ë¥Õ¥¡¥¤¥ë¤Ë¤Ï
´¶À÷¤·¤Þ¤»¤ó¡£¤Þ¤¿¡¢"ANTI-VIR.DAT"¤È¤¤¤¦¥Õ¥¡¥¤¥ë̾¤Î
¥Õ¥¡¥¤¥ë¤òȯ¸«¤¹¤ë¤È¤¹¤Ù¤Æºï½ü¤·¤Þ¤¹¡£
¡¡´¶À÷Àè¥×¥í¥°¥é¥à¤ÎƬ£¶¥Ð¥¤¥È¤ò¾å½ñ¤¤·¤Æ´¶À÷¤·¤Þ¤¹
¤¬¥ª¥ê¥¸¥Ê¥ë¥³¡¼¥É¤ÏÊݸ¤µ¤ì¼Â¹Ô»þ¤Ë¤Ï¥á¥â¥êÃæ¤ÇÉü¸µ
¤µ¤ì¤Þ¤¹¡£
Ç˲õ³èư
¡¡9·î24Æü¤Ë¼Â¹Ô¤µ¤ì¤ë¤Èȯɤ·¡¢°Ê²¼¤Îʸ»úÎó¤ò´Þ¤à¥á¥Ã
¥»¡¼¥¸¥Ü¥Ã¥¯¥¹¤ò¤¤¤¯¤Ä¤âɽ¼¨¤·¤Þ¤¹:
TOTILIX Presents¡¦
This >TOTILIX< Virus was assembled at
the city of Oporto Portugal!
gas_par@hotmail.com
c) 1999 G@SP@R aka Sexus
¡¡¥á¥Ã¥»¡¼¥¸¥Ü¥Ã¥¯¥¹¤¬Ìµ¿ô¤Ëɽ¼¨¤µ¤ì¤ë¤¿¤á¥ê¥½¡¼¥¹¤¬
¸Ï³é¤·¡¢ºÇ½ªÅª¤Ë¤Ï¥·¥¹¥Æ¥à¥¯¥é¥Ã¥·¥å¤ò¾·¤¯¾ì¹ç¤¬¤¢¤ê
¤Þ¤¹¡£
̾¡¡¡¡¾Î:PE_PADANIA
ÊÌ¡¡¡¡Ì¾:W95/PADANIA, WIN95.PADANIA
ʬ¡¡¡¡Îà:¥Õ¥¡¥¤¥ë´¶À÷·¿
¥¦¥¤¥ë¥¹¥µ¥¤¥º:8,192¥Ð¥¤¥È
¾Ü¡¡¡¡ºÙ:´¶À÷¥Õ¥¡¥¤¥ë¤ò¼Â¹Ô¤¹¤ë¤È¡¢Windows¤Î¥á¥â¥ê
¡¼Îΰè¤Ë¾ïÃó¤·¡¢¤½¤Î¸å³«¤«¤ì¤¿EXE¥Õ¥¡¥¤¥ë
¤¹¤Ù¤Æ¤Ë´¶À÷¤¹¤ë¡£¥Õ¥¡¥¤¥ë¤ÎPE¥Ø¥Ã¥À¡¼Îΰè¤ò½ñ¤´¹¤¨
¤ë¤¿¤á¡¢°Ê¸å´¶À÷¥Õ¥¡¥¤¥ë¤¬³«¤«¤ì¤ë¤¿¤Ó¤Ë¡¢¥Õ¥¡¥¤¥ëËö
Èø¤ËÉղ䵤줿¥¦¥¤¥ë¥¹¥³¡¼¥É¤¬¼Â¹Ô¤µ¤ì¤ë¤è¤¦¤Ë¤Ê¤ë¡£
¡ÊEXE¥Õ¥¡¥¤¥ë¤ÎPE¥Ø¥Ã¥À¡¼Îΰè¤Ë¤Ï¡¢¥¦¥£¥ó¥É¥¦¤Î°ÌÃÖÊÑ
¹¹¾ðÊó¤Ê¤É¤¬Êݸ¤µ¤ì¤ë¤¿¤á¡¢
¤½¤ì¤é¤Î¾ðÊ󤬽ñ¤´¹¤¨¤é¤ì¤ë¤³¤È¤Ë¤Ê¤ë¡£¡Ë
»³²:
´¶À÷¤¹¤ë°Ê³°ÆÃ¤ËÇ˲õ³èư¤Ê¤·Ž¡
È÷¡¡¡¡¹Í:¥Ð¥¤¥Ê¥êɽ¼¨¤Î¥¨¥Ç¥£¥¿¤òÍѤ¤¤ë¤È¡¢°Ê²¼¤Îʸ
»úÎ󤬳Îǧ¤Ç¤¤ë¡£
Padania_Libera
by –b0z0/iKX-
Padania
̾¡¡¡¡¾Î:PE_PUZZLE_TROJAN
ÊÌ¡¡¡¡Ì¾:SLIDER1.0
ʬ¡¡¡¡Îà:¥È¥í¥¤¤ÎÌÚÇÏ·¿
ÂС¡¡¡¾Ý:NA
¥¦¥¤¥ë¥¹¥µ¥¤¥º:N/A
ȯ¾ÍÃÏ:ÉÔÌÀ
ȯ¸«Æü:1998/03
¾Ü¡¡¡¡ºÙ:Ç˲õ:
¡Ý¡¡²èÌ̤ò3x4¤Î¥Ñ¥º¥ë¤Ë¤·¤Æ¤·¤Þ¤¦¡£¥Ñ¥º¥ë¤ò´°À®¤µ¤»¤ë
¤È¥Þ¥·¥ó¤¬»ÈÍѤǤ¤ë¤è¤¦¤Ë¤Ê¤ë¡£
¤â¤·¤¯¤ÏAlt+F4(Windows¤Î¥×¥í¥°¥é¥à½ªÎ»¥·¥ç¡¼¥È¥«¥Ã¥È
¥¡¼)¤Ç²óÈò¤Ç¤¤ë¡£
È÷¡¡¡¡¹Í:¡Ý¥È¥í¥¤¤ÎÌÚÇϤΤ¿¤á¶î½ü¤Ï¤Ç¤¤Ê¤¤¡£¥Õ¥¡¥¤
¥ë¤Îºï½ü¤ÇÂн褹¤ëɬÍפ¬¤¢¤ë¡£
¡Ý¡¡¥ª¥ê¥¸¥Ê¥ë¤Î¥Õ¥¡¥¤¥ë̾¤Ï¡ÖSon_of_a.exe¡×
̾¡¡¡¡¾Î:PE_RMTEXPLORER
ÊÌ¡¡¡¡Ì¾:REMOTE EXPLORER, REMOTE_EXPLORER, RICHS,
RMTEXPLORER, TROJ_RMTEXPLORER, W32_RICHS
ʬ¡¡¡¡Îà:¥Õ¥¡¥¤¥ë´¶À÷·¿
ÂС¡¡¡¾Ý:.EXE
¥¦¥¤¥ë¥¹¥µ¥¤¥º:127KB
ȯ¾ÍÃÏ:¥¢¥á¥ê¥«
ȯ¸«Æü:1998/12
¾Ü¡¡¡¡ºÙ:ÆÃħ
.EXE¥Õ¥¡¥¤¥ë¤Ë´¶À÷¤·¤¿¤È¤¤Ï¡¢UNIX¤Ç¹¤¯ÉáµÚ¤·¤Æ¤¤¤ë
°µ½Ì·Á¼°¤Ç¤¢¤ëGZIP¤Î¥¢¥ë¥´¥ê¥º¥à¤ò»È¤Ã¤Æ°Å¹æ²½¤µ¤ì
¤ë¡£TXT¤ÈHTML¥Õ¥¡¥¤¥ë¤Ï¡¢°Å¹æ²½¤µ¤ì¤ë¡£
¤³¤ì¤é¤ÏGZIP¤Ç¥¨¥ó¥³¡¼¥É¤·¤Æ¤â¸µ¤ËÌ᤹¤³¤È¤Ï¤Ç¤¤Ê¤¤Ž¡
´¶À÷³èư:
- TROJ_RmtExplorer¥¦¥¤¥ë¥¹¤Ï¡¢Windows NT Server /
Workstation¡¡¤ÎVersion3.51°Ê¾å¤ÎOS¾å¤ÇÁý¿£¤¹¤ë¡£
-¡¡¤³¤Î¥¦¥¤¥ë¥¹¤Ë´¶À÷¤·¤¿¥Õ¥¡¥¤¥ë¤Ï¡¢¥í¡¼¥«¥ë¥Í¥Ã¥È¥ï
¡¼¥¯Æâ¤ÎNT OS¾å¤Ç¡¢Administrator
¸¢¸Â¤ò»ý¤Ä¥æ¡¼¥¶¡¼¤Ç¥í¥°¥ª¥ó¤·¤¿ºÝ¤Ë´¶À÷³èư¤ò¹Ô¤¦¡£
-¡¡´¶À÷¤·¤¿¥Þ¥·¥ó¤«¤é¡¢ Administrator ¸¢¸Â¤ò»ý¤Ã¤¿¥æ
¡¼¥¶¡¼¤¬¡¢LAN¾å¤Î¾¤Î¥Þ¥·¥ó¤Ë
¥í¥°¥ª¥ó¤·¤Æ´¶À÷¥Õ¥¡¥¤¥ë¤ò¼Â¹Ô¤¹¤ë¤È¡¢¤½¤Î¥í¥°¥ª¥óÀè
¤Î¥Þ¥·¥ó¤Ë¤â´¶À÷¤¹¤ë¡£
-¡¡¤³¤Î¥¦¥¤¥ë¥¹¤Ï¥á¥â¥ê¾ïÃ󷿤ǡ¢ .EXE ¥Õ¥¡¥¤¥ë¤Ë´¶À÷
¤¹¤ë¡£¤Þ¤¿´¶À÷»þ¤Ë¡¢¥é¥ó¥À¥à¤Ë
¥Ç¥£¥ì¥¯¥È¥ê¤òÁªÂò¤·¤½¤ÎÃæ¤Î .TXT ¡¢ .HTML ¥Õ¥¡¥¤¥ë¤ò
°Å¹æ²½¤¹¤ë¡£
- ´¶À÷¥Õ¥¡¥¤¥ë¤¬ÉáÄ̤Î(Administrator ¸¢¸Â¤ò»ý¤¿¤Ê¤¤)
¥æ¡¼¥¶¡¼¤Ë¤è¤Ã¤Æ¼Â¹Ô¤µ¤ì¤¿¾ì¹ç¤Ï¡¢
¤³¤Î¥¦¥¤¥ë¥¹¤Ï .EXE¥Õ¥¡¥¤¥ë¤òõ¤·¤À¤·¡¢¤½¤Î¥Õ¥¡¥¤¥ë¤Î
¥³¡¼¥É¤ò°µ½Ì¤·¤Æ¼«Ê¬¼«¿È¤Î¥³¥Ô¡¼¤Î
Ãæ¤ËÁÞÆþ¤¹¤ë¡£¤½¤Î¸å¡¢¥ª¥ê¥¸¥Ê¥ë¥Õ¥¡¥¤¥ë¤ò¥³¥Ô¡¼¤ÈÃÖ
¤´¹¤¨¤ë(¤³¤Î¤È¤¤½¤Î¥Õ¥¡¥¤¥ë¤Î°À
¤È¥¢¥¯¥»¥¹¥¿¥¤¥à¤âƱ»þ¤ËÃÖ¤´¹¤¨¤é¤ì¤ë¡Ë¡£
- ´¶À÷¥Õ¥¡¥¤¥ë¤¬ Administrator ¸¢¸Â¤ò»ý¤Ä¥æ¡¼¥¶¡¼¤Ë¤è
¤Ã¤Æ¼Â¹Ô¤µ¤ì¤¿¾ì¹ç¡¢
¤³¤Î¥¦¥¤¥ë¥¹¤Ï "Remote Explorer" ¤È¤¤¤¦Ì¾¾Î¤Ç¥µ¡¼¥Ó¥¹
¤È¤·¤Æ¥¤¥ó¥¹¥È¡¼¥ë¤µ¤ì¡¢
DLL ¤ò¼Â¹Ô¤¹¤ë¡£
¤³¤Î¤È¤¡¢ \Systemroot\system32\Drivers\ ¤ÎÃæ¤Ë
IE403R.SYS ¤È¤¤¤¦Ì¾Á°¤Ç¼«Ê¬¼«¿È¤Î
¥³¥Ô¡¼¤òºîÀ®¤¹¤ë¡£¤½¤Î¸åޤ¾å½Ò¤Î¥×¥í¥»¥¹¤Ç¥Í¥Ã¥È¥ï¡¼¥¯
¾å¤Î¥Þ¥·¥ó¤Ë´¶À÷¤¹¤ë¡£
-¡¡¤³¤Î¥¦¥¤¥ë¥¹¤Ï´¶À÷¥Õ¥¡¥¤¥ë¤ò¼Â¹Ô¤·¤¿¥æ¡¼¥¶¡¼¤Î¸¢¸Â
¤Ë°Í¸¤·¡¢¤½¤Î¸¢¸Â¤ò±Û¤¨¤Æ
´¶À÷³èư¤ò¹Ô¤¦¤³¤È¤Ï¤Ç¤¤Ê¤¤¡£¤¹¤Ê¤ï¤Á¡¢¥æ¡¼¥¶¡¼¤¬¤½
¤Î¥Õ¥¡¥¤¥ë¤Î¼Â¹Ô¸¢¸Â¤ò
»ý¤Ã¤Æ¤¤¤Ê¤±¤ì¤Ð¤Ê¤é¤Ê¤¤¤È¤¤¤¦¤³¤È¤Ç¤¢¤ë¡£
»³²:
-¡¡"Remote Explorer"¤Î¥µ¡¼¥Ó¥¹¤¬¥¤¥ó¥¹¥È¡¼¥ë¤µ¤ì¤Æ¤¤
¤ì¤Ðޤ´¶À÷¤·¤¿.EXE¥Õ¥¡¥¤¥ë¤Ï
Àµ¾ï¤Ëưºî¤·Ž¤°Å¹æ²½¤µ¤ì¤¿Ê¸½ñ¤âÉáÄ̤Ëɽ¼¨¤¹¤ë¤³¤È¤¬¤Ç
¤¤ë¤¬Ž¤¥µ¡¼¥Ó¥¹¤¬ºï½ü¤µ¤ì¤ë¤È
ưºî¤·¤Ê¤¯¤Ê¤êޤ¤Þ¤¿Ž¤°Å¹æ²½¤µ¤ì¤¿Ê¸½ñ¤âɽ¼¨¤Ç¤¤Ê¤¯¤Ê
¤ëŽ¡
È÷¡¡¡¡¹Í:TROJ_RmtExplorer¥¦¥¤¥ë¥¹¤Ï¤«¤Ê¤ê´õ¾¯¤Ê¸ºß
¤Ç¤¢¤ê¡¢¤ª¤½¤é¤¯´¶À÷¤Ë¤è¤ëÂ絬ÌϤÊ»³²¤Î²ÄǽÀ¤ÏÄ㤤
¤À¤í¤¦¡£¸½»þÅÀ(98/12/25)¤Ç¡¢¤³¤Î¥¦¥¤¥ë¥¹¤ÎÈï³²¤¬È¯¸«
¤µ¤ì¤¿¤Î¤Ï1¼Ò¤Î¤ß¤Ç¤¢¤ê¡¢
¤Þ¤¿¡¢¤³¤Î¥¦¥¤¥ë¥¹¤¬¥Ï¥Ã¥«¡¼¤ÎBBS¤äWEB¥µ¥¤¥È¤ËÅê¹Æ¤µ
¤ì¤¿¤È¤¤¤¦Êó¹ð¤Ï¤Ê¤¤Ž¡
¡ü´¶À÷¤òËɤ°
¡¦É¬ÍפʤȤ°Ê³°¤ÏAdministrator¸¢¸Â¤Ç¥·¥¹¥Æ¥à¤Ë¥í¥°¥ª
¥ó¤·¤Ê¤¤¡£Ä̾ï¤Î¶È̳¤òAdmin¸¢¸Â¤Ç¹Ô¤ï¤Ê¤¤¡£
¡¦Domain Administrator¥°¥ë¡¼¥×¤ò¡¢¿®Íê¤Ç¤¤ë
WorkStation¤Î¤ß¤ËÀ©¸Â¤¹¤ë¡£
¡¦½Ð½ê¤ò¿®ÍѤǤ¤Ê¤¤¸«ÃΤé¤Ì.EXE¥Õ¥¡¥¤¥ë¤ò¼Â¹Ô¤·¤Ê
¤¤¡£
¡ü´¶À÷¤·¤Æ¤¤¤ë¤«¤É¤¦¤«¤òÄ´¤Ù¤ë
¡¦NT¤Î¥³¥ó¥È¥í¡¼¥ë¥Ñ¥Í¥ë¤«¤éŽ¢¥µ¡¼¥Ó¥¹Ž£¥¢¥×¥ì¥Ã¥È¤ò³«
¤¡¢¤½¤ÎÃæ¤ËŽ¢Remote ExplorerŽ£¤¬
ÅÐÏ¿¤µ¤ì¤Æ¤¤¤Ê¤¤¤«¤ò³Îǧ¤¹¤ë¡£¤â¤·¤³¤Î̾Á°¤Î¥µ¡¼¥Ó¥¹
¤¬¤¢¤ì¤Ð¡¢´¶À÷¤·¤Æ¤¤¤ë¡£
¤³¤Î¥µ¡¼¥Ó¥¹¤Ï\Systemroot\system32\drivers\IE403R.SYS
¤«¤éÄ󶡤µ¤ì¤Æ¤¤¤ëŽ¡¡¡
¡¦Ctrl-Alt-Del¥¡¼¤òƱ»þ¤Ë²¡¤·¤Æ¡¢¥¿¥¹¥¯¥Þ¥Í¡¼¥¸¥ã
¡¼¤òµ¯Æ°¤·¡¢Ž¢¥×¥í¥»¥¹Ž£¥¿¥Ö¤ò
ɽ¼¨¤¹¤ë¡£
Ž¢IE403R.SYSŽ£¤È¤¤¤¦¥×¥í¥»¥¹¤¬É½¼¨¤µ¤ì¤Æ¤¤¤ì¤Ð¡¢¥·¥¹¥Æ
¥à¤Ï´¶À÷¤·¤Æ¤¤¤ë¡£
¡ü´¶À÷¤·¤Æ¤¤¤¿¾ì¹ç¤ÎÂнè
1.¥Þ¥·¥ó¤ò¥·¥ã¥Ã¥È¥À¥¦¥ó¤¹¤ë¡£
2.¥·¥¹¥Æ¥à¤òʪÍýŪ¤Ë¥Í¥Ã¥È¥ï¡¼¥¯¤«¤éÀÚ¤êÎ¥¤¹¡£
3.¥Í¥Ã¥È¥ï¡¼¥¯¾å¤Î¾¤Î¥·¥¹¥Æ¥à¤¬´¶À÷¤·¤Æ¤¤¤Ê¤¤¤«¤ò¥Á
¥§¥Ã¥¯¤¹¤ë¡£´¶À÷¤·¤Æ¤¤¤¿¾ì¹ç¤Ï¤½¤Î¥Þ¥·¥ó¤â¥Í¥Ã¥È¥ï
¡¼¥¯¤«¤éÀÚ¤êÎ¥¤¹¡£
4.Æü¾ï»ÈÍѤ·¤Æ¤¤¤ë¥¢¥ó¥Á¥¦¥¤¥ë¥¹¥½¥Õ¥È¥¦¥§¥¢¤Î¥Ù¥ó¥À
¡¼¤Ë¥·¥¹¥Æ¥à¥Á¥§¥Ã¥¯¤ò°ÍÍꤹ¤ëŽ¡
̾¡¡¡¡¾Î:PE_SAHARA
ÊÌ¡¡¡¡Ì¾:¤Ê¤·
¸À¡¡¡¡¸ì:±Ñ¸ì
ʬ¡¡¡¡Îà:¥Õ¥¡¥¤¥ë´¶À÷·¿
ÂС¡¡¡¾Ý:Win9x/NT
¾Ü¡¡¡¡ºÙ:VisualBasic¤ÇºîÀ®¤µ¤ì¤¿mIRC¤òÇÞ²ð¤Ë³È»¶¤¹¤ë
¥ï¡¼¥à¡£
¡¡¼Â¹Ô¤¹¤ë¤ÈmIRC¾å¤Ë¥í¥°¥ª¥ó¥Á¥ã¥ó¥Í¥ë¤ä¥Á¥ã¥Ã¥È¥ë
¡¼¥à¤ò³«Àߤ¹¤ë¡£¥í¥°¥ª¥ó¥Á¥ã¥ó¥Í¥ë¤ä¥Á¥ã¥Ã¥È¥ë¡¼¥à¤Î
̾¾Î¤ÏÍÍ¡¹¤À¤¬ÆÃ¤Ë #vir, #virus¡¤ #gigavirii¡¡¤Ê¤É¤ò
»ÈÍѤ¹¤ë¡£¤³¤Î¥ï¡¼¥à¤Î¥í¥°¥ª¥ó¥Á¥ã¥ó¥Í¥ë¤ä¥Á¥ã¥Ã¥È¥ë
¡¼¥à¤Ë»²²Ã¤¹¤ë¤È°Ê²¼¤Î¤è¤¦¤Ê¥á¥Ã¥»¡¼¥¸¤¬Á÷¤é¤ì¤Æ¤¯¤ë
:
¡¡"I see an oasis!"
¡¡VBScript¤Î¥Õ¥¡¥¤¥ë¤òWindows¤Î¥¹¥¿¡¼¥È¥¢¥Ã¥×¥Õ¥©¥ë¥À
¤ËºîÀ®¤¹¤ë¡£¤³¤Î¥Õ¥¡¥¤¥ë¤¬¼Â¹Ô¤µ¤ì¤ë¤È°Ê²¼¤Î¥á¥Ã¥»
¡¼¥¸¤òɽ¼¨¤¹¤ë:
¡¡"You are infected with Sahara (written by
Gigabyte)..Are you gonna cry now?"
¡¡¤Þ¤¿¡¢°Ê²¼¤Î¥Ç¥£¥ì¥¯¥È¥ê¤Ë¤¢¤ëEXE¥Õ¥¡¥¤¥ë¤Ë¾å½ñ¤¤Ç
´¶À÷¤¹¤ë¡£
¡¡C:\Windows
¡¡C:\Program Files\Accessories
¡¡C:\Program Files\AntiViral Toolkit Pro
̾¡¡¡¡¾Î:PE_SOFT.60416
ÊÌ¡¡¡¡Ì¾:SEMISOFT.60416, WIN32.HLLP.60416, WIN32.
SEMISOFT.60416
¥¦¥¤¥ë¥¹¥µ¥¤¥º:60,416¥Ð¥¤¥È
ȯ¾ÍÃÏ:¥Ë¥å¡¼¥¸¡¼¥é¥ó¥É
¾Ü¡¡¡¡ºÙ:¼Â¹Ô¤µ¤ì¤¿¥¦¥¤¥ë¥¹¤Ï¡¢¡ÉWINIPX.EXE¡É¤ä¡É
WINIPXA.EXE¡É¤È¤¤¤Ã¤¿Ì¾Á°¤Ç¡¢¥¦¥¤¥ë¥¹¥³¡¼¥É¤ò¿¿ô¥³¥Ô¡¼
¤¹¤ë¡£¤Þ¤¿¡¢NOTEPAD¡Ê¡Ö¥á¥â Ä¢¡×¡Ë¤Î¥Ð¥Ã¥¯¥¢¥Ã¥×¤ò
¡ÉNOTEPADX.EXE¡É¤Ë¤È¤Ã¤¿¤¢¤È¡¢¥¦¥¤¥ë¥¹¼«¿È¤Î̾Á°¤ò¡É
NOTEPAD.EXE¡É¤ÈÊѹ¹¤¹¤ë¡£
¤½¤Î¸å¥¦¥¤¥ë¥¹¤Ï¡¢¥Ë¥å¡¼¥¸¡¼¥é¥ó¥É¤Ë¤¢¤ë4¤Ä¤ÎIP¥¢¥É¥ì
¥¹¤ËPING¤òÁ÷¤ê¡¢¿·¤¿¤Ë´¶À÷¤Ë
À®¸ù¤·¤¿¤³¤È¤òÃΤ餻¤ë¥á¥Ã¥»¡¼¥¸¤òÁ÷¤ë¡£
¤½¤Î¸å¡¢¥Ý¡¼¥È531ÈÖ¤ò²ð¤·¤Æ¡¢´¶À÷¥Þ¥·¥ó¤ò¥Í¥Ã¥È¥ï¡¼¥¯
·Ðͳ¤ÇÁàºî¤Ç¤¤ë¤è¤¦¤Ë¤¹¤ë¡£
¤Þ¤¿¡¢¥¦¥¤¥ë¥¹¤Ï¡¢Windows¤Î¥ì¥¸¥¹¥È¥ê¤Ë°Ê²¼¤Î¥¨¥ó¥È¥ê
¤ò½ñ¤¤³¤à¡£
HKEYT_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\
CurrentVersion\RunServices
WINIPX=WINIPX.EXE
Windows NT¤Î¾ì¹ç¤Ë¤Ï°Ê²¼¤Î¥¨¥ó¥È¥ê¤ò½ñ¤¤³¤à¡£
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\
CurrentVersion\Winlogon
Shell=Explorer.exe, WINIPX.EXE
¤µ¤é¤Ë¥¦¥¤¥ë¥¹¤Ï¡¢¥¹¥¿¡¼¥È¥¢¥Ã¥×¡¦¥Õ¥©¥ë¥À¤Ë
Explorer.exe
Explor~2.exe
Explor~1.exe
Explore.exe
¤È¤¤¤¦¥Õ¥¡¥¤¥ë¤òÄɲ乤뤳¤È¤Ç¡¢Windows¤Îµ¯Æ°»þ¤Ë¥¦¥¤
¥ë¥¹¤âµ¯Æ°¤µ¤ì¤ë¤è¤¦¤Ë¤¹¤ë¡£
È÷¡¡¡¡¹Í:¥¦¥¤¥ë¥¹¤ò½üµî¤¹¤ë¤Ë¤Ï¡¢WINDOWS¤ÎSYSTEM¥Õ¥©
¥ë¥À¤«¤é¡ÉWINIPX.EXE¡É¤òºï½ü¤·¡¢WINDOWS¥Õ¥©¥ë¥ÀÆâ¤Î¡É
NOTEPADX.EXE¡É¤ò¡ÉNOTEPAD.EXE¡É¤È̾Á°¤òÊѤ¨¤ë¡£
¤µ¤é¤Ë¡¢¾åµ¤Î¥ì¥¸¥¹¥È¥ê¡¦¥¨¥ó¥È¥ê¤òºï½ü¤¹¤ë¡£
̾¡¡¡¡¾Î:PE_SPACES.1633
ÊÌ¡¡¡¡Ì¾:W32/SPACES.1633
ʬ¡¡¡¡Îà:¥Õ¥¡¥¤¥ë´¶À÷·¿
¥¦¥¤¥ë¥¹¥µ¥¤¥º:1,633 bytes
¾Ü¡¡¡¡ºÙ:¤³¤ì¤ÏWindows9x/ NT¾å¤Çưºî²Äǽ¤Î32bit ¥Õ¥¡
¥¤¥ë´¶À÷·¿¥¦¥¤¥ë¥¹¤Ç¤¹¡£¥á¥â¥ê¤Ë¾ïÃ󤹤뤿¤á¡¢¥¢¥¯¥»
¥¹¤·¤¿EXE(PE ¥¿¥¤¥×)¥Õ¥¡¥¤¥ë¤¹¤Ù¤Æ¤Ë´¶À÷¤¹¤ë¤³¤È¤¬²Ä
ǽ¤Ç¤¹¡£
´¶À÷¤·¤¿¥Õ¥¡¥¤¥ë¤ò¼Â¹Ô¤¹¤ë¤È¡¢PE_SPACES.1633¤Ï´¶À÷³è
ư¤ò³«»Ï¤·¤Þ¤¹¡£¤Þ¤º¡¢¥Þ¥·¥ó¤¬¤¹¤Ç¤Ë´¶À÷¤·¤Æ¤¤¤ë¤«¤É
¤¦¤«¤ò¥á¥â¥ê¤òÄ´¤Ù¤Þ¤¹¡£¥á¥â¥ê¤Ë¾ïÃ󤷤Ƥª¤é¤º¡¢¤Þ¤À
´¶À÷¤·¤Æ¤¤¤Ê¤±¤ì¤Ð¡¢¥¦¥¤¥ë¥¹¤Ï¤Þ¤º¥á¥â¥ê¤Ë¾ïÃó¤·¤Þ
¤¹¡£°Ê¸å¡¢¼Â¹Ô¤·¤¿¤¹¤Ù¤Æ¤ÎPE¥Õ¥¡¥¤¥ë¤Ë´¶À÷¤¹¤ë¤³¤È¤¬
¤Ç¤¤Þ¤¹¡£
¤³¤Î¥¦¥¤¥ë¥¹¤Ï¡¢´¶À÷ÂоݤΥե¡¥¤¥ë¤Î°ìÈֺǸå¤Î¥»¥¯¥·
¥ç¥ó¤Ë¥¦¥¤¥ë¥¹¥³¡¼¥É¤òÄɲä·¡¢¥¨¥ó¥È¥ê¡¼¥Ý¥¤¥ó¥È¤Ë¥¦
¥¤¥ë¥¹¥³¡¼¥É¤Ø¤Î¥¸¥ã¥ó¥×Ì¿Îá¤ò²Ã¤¨¤Þ¤¹¡£
Ç˲õ³èư
Ëèǯ6·î1Æü¤Ë¤Ê¤ë¤È¡¢¥Þ¥¹¥¿¡¼¥Ö¡¼¥È¥ì¥³¡¼¥É(MBR)¤ò²þÊÑ
¤·¤Æ¤·¤Þ¤¤¤Þ¤¹¡£¤³¤Î¤¿¤á¡¢¥·¥¹¥Æ¥à¤Ïµ¯Æ°¤Ç¤¤Ê¤¯¤Ê
¤ê¡¢¥Ç¡¼¥¿¤¬¼º¤ï¤ì¤Þ¤¹¡£
¤³¤Î¥¦¥¤¥ë¥¹¤Ï´¶À÷»þ¤Ë¸µ¥Õ¥¡¥¤¥ë¤ò²õ¤·¤Æ¤·¤Þ¤¦¤¿¤á¡¢
¶î½ü¤¹¤ë¤³¤È¤¬¤Ç¤¤Þ¤»¤ó¡£¤³¤ÎÅÀ¤ò¹Í¤¨¤ë¤È¤È¤Æ¤âÇ˲õ
Ū¤Ê¥¦¥¤¥ë¥¹¤È¸À¤¨¤ë¤Ç¤·¤ç¤¦¡£
̾¡¡¡¡¾Î:PE_ZERG
ÊÌ¡¡¡¡Ì¾:W95/ZERG, WIN95.ZERG.3849
ʬ¡¡¡¡Îà:¥Õ¥¡¥¤¥ë´¶À÷·¿, ¥¹¥Æ¥ë¥¹·¿, ¥á¥â¥ê¾ïÃó·¿
ÂС¡¡¡¾Ý:.EXE(PE)
¥¦¥¤¥ë¥¹¥µ¥¤¥º:3,849¥Ð¥¤¥È
¾Ü¡¡¡¡ºÙ:-¡¡¥¦¥£¥ó¥É¥¥¥º¡¦¥·¥¹¥Æ¥àÍѤΥá¥â¥ê¡¼Îΰè¤Ë
¾ïÃ󤹤롣¥á¥â¥ê¡¼¾ïÃó¸å¡¢¥Õ¥¡¥¤¥ë¡¦
¥¢¥¯¥»¥¹ÍѤδؿô¤òÀ©¸æ¤·¡¢¤½¤Î¸å³«¤«¤ì¤¿EXE¥Õ¥¡¥¤¥ë¤¹
¤Ù¤Æ¤ËޤPE¥Ø¥Ã¥À¡¼ÎΰèËöü¤Ë
¥¦¥¤¥ë¥¹¥³¡¼¥É¤ò¥³¥Ô¡¼¤·¤Æ´¶À÷¤¹¤ë¡£
- ´¶À÷¥Õ¥¡¥¤¥ë¤¬¼Â¹Ô¤µ¤ì¤ë¤È¡¢¥¦¥¤¥ë¥¹¤Ï¡¢¼«¤é¤ò¥¦¥£
¥ó¥É¥¥¥º¥·¥¹¥Æ¥à¤Î¥«¡¼¥Í¥ë¤Ë
ÁȤ߹þ¤à¡£¤¹¤Ê¤ï¤Á¡¢¼«¿È¤Î¥³¡¼¥É¤òÄ̾ï¤Î¥¢¥×¥ê¥±¡¼¥·
¥ç¥ó¥ì¥Ù¥ë¤Ç¤¢¤ëRing3 ¤«¤é¡¢
¥·¥¹¥Æ¥à¥ì¥Ù¥ë¤ÎRing0¤ËÊѹ¹¤¹¤ë¤¿¤á¤Î¥È¥ê¥Ã¥¯¤òÍѤ¤¤ë
¤Î¤Ç¤¢¤ë¡£¤³¤ì¤Ë¤è¤ê¡¢
¥·¥¹¥Æ¥àÍѤΥá¥â¥ê¡¼¤ËÀø¤ê¹þ¤ß¡¢¥Õ¥¡¥¤¥ë¥¢¥¯¥»¥¹Åù¤ò
´Æ»ë¤¹¤ë¤³¤È¤¬²Äǽ¤È¤Ê¤ë¡£
- ¥Õ¥¡¥¤¥ë¤Î¥ª¡¼¥×¥óµÚ¤Ó¥¯¥í¡¼¥º¡¢¥Õ¥¡¥¤¥ë¤Î¸¡º÷¡¢¥Ç
¡¼¥¿¤ÎÆÉ¤ß½ñ¤¤ËÍѤ¤¤ë
£¹¼ïÎà¤Î¥·¥¹¥Æ¥à¡¦¥³¡¼¥ë¤ò´Æ»ë¤¹¤ë¡£
¥Õ¥¡¥¤¥ë¤¬ÊĤ¸¤é¤ì¤ë¤È¤¤Ë¡¢¥¦¥¤¥ë¥¹¤Ï´¶À÷³èư¤ò¹Ô¤Ê
¤¦¡£Â¾¤Î¥·¥¹¥Æ¥à¡¦¥³¡¼¥ë¤Ë
ÂФ·¤Æ¤Ï¡¢´¶À÷¤ò¸«¤Ä¤±¤Ë¤¯¤¯¤¹¤ë¤¿¤á¤Ë¥é¥ó¥À¥à¤Ê¿ôÃÍ
¤òÊÖ¤·¡¢´¶À÷¤·¤Æ¤¤¤ë¥Ç¡¼¥¿¤ò
ÊÖ¤µ¤Ê¤¤¤è¤¦¤ËÀ©¸æ¤¹¤ë¡£
È÷¡¡¡¡¹Í:¡¡¥¹¥Æ¥ë¥¹µ»½Ñ¤òÍѤ¤¤ÆPE¥¿¥¤¥×¤Î.EXE¥Õ¥¡¥¤
¥ë¤Ë´¶À÷¤¹¤ëÀ¤³¦½é¤Î¥¦¥¤¥ë¥¹¡£
-¡¡¥¦¥¤¥ë¥¹¤¬¥á¥â¥ê¤Ë¾ïÃ󤷤Ƥ¤¤ë´Ö¤Ï¡¢Windows¤äDOS¤Î
OS¾å¤«¤é¡¢´¶À÷¥Õ¥¡¥¤¥ëÃæ¤Î
¥¦¥¤¥ë¥¹¥³¡¼¥É¤Ë¥¢¥¯¥»¥¹¤¹¤ë¤³¤È¤Ï¤Ç¤¤Ê¤¤¡£
¥¦¥¤¥ë¥¹¤¬¤³¤Î¥¢¥¯¥»¥¹¸Æ½Ð¤Ë³ä¤ê¤³¤ß¤ò¤«¤±¡¢´¶À÷¥Õ¥¡
¥¤¥ë¤Î¸µ¡¹¤Î¥³¡¼¥É¤òÊÖ¤¹
¥¹¥Æ¥ë¥¹µ»½Ñ¤òÍѤ¤¤ë¤¿¤á¤Ç¤¢¤ë¡£¤³¤Î¥¹¥Æ¥ë¥¹¡¦¥³¡¼¥É
¤Ë¤Ï¥Ð¥°¤¬¤¢¤ê¡¢¾ì¹ç¤Ë¤è¤Ã¤Æ¤Ï¡¢
´¶À÷¤·¤¿¥·¥¹¥Æ¥à¤½¤Î¤â¤Î¤ò¥Õ¥ê¡¼¥º¤µ¤»¤Æ¤·¤Þ¤¦¤³¤È¤â
¤¢¤ë¡£
-¡¡¥¦¥¤¥ë¥¹¥³¡¼¥ÉÆâ¤Ë¤Ï°Ê²¼¤Î¥Æ¥¥¹¥È¤¢¤ë:
-=#[Zerg v0.1 Beta]#=-
The World First Full Stealth virus for Win95/98,
Written by Dark Slayer in Keelung, Taiwan (ROC).This
is a Demo and Lame virus.It is Show that How to
Make a Full Stealth virus on IFSMgr, and Directly
Call into FSD without the Fucking IFSMgr_Ring0_
FileIO.It is not Finished yet at All, Keeping watch
My Next virus, Next Generation...It will be A
Partition/BOOT/COM/EXE/NEXE/PEXE/Polymorphic/Full
Stealth/Multi-Platform Infector.
Greeting to all Virus Writer, Bye! ^_^
̾¡¡¡¡¾Î:PE_ZYTZMXZY
ÊÌ¡¡¡¡Ì¾:PE_WEIRD.10240.A
ʬ¡¡¡¡Îà:¥Õ¥¡¥¤¥ë´¶À÷·¿
ÂС¡¡¡¾Ý:.EXE
¾Ü¡¡¡¡ºÙ:¤³¤Î¥¦¥¤¥ë¥¹¤ÏPE¥¿¥¤¥×¤Î¼Â¹Ô·¿¥Õ¥¡¥¤¥ë¤Ë´¶
À÷¤¹¤ë¥Õ¥¡¥¤¥ë´¶À÷·¿¥¦¥¤¥ë¥¹¤Ç¤¹Ž¡´¶À÷¤¹¤ë¤È¥Õ¥¡¥¤¥ë¥µ
¥¤¥º¤¬11,264¥Ð¥¤¥ÈÁý²Ã¤·¤Þ¤¹Ž¡
´¶À÷¤·¤¿¥Õ¥¡¥¤¥ë¤ò¼Â¹Ô¤¹¤ë¤Èޤ¤Þ¤ºŽ¤ZUZSZQ.EXE ¤È¤¤¤¦¥Õ
¥¡¥¤¥ë¤¬Windows¥Ç¥£¥ì¥¯¥È¥êÆâ¤ËºîÀ®¤µ¤ì¤Þ¤¹Ž¡¤Þ¤¿¤³¤Î
¥¦¥¤¥ë¥¹¤Ï¥á¥â¥ê¤Ë¾ïÃó¤·¤Þ¤¹Ž¡¥á¥â¥ê¤Ë¾ïÃ󤷤Ƥ¤¤ë´Ö¤Ï
ޤ¤³¤ÎZUZSZQ.EXE¥Õ¥¡¥¤¥ë¤ò¸¡º÷¤·¤Æ¤â¸«¤Ä¤±¤ë¤³¤È¤Ï¤Ç¤
¤Þ¤»¤óŽ¡¤³¤ì¤Ï¥¦¥¤¥ë¥¹¤¬¤½¤Î¸ºß¤ò±£¤¹¤¿¤á¤Î¹Ôư¤Ç¤¹Ž¡
´¶À÷¤¹¤ë°Ê³°¤ÎÇ˲õ³èưÅù¤Ï¤¢¤ê¤Þ¤»¤óŽ¡
¥¦¥¤¥ë¥¹¤Î¥³¡¼¥ÉÆâ¤Ë¤Ï°Ê²¼¤Î¥Æ¥¥¹¥È¤¬´Þ¤Þ¤ì¤Æ¤¤¤Þ¤¹Ž¡
¡ÆCoded by Weird¡Ç
̾¡¡¡¡¾Î:PEARL_HARBOR
ÊÌ¡¡¡¡Ì¾:VCL, VCL.PEARLHARBOUR
ʬ¡¡¡¡Îà:¥Õ¥¡¥¤¥ë´¶À÷·¿
ÂС¡¡¡¾Ý:.COM
¥¦¥¤¥ë¥¹¥µ¥¤¥º:N/A
ȯ¾ÍÃÏ:ÉÔÌÀ
ȯ¸«Æü:ÉÔÌÀ
¾Ü¡¡¡¡ºÙ:´¶À÷ÊýË¡:
-¡¡.COM¥Õ¥¡¥¤¥ë¤Ë´¶À÷¤¹¤ë¥¿¥¤¥×¤Çޤ¥á¥â¥ê¤Ë¾ïÃ󤷤ʤ¤
ľÀÜ´¶À÷·¿¤Î¥¦¥¤¥ë¥¹¤Ç¤¢¤ëŽ¡
Ê£¹ç´¶À÷·¿¤Ç¤Ï¤Ê¤¤¤Î¤Ç¥·¥¹¥Æ¥àÎΰè¤ä¥Ö¡¼¥È¥ì¥³¡¼¥É¤Ë
Èï³²¤òµÚ¤Ü¤¹¤³¤È¤Ï¤Ê¤¤Ž¡
»³²:
-¡¡¥³¡¼¥É¤ò¥³¥Ô¡¼¤¹¤ë°Ê³°¤ËÇ˲õ³èư¤Ï¤Ê¤¤Ž¡
È÷¡¡¡¡¹Í:-¡¡¤³¤Î¥¦¥¤¥ë¥¹¤¬¹¤¯´¶À÷¤·¤¿¤È¤¤¤¦¤è¤¦¤ÊÏÃ
¤Ïʹ¤¤¤¿¤³¤È¤¬¤Ê¤¤Ž¡
̾¡¡¡¡¾Î:PENPAL GREETINGS !
ʬ¡¡¡¡Îà:¥Ç¥Þ¾ðÊó
ÂС¡¡¡¾Ý:¤Ê¤·
¥¦¥¤¥ë¥¹¥µ¥¤¥º:N/A
¾Ü¡¡¡¡ºÙ:¡Ý¡¡Áûư¤òµ¯¤³¤¹¤¿¤á¤Ë¿Í°ÙŪ¤Ëή¤µ¤ì¤¿¥¦¥¤
¥ë¥¹¤Î¥Ç¥Þ¾ðÊó¤Ç¤¹¡£¤³¤Î¾ðÊó¤Ç¿¨¤ì¤é¤ì¤Æ
¤¤¤ë¤è¤¦¤Ê¥¦¥¤¥ë¥¹¤Ï¼Âºß¤·¤Þ¤»¤ó¡£
¡Ý¡¡ÆâÍÆ¤È¤·¤Æ¤Ï¡ÖGood Times¡×¤ä¡ÖDeeyenda¡×¤È¤¤¤Ã¤¿
¥Ç¥Þ¾ðÊó¤ËÎà»÷¤·¤Æ¤¤¤Þ¤¹¡£
¿·¼ï¤Î¡Ö¥È¥í¥¤¤ÎÌÚÇϡפξðÊó¤òÃοͤ˹¤á¤ë¤³¤È¤ò´«¤á
¤Æ¤¤¤Þ¤¹¡£
¡Ý¡¡¤³¤Î¥Ç¥Þ¾ðÊó¤Î¥ª¥ê¥¸¥Ê¥ë¤È¤ß¤é¤ì¤ëʸ¾Ï¤Ï°Ê²¼¤ÎÄÌ
¤ê¤Ç¤¹:
**Note : As of yetޤ email messages can not execute
themselves [Give em time].Depending
on your email packageޤ attachments may be able to be
executedޤ or opened whenclicked on depending on their
content and your reader¡Çs configuration.
Usersshould be aware that infected executables and
documents can be transmitted asattachments and should
use typical caution when recieving attachments.
Original Text :
FYI!
Subject: Virus Alert
Importance: High
If anyone receives mail entitled: PENPAL
GREETINGS! please delete itWITHOUTreading it.
Below is a little explanation of the messageޤ
and what itwoulddo to your PC if you were to
read the message. If you have any
questionsorconcerns please contact SAF-IA Info
Office on 697-5059.
This is a warning for all internet users - there
is a dangerous viruspropogating across the
internet through an e-mail message entitled "
PENPALGREETINGS!". DO NOT DOWNLOAD ANY MESSAGE
ENTITLED "PENPAL GREETINGS!"
This message appears to be a friendly letter
asking you if you areinterestedin a penpalޤ but
by the time you read this letterޤ it is toolate.
The "trojan horse" virus will have already
infected the boot sector ofyour harddriveޤ
destroying all of the data present. It is a
self-replicatingvirusޤand once the message is
readޤ it will AUTOMATICALLY forward itself
toanyonewho¡Çs e-mail address is present in YOUR
mailbox!
This virus will DESTROY your hard driveޤ and
holds the potential toDESTROYthe hard drive of
anyone whose mail is in your inboxޤ and who¡Çs
mail is intheir inboxޤ and so on. If this virus
remains uncheckedޤ it has thepotentialto do a
great deal of DAMAGE to computer networks
worldwide!!!!
Pleaseޤ delete the message entitled "PENPAL
GREETINGS!" as soon as you seeit!
And pass this message along to all of your
friends and relativesޤ and the
other readers of the newsgroups and mailing
lists which you are onޤ sothatthey are not hurt
by this dangerous virus!!!!
̾¡¡¡¡¾Î:PENZA
ʬ¡¡¡¡Îà:¥Õ¥¡¥¤¥ë´¶À÷·¿
ÂС¡¡¡¾Ý:.COM
¥¦¥¤¥ë¥¹¥µ¥¤¥º:700¥Ð¥¤¥È
ȯ¾ÍÃÏ:ÉÔÌÀ
ȯ¸«Æü:ÉÔÌÀ
¾Ü¡¡¡¡ºÙ:´¶À÷ÊýË¡:
¥á¥â¥ê¤Ë¾ïÃ󤷤Ƥ¤¤Ê¤±¤ì¤Ð¡¢¾å°Ì¥á¥â¥ê¤Ë¾ïÃ󤹤롣
¾ïÃó¸å¡¢¥ª¥ê¥¸¥Ê¥ë¥ë¡¼¥Á¥ó¤ËÌá¤ë¡£
̤´¶À÷¤Î.COM¥Õ¥¡¥¤¥ë¤¬¼Â¹Ô¤µ¤ì¤ëÅ٤˴¶À÷¤¹¤ë¡£
»ÈÍѳä¤ê¹þ¤ßÌ¿Îá:INT 21H¡¢INT 24h
Ç˲õ:´¶À÷¡¢Áý¿£°Ê³°¤Î³èư¤Ï¤Ê¤·¡£
¼±ÊÌÊýË¡:´¶À÷¥Õ¥¡¥¤¥ë¤Ï700¥Ð¥¤¥ÈÁý²Ã¤¹¤ë¡£
È÷¡¡¡¡¹Í:
̾¡¡¡¡¾Î:PETERII
ÊÌ¡¡¡¡Ì¾:JAPAN_A27
ʬ¡¡¡¡Îà:¥·¥¹¥Æ¥àÎΰ贶À÷·¿
ÂС¡¡¡¾Ý:FD:¥Ö¡¼¥È¥»¥¯¥¿;HD:¥Þ¥¹¥¿¡¼¥Ö¡¼¥È¥ì¥³¡¼¥É
¥¦¥¤¥ë¥¹¥µ¥¤¥º:N/A
ȯ¾ÍÃÏ:ÆüËÜ
ȯ¸«Æü:1993/10/08
¾Ü¡¡¡¡ºÙ:´¶À÷ÊýË¡:
¡Ý¤³¤Î¥¦¥¤¥ë¥¹¤Ë´¶À÷¤·¤¿¥Õ¥í¥Ã¥Ô¡¼¥Ç¥£¥¹¥¯¤Ç¥Þ¥·¥ó¤Î
µ¯Æ°Æ°ºî¤ò¹Ô¤¦¤È¥Ï¡¼¥É¥Ç¥£¥¹¥¯¤Î
¥·¥¹¥Æ¥àÎΰè¡Ê¥Þ¥¹¥¿¡¼¥Ö¡¼¥È¥ì¥³¡¼¥É¡Ë¤Ë´¶À÷¤¹¤ë¡£
¡Ý¤³¤Î¥¦¥¤¥ë¥¹¤Ë´¶À÷¤·¤¿¥Ï¡¼¥É¥Ç¥£¥¹¥¯¤Ç¥Þ¥·¥ó¤òµ¯Æ°
¤¹¤ë¤È¡¢¥á¥â¥ê¡¼¤Ë¾ïÃ󤷤ƥե¡¥¤¥ë¤Î
Æþ½ÐÎϤò´Æ»ë¤¹¤ë¡£¤½¤Î¸å¡¢½ñ¤¹þ¤ß²Äǽ¤Ê¥Õ¥í¥Ã¥Ô¡¼¥Ç
¥£¥¹¥¯¤Ë¥¢¥¯¥»¥¹¤¹¤ë¤È¡¢
¤½¤Î¥Ç¥£¥¹¥¯¤Î¥Ö¡¼¥È¥»¥¯¥¿¤Ë´¶À÷¤¹¤ëŽ¡
ȯÉÂ:
¡Ý£²·î£²£·Æü¤Ë´¶À÷¥Þ¥·¥ó¤òµ¯Æ°¤¹¤ë¤È¡¢²¼µ¤Î£³¤Ä¤Î¼Á
Ìä¤ò½Ð¤¹¡££±¤Ä¤Ç¤â´Ö°ã¤¨¤ë¤È
¥Ï¡¼¥É¥Ç¥£¥¹¥¯¤Î¥·¥¹¥Æ¥à¾ðÊó¤ò°Å¹æ²½¤·¡¢¥Ï¡¼¥É¥Ç¥£¥¹
¥¯¤Î¥Ç¡¼¥¿¤òÆÉ¤á¤Ê¤¤¤è¤¦¤Ë¤·¤Æ¤·¤Þ¤¦¡£
OK.if you give the right answer to the following
questionsޤ I will gave
your HD:
A. Who has sung the song called "I¡Çll be there"?
1.Marian Carey 2.The Escape Club 3. The Jackson
five 4.All (1-4):
B. What is Phil Colins ?
1. A singer 2. A drummer 3. A producer 4. Above
All (1-4):
C. Who has the most top 10 singles in 1980¡Çs ?
1. Michael Jackson 2. Phil Colins (featuring
Genesis) 3. Madonna 4. Whitney
Houston (1-4):
¡ÝÁ´ÌäÀµ²ò¤Î¾ì¹ç¤Ï°Ê²¼¤Î¥á¥Ã¥»¡¼¥¸¤òɽ¼¨¤¹¤ë¡£
CONGRATULATION !!! You successfully pass the
quiz !
AND NOW RECOVER YOUR HARDISk ......
¡Ý£±Ìä¤Ç¤â¸íÅú¤¹¤ë¤È°Ê²¼¤Î¥á¥Ã¥»¡¼¥¸¤òɽ¼¨¤·¤Æ¥Ï¡¼¥É
¥Ç¥£¥¹¥¯¤òÇ˲õ¤¹¤ë¡£
Sorry ! Go to Hell Clousy man !
¡Ý¥¯¥¤¥º¤ÎÀµ²ò¤Ï¾å¤«¤é½ç¤Ë £´¡¢£´¡¢£²¤Ç¤¢¤ë¡£
̾¡¡¡¡¾Î:PH33R.1332
ÊÌ¡¡¡¡Ì¾:PH33R
ʬ¡¡¡¡Îà:¥Õ¥¡¥¤¥ë´¶À÷·¿
ÂС¡¡¡¾Ý:.COM;.EXE
¥¦¥¤¥ë¥¹¥µ¥¤¥º:1332¥Ð¥¤¥È
ȯ¾ÍÃÏ:¥Ù¥ë¥®¡¼
ȯ¸«Æü:1996
¾Ü¡¡¡¡ºÙ:´¶À÷¤·¤¿¥Õ¥¡¥¤¥ë¤¬ DOS ¤« Windows ¾å¤Ç¼Â¹Ô
¤µ¤ì¤ë¤È¥á¥â¥ê¾ïÃ󤷤ơ¢¤½¤ì°Ê¹ß¤Ë¼Â¹Ô¤µ¤ì¤¿COMŽÌާ޲ŽÙ¤È
EXEŽÌާ޲ŽÙ¤Ë´¶À÷¤¹¤ë¡£
¤³¤Î¥¦¥¤¥ë¥¹¤Ï¡¢¥Õ¥¡¥¤¥ë̾¤Ë²¼µ¤Îʸ»úÎó¤Î¤â¤Î¤¬»È¤ï
¤ì¤Æ¤¤¤ë¾ì¹ç¤Ë¤Ï´¶À÷¤·¤Ê¤¤¡£
ANޤ AVޤ OT
¥Þ¥¯¥í·¿¥¦¥¤¥ë¥¹¡ÖWord.Nuclear¡×¤Ë¤Ï¡¢¤³¤Î¥¦¥¤¥ë¥¹¤ò
¼Â¹Ô¤µ¤»¤ë¥ë¡¼¥Á¥ó¤¬¤¢¤ë¤¬¡¢¼ÂºÝ¤Ë¤Ïưºî¤·¤Ê¤¤¡£
È÷¡¡¡¡¹Í:
̾¡¡¡¡¾Î:PHALCON
ÊÌ¡¡¡¡Ì¾:BETAޤ PHALCON_MINISTRY
ʬ¡¡¡¡Îà:Ê£¹ç´¶À÷·¿
ÂС¡¡¡¾Ý:.COM¡Êcommand.com¤ò½ü¤¯¡Ë
¥¦¥¤¥ë¥¹¥µ¥¤¥º:1168¥Ð¥¤¥È
ȯ¾ÍÃÏ:ÉÔÌÀ
ȯ¸«Æü:1992/04
¾Ü¡¡¡¡ºÙ:¡Ý¤³¤Î¥¦¥¤¥ë¥¹¤ÏBeta¥¦¥¤¥ë¥¹¤È¸Æ¤Ð¤ì¤ë¤â¤Î
¤¬¸¶·¿¤Ç¤¢¤ë¡£
¡Ý¥¦¥¤¥ë¥¹´¶À÷¤·¤¿¥×¥í¥°¥é¥à¤¬¼Â¹Ô¤µ¤ì¤¿¤È¤¡¢¥«¥ì¥ó
¥È¥Ç¥£¥ì¥¯¥È¥ê¤Ë¸ºß¤¹¤ë
COMMAND.COM°Ê³°¤Î£³¤Ä¤ÎCOM¥Õ¥¡¥¤¥ë¤ò¥Á¥§¥Ã¥¯¤¹¤ë¡£
¤½¤·¤Æ´¶À÷¤·¤Æ¤¤¤Ê¤¤¤«¤òȽÃǤ¹¤ë¡£
¡Ý¤â¤·¥×¥í¥°¥é¥à¤¬´¶À÷¤·¤Æ¤¤¤Ê¤±¤ì¤Ð¡¢´¶À÷¤¹¤ë¡£´¶À÷
¤·¤¿ºÝ¡¢ÆüÉÕ¤ä»þ´Ö¤ÏÊѹ¹¤·¤Ê¤¤¡£
¡Ý²¼µ¤Îʸ»úÎ󤬥¦¥¤¥ë¥¹¥³¡¼¥É¤Ë´Þ¤Þ¤ì¤ë¡£
ask!
I'm Buring Inside!
Breathe You Fucker!
Jesus Built My Hotrod!
Everyday is Halloween!
The Ministry Virus - Written by NegativX -
(c) 1991 -SiTT-
È÷¡¡¡¡¹Í:
̾¡¡¡¡¾Î:PHANTOM
ÊÌ¡¡¡¡Ì¾:PHANT
ʬ¡¡¡¡Îà:¥Õ¥¡¥¤¥ë´¶À÷·¿
ÂС¡¡¡¾Ý:.COM;.EXE
¥¦¥¤¥ë¥¹¥µ¥¤¥º:N/A
ȯ¾ÍÃÏ:¥Ï¥ó¥¬¥ê¡¼
¾Ü¡¡¡¡ºÙ:¤³¤ì¤Ï¥¹¥¿¥ó¥À¡¼¥É¤Ê¥á¥â¥ê¾ïÃó·¿Ž¥¥ß¥å¡¼¥Æ
¡¼¥·¥ç¥ó·¿¥¦¥¤¥ë¥¹¤Ç¤¢¤êޤ.COM¤È.EXE¥Õ¥¡¥¤¥ë¤Ë
´¶À÷¤¹¤ëŽ¡¥¦¥¤¥ë¥¹¥³¡¼¥É¤ò¥³¥Ô¡¼¤·¤Æ¤¤¤¯°Ê³°Ž¤ÆÃ¤ËÇ˲õ
³èư¤Ï¤Ê¤¤Ž¡
´¶À÷ÊýË¡:
-¡¡´¶À÷¤·¤¿¥Õ¥¡¥¤¥ë¤ò¼Â¹Ô¤¹¤ë¤Èޤ¥á¥â¥ê¤Ë¾ïÃó¤·Ž¤°Ê¸å¥¢
¥¯¥»¥¹¤·¤¿¥Õ¥¡¥¤¥ë¤¹¤Ù¤Æ¤Ë
¥¦¥¤¥ë¥¹¥³¡¼¥É¤ò¥³¥Ô¡¼¤¹¤ëŽ¡¤¹¤Ç¤Ë´¶À÷¤·¤Æ¤¤¤¿¥Õ¥¡¥¤¥ë
¤Ë¤Ï¥³¥Ô¡¼¤·¤Ê¤¤Ž¡
¾É¾õ:
-¡¡´¶À÷¤·¤¿¥Õ¥¡¥¤¥ë¤¬¼Â¹Ô¤µ¤ì¤ë¤Èޤ°Ê²¼¤Î¥á¥Ã¥»¡¼¥¸¤ò
ɽ¼¨¤¹¤ëŽ¡
The PHANTOM Was HERE - Sorry" ޤ"HI ROOKIE! I¡Çm a
THESEASE! I live in YOUR computer - sorry. Thanks to
Brainsin the Computer Siences!.."
̾¡¡¡¡¾Î:PIT-1228
ʬ¡¡¡¡Îà:¥Õ¥¡¥¤¥ë´¶À÷·¿
ÂС¡¡¡¾Ý:.COM;.EXE
¥¦¥¤¥ë¥¹¥µ¥¤¥º:1228¥Ð¥¤¥È
ȯ¾ÍÃÏ:ÉÔÌÀ
ȯ¸«Æü:ÉÔÌÀ
¾Ü¡¡¡¡ºÙ:´¶À÷ÊýË¡:
¥á¥â¥ê¤Ë¾ïÃ󤷤Ƥ¤¤Ê¤±¤ì¤Ð¡¢¾å°Ì¥á¥â¥ê¤Ë¾ïÃ󤹤롣
¾ïÃó¸å¡¢¥ª¥ê¥¸¥Ê¥ë¥ë¡¼¥Á¥ó¤ËÌá¤ë¡£
̤´¶À÷¤Î.COM¤Þ¤¿¤Ï.EXE¥Õ¥¡¥¤¥ë¤¬¼Â¹Ô¤µ¤ì¤ëÅ٤˴¶À÷¤¹
¤ë¡£
»ÈÍѳä¤ê¹þ¤ßÌ¿Îá:INT 21H¡¢INT 24h
Ç˲õ:´¶À÷¡¢Áý¿£°Ê³°¤Î³èư¤Ï¤Ê¤·¡£
¼±ÊÌÊýË¡:´¶À÷¥Õ¥¡¥¤¥ë¤Ï1228¥Ð¥¤¥ÈÁý²Ã¤¹¤ë¡£
È÷¡¡¡¡¹Í:
̾¡¡¡¡¾Î:PIXEL
ÊÌ¡¡¡¡Ì¾:AMSTRAD
ʬ¡¡¡¡Îà:¥Õ¥¡¥¤¥ë´¶À÷·¿
ÂС¡¡¡¾Ý:.COM
ȯ¾ÍÃÏ:¥®¥ê¥·¥ã
ȯ¸«Æü:ÉÔÌÀ
¾Ü¡¡¡¡ºÙ:¡Ý¡¡´¶À÷¥Õ¥¡¥¤¥ë¼Â¹Ô»þ¤Ë¥«¥ì¥ó¥È¥Ç¥£¥ì¥¯¥È
¥êÆâ¤Î¤¹¤Ù¤Æ¤Î̤´¶À÷¥Õ¥¡¥¤¥ë¤Ë´¶À÷¤¹¤ë¡£
¡Ý¡¡¥¦¥¤¥ë¥¹¥³¡¼¥ÉÆâ¤Ë°Ê²¼¤Îʸ»úÎ󤬴ޤޤì¤ë:
"*.com"
"WB"
´¶À÷¤·¤Æ¤â¥Õ¥¡¥¤¥ë¤ÎÆüÉդϹ¹¿·¤µ¤ì¤Ê¤¤¡£¤·¤«¤·»þ¹ï¤Ï
°Å¹æ²½¤ËɬÍפʤ¿¤á¹¹¿·¤µ¤ì¤ë¡£
È÷¡¡¡¡¹Í:
̾¡¡¡¡¾Î:PIXEL-1
ÊÌ¡¡¡¡Ì¾:AMSTRAD, CANCER, LUZ (ADVERT), NOCARGAR,
PIXEL YEAR, PIXEL-####, POLISH PIXEL, ROSEN
ʬ¡¡¡¡Îà:¥Õ¥¡¥¤¥ë´¶À÷·¿
ÂС¡¡¡¾Ý:.COM
¥¦¥¤¥ë¥¹¥µ¥¤¥º:131-905+ bytes(¾¤Îºî¼Ô¤Î²þÊѤˤè¤ê¡¢
¥µ¥¤¥º¤Ï¤Þ¤Á¤Þ¤Á)
ȯ¾ÍÃÏ:¥®¥ê¥·¥¢¡¢¥Ö¥ë¥¬¥ê¥¢
ȯ¸«Æü:ÉÔÌÀ
¾Ü¡¡¡¡ºÙ:¤â¤È¤â¤È¤³¤Î¥¦¥¤¥ë¥¹¤Î¥½¡¼¥¹¡¦¥³¡¼¥É¤Ï¡È
Pixel¡É¤È¤¤¤¦¥®¥ê¥·¥ã¤Î»¨»ï¤Ç¸ø³«¡£
¼Â¹Ô¤·¤¿¾ì¹ç¤Ë³ÈÄ¥»Ò COM¤Î½ã¿è¤Ê¥¦¥¤¥ë¥¹¡¦¥³¡¼¥É¤òºî
¤ëBASIC¥×¥í¥°¥é¥à¤Ç¤¢¤ë¤³¤È¤¬ÆÃħ¡£
¥Ö¥ë¥¬¥ê¥¢¤ËÅϤ꾤ÎÊ£¿ô¤Îºî¼Ô¤¬²þÊѤËÀ®¸ù¤¹¤ë¡£¤â¤È
¤Î¥¦¥¤¥ë¥¹ºî¼Ô¤¬Pixel¤Î¼¡¹æ¤Ë
¶î½ü¥×¥í¥°¥é¥à¤òȯɽ¤·¤¿Ä¾ÀÜ´¶À÷·¿¥¦¥¤¥ë¥¹¤Ç¤¢¤ë¤¬¡¢
´¶À÷¤¹¤ëÁ°¤Ë°¡¼ï¤Î¼±ÊÌÍÑ¥³¡¼¥É¤¬
¤¢¤ë¤«¤É¤¦¤«¤ò¥Á¥§¥Ã¥¯¤¹¤ë¡£¸«¤Ä¤«¤é¤Ê¤¤¤È¡¢½É¼ç¥Õ¥¡
¥¤¥ë¤¬Æ±¼ï¤Î°¡¼ï¥¦¥¤¥ë¥¹¤Ë¤¹¤Ç¤Ë
´¶À÷¤·¤Æ¤¤¤Æ¤â¥Õ¥¡¥¤¥ë¤ËºÆ´¶À÷¤¹¤ë¡£¤³¤ì¤Ï´¶À÷¥Á¥§¥Ã
¥¯µ¡Ç½¤¬ÃÕÀۤʤ¿¤á¤À¤¬¡¢
´¶À÷¥³¡¼¥É¤òºÇ¾¯¤Ë¤¹¤ë¤¿¤á¤Ë¤³¤ÎÉôʬ¤¬µ¾À·¤Ë¤µ¤ì¤¿¤«
¤é¤Ç¤â¤¢¤ë¡£
¾ì¹ç¤Ë¤è¤Ã¤Æ¤Ï¡¢Æ±¤¸¥¦¥¤¥ë¥¹¤Î°¡¼ï¤¬¼¡¡¹¤È´¶À÷¤¹¤ë¤³
¤È¤â¤¢¤ëŽ¡
»³²:
£µ²óÌܤ˴¶À÷¤¹¤ë¤È¡¢50%¤Î³ÎΨ¤Ç¥ª¥ê¥¸¥Ê¥ë¡¦¥½¡¼¥¹¤Ï¼¡
¤Îʸ»úÎó¤òɽ¼¨¤¹¤ë¡£
¿·¤·¤¤½É¼ç¤Ë´¶À÷¤¹¤ë¤¿¤Ó¤Ë¡¢¥«¥¦¥ó¥È¤¹¤ëÆâÉô¥«¥¦¥ó¥¿
¡¼¤¬Â¸ºß¤¹¤ë¤â¤Î¤È»×¤ï¤ì¤ë¡£
¡±Program sick error: Call doctor or buy PIXEL
for cure description
°¡¼ï¤Ë¤Ï¡¢¥·¥¹¥Æ¥à¤Î¥Ï¥ó¥°¤òµ¯¤³¤·¤¿¤ê¥·¥¹¥Æ¥à¤Î¥É¥é
¥¤¥Ö£Á¤ËÁÞÆþ¤·¤¿3ËçÌܤÎFD¤Î
¥Õ¥©¡¼¥Þ¥Ã¥È¤ò¹Ô¤¦¤â¤Îޤ2²óÌܤÈ16²óÌܤ˰ʲ¼¤Î¥á¥Ã¥»
¡¼¥¸¤òɽ¼¨¤¹¤ë¤â¤Î¤Ê¤É¿¿ô¤¬¤¢¤ë¡£
¤³¤ì¤Ï¥¦¥¤¥ë¥¹¡¦¥³¡¼¥É¤¬¼Â¸³ÍѤȤ·¤Æ¹ÈϰϤ˹¤Þ¤Ã¤Æ
¤¤¤ë¤¿¤á¡£
¥á¥Ã¥»¡¼¥¸¤È¤·¤Æ¤Ï¼¡¤Î¤è¤¦¤Ê¤â¤Î¤¬¤¢¤ë¡£
¡¦322 En tu PC hay un virus RV1ޤ y sta es su quinta
generacion
¡¦322 Helloޤ John Mcafeeޤ please uprade me. Bests
regardsޤ Jean Luz
¡¦322 What a stupid you are ! ! ! ! ! ! ! ! !.
¡¦322 I love you so much ! ! ! - - Francis.
È÷¡¡¡¡¹Í:£´·î£±Æü°Ê¹ß¤Ëȯɤ¹¤ë°¡¼ï¤â¤¢¤ë
̾¡¡¡¡¾Î:PLAGUE
ʬ¡¡¡¡Îà:¥Õ¥¡¥¤¥ë´¶À÷·¿
ÂС¡¡¡¾Ý:.COM;.EXE;.SYS
¥¦¥¤¥ë¥¹¥µ¥¤¥º:591
¾Ü¡¡¡¡ºÙ:´¶À÷¤·¤¿¥×¥í¥°¥é¥à¤ò¼Â¹Ô¤¹¤ë¤È¡Ö¥á¥â¥êÉÔ
¡¢¡¢¡¢¡×¥á¥Ã¥»¡¼¥¸¤òɽ¼¨¤·¡¢Àµ¾ï¤Ëưºî¤·¤Ê¤¤¡£
´û¤Ë´¶À÷¤·¤¿¥Õ¥¡¥¤¥ë¤¬£¸¸Ä°Ê¾å¤¢¤ê¡¢´¶À÷¤¹¤Ù¤¥Õ¥¡¥¤
¥ë¤¬¤Ê¤¯¤Ê¤Ã¤Æ¤·¤Þ¤Ã¤¿¾ì¹ç¤Ï
°Ê²¼¤Î¥á¥Ã¥»¡¼¥¸¤òɽ¼¨¤¹¤ë:
¡ÖAutopsy indicates the cause of death was THE PLAGUE
Dedicated to the dudes atSHHS VIVE LE SHE_MAN!*¡×
¥á¥Ã¥»¡¼¥¸É½¼¨¸å¡¢¥«¥ì¥ó¥È¥É¥é¥¤¥Ö¤Î¥»¥¯¥¿¡¼¤ò¥é¥ó¥À
¥à¤Ë¾å½ñ¤¤·¤ÆÇ˲õ¤¹¤ë¡£
¤Þ¤¿¡¢AT¸ß´¹µ¡¤Ç¤Ï¥¡¼¤Î¥ê¥Ô¡¼¥È³«»Ï¤ò£±Éø塢¥ê¥Ô
¡¼¥È®ÅÙ¤ò£±Éã²Ê¸»ú¤ËÀßÄꤹ¤ë¡£
̾¡¡¡¡¾Î:PLAYCAP.EXE
ʬ¡¡¡¡Îà:¥È¥í¥¤¤ÎÌÚÇÏ·¿
ÂС¡¡¡¾Ý:¤Ê¤·
¥¦¥¤¥ë¥¹¥µ¥¤¥º:N/A
ȯ¾ÍÃÏ:ÉÔÌÀ
ȯ¸«Æü:1997/10
¾Ü¡¡¡¡ºÙ:-¡¡¤³¤Î¥¦¥¤¥ë¥¹¥×¥í¥°¥é¥à¤Ïޤ¼Â¹Ô¤µ¤ì¤ë¤È¥Ç
¥£¥ì¥¯¥È¥êÆâ¤Ë"CAPTURE.CAP"¤È¤¤¤¦¥Õ¥¡¥¤¥ë¤¬¤Ê¤¤¤«Ãµ¤¹
Ž¡
¥Õ¥¡¥¤¥ë¤¬¤Ê¤±¤ì¤Ðޤ¤³¤Î¥×¥í¥°¥é¥à¤Ï¤Ê¤Ë¤â¤·¤Ê¤¤Ž¡
¤â¤·¤³¤Î̾Á°¤Î¥Õ¥¡¥¤¥ë¤¬¥Ç¥£¥ì¥¯¥È¥ê¤Ë¸ºß¤¹¤ì¤Ðޤ
PLAYCAP.EXE¤Ï¤½¤Î¥Õ¥¡¥¤¥ë¤Î¥³¡¼¥É¤ò
1¥Ð¥¤¥È¤º¤ÄÆÉ¤ß¹þ¤ß¥á¥â¤ê¤Ë³ÊǼ¤¹¤ëŽ¡
ºÇ¸å¤Þ¤ÇÆÉ¤ß¹þ¤ó¤À¤éޤ¤³¤Î1bytes¤º¤ÄASCIIʸ»ú¥³¡¼¥É¤Ç
¥Ç¥£¥¹¥×¥ì¥¤¤Ëɽ¼¨¤µ¤»¤ë¡£
»³²:
-¡¡Ç˲õŪ¹Ôư¤Ï¤Ê¤·Ž¡
È÷¡¡¡¡¹Í:-¡¡" PLAYCAP.EXE" ¤Ï"CREATE.COM ""KBCAP.COM
"¤È¥¦¥¤¥ë¥¹¤È´ØÏ¢¤¬¤¢¤ë¤â¤Î¤È¹Í¤¨¤é¤ì¤ëŽ¡
¤³¤ì¤é¤Î¥¦¥¤¥ë¥¹¤Ï¤¹¤Ù¤ÆŽ¢CAPTURE.CAPŽ£¥Õ¥¡¥¤¥ë¤òɬÍפÈ
¤¹¤ëŽ¡ "CREATE.COM"¤ÏŽ¢CAPTURE.CAPŽ£¥Õ¥¡¥¤¥ë¤òºî¤êޤ"
KBCAP.COM"¤ÏŽ¢CAPTURE.CAPŽ£¥Õ¥¡¥¤¥ë¤Ë¤´¤ß¥³¡¼¥É¤òÉÕ¤±²Ã
¤¨Ž¤" PLAYCAP.EXE"¤ÏCAPTURE.CAP¥Õ¥¡¥¤¥ë¤Î
ÆâÍÆ¤òɽ¼¨¤µ¤»¤ë¡£
̾¡¡¡¡¾Î:POGUE
ʬ¡¡¡¡Îà:¥Õ¥¡¥¤¥ë´¶À÷·¿
ÂС¡¡¡¾Ý:.COM
¥¦¥¤¥ë¥¹¥µ¥¤¥º:2973¡Á3850¥Ð¥¤¥È
ȯ¾ÍÃÏ:ŽÌŽÞŽÙ޶ŽÞިޱ
ȯ¸«Æü:1992/01
¾Ü¡¡¡¡ºÙ:´¶À÷ÊýË¡:
¡Ý´¶À÷¥Õ¥¡¥¤¥ë¤ò¼Â¹Ô¤¹¤ë¤È¡¤¥·¥¹¥Æ¥à¥á¥â¥ê¾å°Ì¡¤DOS¤Î
640K¶³¦²¼¤Ë¾ïÃó¤·¡¢³ä¤ê¹þ¤ßÈÖ¹æ1Ch¤È21h¤Ë
¥Õ¥Ã¥¯¤ò³Ý¤±¤ë¡£¾ïÃó¸å¡¢DOS¤ÎCHKDSK¤ò»ÈÍѤ¹¤ë¤È¥È¡Ý¥¿
¥ë¥·¥¹¥Æ¥à¥á¥â¥ê¤È»ÈÍѲÄǽ¤Ê¥Õ¥ê¡Ý¥á¥â¥ê¤¬
9728byte¸º¾¯¤·¤Æ¤¤¤ë¤Î¤¬³Îǧ¤Ç¤¤ë¡£
¡Ý¾ïÃó¸å¡¤¼Â¹Ô¡¢¥ª¡¼¥×¥ó¤Þ¤¿¤Ï¥³¥Ô¡¼¤·¤¿¥Õ¥¡¥¤¥ë¤ÎºÇ
¸å¤Ë¥¦¥¤¥ë¥¹¥³¡Ý¥É¤òÄɲ䷤ƴ¶À÷¤¹¤ë¡£
¥³¥Ô¡¼¤Î¾ì¹ç¡¢¥³¥Ô¡¼¸µ¤È¥³¥Ô¡¼Àè¤ÎξÊý¤Î¥Õ¥¡¥¤¥ë¤Ë´¶
À÷¤¹¤ë¡£
¤¿¤À¤·¡¢"COM"¤Î3ʸ»ú¤Ç»Ï¤Þ¤ë.COM¥Õ¥¡¥¤¥ë¤Ë¤Ï´¶À÷¤·¤Ê
¤¤¡£¤³¤ì¤Ï¥¦¥¤¥ë¥¹¤¬COMMAND.COM¤Ø¤Î
´¶À÷¤ò²óÈò¤¹¤ë¤¿¤á¤Ç¤¢¤ë¡£´¶À÷¥Õ¥¡¥¤¥ë¤Î¥¿¥¤¥à¥¹¥¿¥ó
¥×¤Ï¹¹¿·¤µ¤ì¤Ê¤¤¡£
¡Ý512¡¢Dark Avenger¡¢Seventh Son¡¢YankeeDoodle¤Ê¤É£´
¼ï¤Î°Û¤Ê¤ë¥¦¥¤¥ë¥¹¤Î¥¦¥¤¥ë¥¹¥³¡¼¥É¤Î
°ìÉô¤ò»ý¤Ä¡£
¡ÝÊ£»¨¤Ê°Å¹æ²½¥á¥«¥Ë¥º¥à¤ò»ÈÍѤ¹¤ë¤¿¤á¡¢¸¡º÷¤Ë¤Ï¥¢¥ë
¥´¥ê¥º¥àŪ¤Ê¥¢¥×¥í¡¼¥Á¤¬É¬Íס£
»þ¡¹¡¢¤³¤Î¥¦¥¤¥ë¥¹¤Ï¥¦¥¤¥ë¥¹¥³¡¼¥É¤ò°Å¹æ²½¤·¤Ê¤¤¤Þ¤Þ
¥Õ¥¡¥¤¥ë¤Ë´¶À÷¤¹¤ë¤³¤È¤¬¤¢¤ë¡£
¤½¤Î·ë²Ì¡¢¤³¤Î¥¦¥¤¥ë¥¹¤Î¸µ¤Ë¤Ê¤Ã¤¿¾åµ¤Î£´¼ï¤Î¥¦¥¤¥ë
¥¹¤Î¤É¤ì¤«¤Ë´¶À÷¤·¤¿¤È¸íǧ¤µ¤ì¤ë¾ì¹ç¤¬¤¢¤ëŽ¡
¡ÝÄ̾Pogue¥¦¥¤¥ë¥¹¤Ï´¶À÷¥Õ¥¡¥¤¥ë¤ËÂФ·¤Æ¼«¤é¤ÎÏĶÊ
°Å¹æ²½¥á¥«¥Ë¥º¥à¤ò»ÈÍѤ·¤Æ¼«Ê¬¤ò°Å¹æ²½¤¹¤ë¡£
¤³¤¦¤·¤¿¥Õ¥¡¥¤¥ë¤Ç¤Ï¡¢¥¦¥¤¥ë¥¹¥³¡¼¥ÉÆâ¤Ëʸ»úÎó¤Ï°ì
ÀÚ¸«¤¨¤Ê¤¤¡£
¤³¤Î¥¦¥¤¥ë¥¹¤Ï¥¦¥¤¥ë¥¹¥³¡¼¥É¤¬°Å¹æ²½¤µ¤ì¤Ê¤¤¤Þ¤Þ¥Õ
¥¡¥¤¥ë¤Ë´¶À÷¤¹¤ë¤³¤È¤¬¤¢¤ë¡£
¤³¤Î¾ì¹ç¡¢°Ê²¼¤Îʸ»úÎ󤬸«¤é¤ì¤ë¡£
"Pogue Mahone!" - or - "Pgoue
Mahone!"
"TNX2DAV"
¡Ý°Å¹æ²½¤µ¤ì¤Æ¤¤¤Ê¤¤´¶À÷¥Õ¥¡¥¤¥ë¤ä¥·¥¹¥Æ¥àÃæ¤Î¥¦¥¤¥ë
¥¹¤Ï¡¢¤³¤Î¥¦¥¤¥ë¥¹¤Î¥ª¥ê¥¸¥Ê¥ë¤Î
£´¼ï¤Î¥¦¥¤¥ë¥¹¤È¸íǧ¤µ¤ì¤ë¾ì¹ç¤¬¤¢¤ë¡£
ȯÉÂ:
¡Ý¥·¥¹¥Æ¥à¥¯¥í¥Ã¥¯¤¬08:00¤«¤é09:00¤Î´Ö¤Ë¥¹¥Ô¡¼¥«¤«¤é
²»³Ú¤ò±éÁÕ¤¹¤ë¡£
È÷¡¡¡¡¹Í:¡ÝDAME¡¢Groove»²¾È¡£
̾¡¡¡¡¾Î:POJER
ʬ¡¡¡¡Îà:¥Õ¥¡¥¤¥ë´¶À÷·¿
ÂС¡¡¡¾Ý:.COM;.EXE
¥¦¥¤¥ë¥¹¥µ¥¤¥º:1919¥Ð¥¤¥È
ȯ¾ÍÃÏ:ÉÔÌÀ
ȯ¸«Æü:ÉÔÌÀ
¾Ü¡¡¡¡ºÙ:´¶À÷ÊýË¡:
1¡Ë¥á¥â¥ê¤Ë¾ïÃ󤷤Ƥ¤¤Ê¤±¤ì¤Ð¡¢ºÇ¾å°Ì¥á¥â¥ê¤Ë¾ïÃó¤¹
¤ë¡£
¾ïÃó¸å¡¢¥ª¥ê¥¸¥Ê¥ë¥Õ¥¡¥¤¥ë¤ò¼Â¹Ô¤¹¤ë¡£
2¡Ë¥á¥â¥ê¤Ë¾ïÃ󤷤Ƥ¤¤ì¤Ð¡¢¤½¤Î¤Þ¤Þ¥ª¥ê¥¸¥Ê¥ë¥Õ¥¡¥¤¥ë
¤ò¼Â¹Ô¤¹¤ë¡£
3¡Ë̤´¶À÷¤Î¥Õ¥¡¥¤¥ë¤¬¼Â¹Ô¤µ¤ì¤ëÅ٤˴¶À÷¤¹¤ë¡£
Ç˲õ:´¶À÷¡¢Áý¿£°Ê³°¤Î³èư¤Ï¤Ê¤·¡£
¼±ÊÌÊýË¡:´¶À÷¥Õ¥¡¥¤¥ë¤Ï1919¥Ð¥¤¥ÈÁý²Ã¤¹¤ë¡£
»ÈÍѳä¤ê¹þ¤ßÌ¿Îá:INT 21h¡¢INT 24h
È÷¡¡¡¡¹Í:¥á¥Ç¥£¥¢¤Ê¤É¤Ë¥é¥¤¥È¥×¥í¥Æ¥¯¥È¡Ê½ñ¤¹þ¤ß¶Ø
»ß½èÍý¡Ë¤¬»Ü¤µ¤ì¤Æ¤¤¤ë¾ì¹ç¤Ç¤â¡¢
¥×¥í¥°¥é¥à¼Â¹Ô»þ¤Ë"½ñ¤¹þ¤ßÉÔ²Ä"¤È¤¤¤¦°ÕÌ£¤Î¥¨¥é¡¼¥á
¥Ã¥»¡¼¥¸¤òɽ¼¨¤·¤Ê¤¤¡£
̾¡¡¡¡¾Î:POSSESSED
ÊÌ¡¡¡¡Ì¾:POSS
ʬ¡¡¡¡Îà:¥Õ¥¡¥¤¥ë´¶À÷·¿
ÂС¡¡¡¾Ý:.COM;.EXE
¥¦¥¤¥ë¥¹¥µ¥¤¥º:2367¡Á2446¥Ð¥¤¥È
ȯ¾ÍÃÏ:ŽÆŽŽ°Ž¼ŽÞްŽ×ŽÝŽÄŽÞ
ȯ¸«Æü:ÉÔÌÀ
¾Ü¡¡¡¡ºÙ:¡Ý¡¡´¶À÷¥Õ¥¡¥¤¥ë¼Â¹Ô»þ¤Ë¥á¥â¥ê¤Ë¾ïÃ󤷤Ƥ¤
¤Ê¤±¤ì¤Ð¥á¥â¥ê¾å°Ì¤Ë¾ïÃó¤·¡¢¥ª¥ê¥¸¥Ê¥ë¥×¥í¥°¥é¥à¤ò¼Â
¹Ô¤¹¤ë¡£
¡Ý¡¡Ì¤´¶À÷¥Õ¥¡¥¤¥ë¤ò¼Â¹Ô¤¹¤ëÅ٤˴¶À÷¤¹¤ë¡£
¡Ý¡¡¥¦¥¤¥ë¥¹¥³¡¼¥ÉÆâ¤Ë°Ê²¼¤Îʸ»úÎó¤ò´Þ¤à:
POSSESSED! Bwa! ha! ha! ha! ha!Authod:
JonJon Gumba of AdU
¡Ý¡¡¥á¥â¥ê¾ïÃó¸å¤Ë¥Õ¥¡¥¤¥ë¤òºï½ü¤¹¤ë¾ì¹ç¤¬¤¢¤ë¤È¸«¤é
¤ì¤ë¡£
¡Ý¡¡ÍÍ¡¹¤Ê¥µ¥¤¥º¤Î°¡¼ï¤¬¤¢¤ë¡£
È÷¡¡¡¡¹Í:
̾¡¡¡¡¾Î:PREDATOR.1063-C
ÊÌ¡¡¡¡Ì¾:PREDATOR VIRUS
ʬ¡¡¡¡Îà:¥Õ¥¡¥¤¥ë´¶À÷·¿
ÂС¡¡¡¾Ý:.COM
¥¦¥¤¥ë¥¹¥µ¥¤¥º:1063Byte
ȯ¸«Æü:Marchޤ 1993
¾Ü¡¡¡¡ºÙ:´¶À÷ÊýË¡:
¡Ý´¶À÷¥Õ¥¡¥¤¥ë¤ò¼Â¹Ô¤¹¤ë¤È¡¢¥á¥â¥ê¤¬´¶À÷¤·¤Æ¤¤¤ë¤«¤ò
¥Á¥§¥Ã¥¯¤·¤Æ¡¢´¶À÷¤·¤Æ¤¤¤ë¤È¤¤Ï
¸µ¥Õ¥¡¥¤¥ë¤Î¥×¥í¥°¥é¥à¼Â¹Ô¤ò³¤±¤ë¡£´¶À÷¤·¤Æ¤¤¤Ê¤¤¤È
¤¤Ïޤ¤Þ¤º¥¦¥¤¥ë¥¹¥³¡¼¥É¤ò¼Â¹Ô¤·¥á¥â¥ê¤Ë
¾ïÃó¤·¤¿¸å¡¢¥×¥í¥¯¥é¥à¤ò³¤±¤ë¡£
¡Ý¾ïÃ󤷤Ƥ¤¤ë¾õÂ֤ǡ¢.COM¥Õ¥¡¥¤¥ë¤Ë¥¢¥¯¥»¥¹¤¹¤ë¤È¡¢
¤½¤Î¥Õ¥¡¥¤¥ë¤Ë´¶À÷¤¹¤ëŽ¡
»³²:
¡Ý´¶À÷¤µ¤ì¤¿¥Õ¥¡¥¤¥ë¤Ï¥µ¥¤¥º¤¬1063ByteÁý¤¨¤ë¡£
È÷¡¡¡¡¹Í:¥¦¥¤¥ë¥¹¤ÎÃæ¤Ë¤Ï¡¢¼¡¤Îʸ»úÎó¤¬´Þ¤Þ¤ì¤Æ¤¤¤Þ
¤¹¡£
Predator virus (c)
Mar. 93
In memory of all those who were killed... Wookies ain
¡Çt the only ones thatdrop! Priest
̾¡¡¡¡¾Î:PRIME
ʬ¡¡¡¡Îà:¥Õ¥¡¥¤¥ë´¶À÷·¿
ÂС¡¡¡¾Ý:.COM;.C*
¥¦¥¤¥ë¥¹¥µ¥¤¥º:580¥Ð¥¤¥È
ȯ¾ÍÃÏ:ÉÔÌÀ
ȯ¸«Æü:ÉÔÌÀ
¾Ü¡¡¡¡ºÙ:¤Þ¤º¡¢¥¦¥¤¥ë¥¹¤Ï¼«¿È¤Î¥³¡¼¥É¤ò°Å¹æ²òÆÉ¤¹
¤ë¡£
¥·¥¹¥Æ¥à¤ÎÆüÉÕ¤¬³Æ·î1Æü¤Ç¤¢¤ì¤Ð¥á¥Ã¥»¡¼¥¸¤òɽ¼¨¤·¤Æ¡¢
²èÌ̤òº¸¤«¤é±¦¤Ø°ì²ó²óž¤µ¤»¤ë¡£
ÆüÉÕ¤¬1Æü¤Ç¤¢¤ë¤«¤Ë´Ø¤ï¤é¤º¡¢¥«¥ì¥ó¥È¥Ç¥£¥ì¥¯¥È¥êÆâ¤Î
̤´¶À÷¥Õ¥¡¥¤¥ë¤òõ¤·½Ð¤·¤Æ´¶À÷¤·¡¢
¤½¤Î¸å½ªÎ»¤¹¤ë¡£
´¶À÷ÊýË¡:
1¡Ë¥ª¥ê¥¸¥Ê¥ë¥×¥í¥°¥é¥à¤Î¥³¡¼¥É¤ò°Å¹æ²½¤¹¤ë¡£
2¡Ë¥·¥¹¥Æ¥à¤Î»þ¹ï¤òÄ´¤Ù¡¢¤³¤Î¾ðÊó¤ò¥¦¥¤¥ë¥¹¥³¡¼¥É¤È°ì
½ï¤Ë°Å¹æ²½¤¹¤ë¡£
3¡Ë¥ª¥ê¥¸¥Ê¥ë¥Õ¥¡¥¤¥ë¤ÎËöÈø¤Ë¥¦¥¤¥ë¥¹¥³¡¼¥É¤òÄɲä¹
¤ë¡£
»ÈÍѳä¤ê¹þ¤ßÌ¿Îá:INT 01h¡¢INT 03h¡¢INT 24h
Ç˲õ:´¶À÷¤¹¤ë¤È¡¢¥ª¥ê¥¸¥Ê¥ë¥×¥í¥°¥é¥à¤ò°Å¹æ²½¤·¤Æ¼Â
¹Ô¤Ç¤¤Ê¤¯¤¹¤ë¡£
È÷¡¡¡¡¹Í:1¡Ë¥¦¥¤¥ë¥¹¼«ÂΤ˷ç´Ù¤¬¤¢¤ë¤¿¤á¡¢°Ê²¼¤Î¸½¾Ý
¤¬µ¯¤³¤ë¡£
¥«¥ì¥ó¥È¥Ç¥£¥ì¥¯¥È¥ê¤Ë¤¢¤ë *.C* ¥Õ¥¡¥¤¥ë¤¬´û¤Ë´¶À÷
¤·¤Æ¤¤¤ë¾õÂÖ¤Ç
¥¦¥¤¥ë¥¹¥×¥í¥°¥é¥à¤¬¼Â¹Ô¤µ¤ì¤ë¤È¡¢¥Õ¥¡¥¤¥ë¤ÏºÆ´¶À÷
¤»¤º¡¢¥·¥¹¥Æ¥à¤¬¥Ï¥ó¥°¤¹¤ë¡£
¤³¤ì¤Ï¾¤Î¾õ¶·¤Ç¤ÏȯÀ¸¤·¤Ê¤¤¡£
2¡Ë´¶À÷¥Õ¥¡¥¤¥ë¤ÎÆüÉդȻþ¹ï¤ÏÊѹ¹¤µ¤ì¤Ê¤¤¡£
̾¡¡¡¡¾Î:PRINT_MONSTER
ʬ¡¡¡¡Îà:¥Õ¥¡¥¤¥ë´¶À÷·¿
ÂС¡¡¡¾Ý:.COM
¥¦¥¤¥ë¥¹¥µ¥¤¥º:853¥Ð¥¤¥È
ȯ¾ÍÃÏ:ÉÔÌÀ
ȯ¸«Æü:ÉÔÌÀ
¾Ü¡¡¡¡ºÙ:´¶À÷ÊýË¡:
¾ïÃó¸å¡¢¥«¥ì¥ó¥È¥Ç¥£¥ì¥¯¥È¥êÆâ¤Ë¤¢¤ë64ޤ000¥Ð¥¤¥È̤Ëþ
¤Î̤´¶À÷.COM¥Õ¥¡¥¤¥ë¤Ë´¶À÷¤·¡¢
¥ª¥ê¥¸¥Ê¥ë¥ë¡¼¥Á¥ó¤ò¼Â¹Ô¤¹¤ë¡£
¡Ê¥Õ¥¡¥¤¥ë½ñ¤¹þ¤ß»þ¤Ë¼«Ê¬¤Îº¯Àפò±£¤¹¡£¡Ë
»ÈÍѳä¤ê¹þ¤ßÌ¿Îá:INT 17h
Ç˲õ:°õºþ½èÍý¤Ë¥¨¥é¡¼¤¬À¸¤¸¤ë¡£
È÷¹Í:´¶À÷¥Õ¥¡¥¤¥ë¤ÎÆüÉդȻþ¹ï¤ÏÊѹ¹¤µ¤ì¤Ê¤¤¡£
¼±ÊÌÊýË¡:´¶À÷¥Õ¥¡¥¤¥ë¤Ï853¥Ð¥¤¥ÈÁý²Ã¤¹¤ë¡£
È÷¡¡¡¡¹Í:
̾¡¡¡¡¾Î:PRINT_SCREEN_BOT
ÊÌ¡¡¡¡Ì¾:HA, HASITA, J&M, JIMI
ʬ¡¡¡¡Îà:¥·¥¹¥Æ¥àÎΰ贶À÷·¿
ÂС¡¡¡¾Ý:FD:¥Ö¡¼¥È¥»¥¯¥¿;ŽÏ޽ŽÀްŽÌŽÞްŽÄŽÚŽºŽ°ŽÄŽÞ
¥¦¥¤¥ë¥¹¥µ¥¤¥º:N/A
ȯ¾ÍÃÏ:¥è¡¼¥í¥Ã¥Ñ
ȯ¸«Æü:1994/½Õ
¾Ü¡¡¡¡ºÙ:´¶À÷ÊýË¡:
¡Ý¤³¤Î¥¦¥¤¥ë¥¹¤Ë´¶À÷¤·¤¿¥Õ¥í¥Ã¥Ô¡¼¥Ç¥£¥¹¥¯¤Ç¥Þ¥·¥ó¤Î
µ¯Æ°Æ°ºî¤ò¹Ô¤¦¤È¥Ï¡¼¥É¥Ç¥£¥¹¥¯¤Î
¥·¥¹¥Æ¥àÎΰè¡Ê¥Þ¥¹¥¿¡¼¥Ö¡¼¥È¥ì¥³¡¼¥É¡Ë¤Ë´¶À÷¤¹¤ë¡£
¡Ý¤³¤Î¥¦¥¤¥ë¥¹¤Ë´¶À÷¤·¤¿¥Ï¡¼¥É¥Ç¥£¥¹¥¯¤Ç¥Þ¥·¥ó¤òµ¯Æ°
¤¹¤ë¤È¡¢¥á¥â¥ê¡¼¤Ë¾ïÃ󤷤ƥե¡¥¤¥ë¤Î
Æþ½ÐÎϤò´Æ»ë¤¹¤ë¡£¤½¤Î¸å¡¢½ñ¤¹þ¤ß²Äǽ¤Ê¥Õ¥í¥Ã¥Ô¡¼¥Ç
¥£¥¹¥¯¤Ë¥¢¥¯¥»¥¹¤¹¤ë¤È¡¢¤½¤Î¥Ç¥£¥¹¥¯¤Î
¥Ö¡¼¥È¥»¥¯¥¿¤Ë´¶À÷¤¹¤ëŽ¡
»³²:
-¡¡11·î15Æü¤Ë¥Þ¥·¥ó¤òµ¯Æ°¤¹¤ë¤Èޤ¥Ï¡¼¥É¥Ç¥£¥¹¥¯¥É¥é¥¤
¥Ö¤Î1ÈÖÌܤΥȥé¥Ã¥¯¤ò¥Õ¥©¡¼¥Þ¥Ã¥È¤·¤Æ¤·¤Þ¤¦Ž¡
È÷¡¡¡¡¹Í:-¡¡¤³¤Î¥¦¥¤¥ë¥¹¤Ï¥ª¥ê¥¸¥Ê¥ë¤Î¥Þ¥¹¥¿¡¼¥Ö¡¼¥È
¥ì¥³¡¼¥É¤ò¥·¥ê¥ó¥À¡¼0ޤ¥µ¥¤¥É0ޤ¥»¥¯¥¿¡¼6¤Ë
Êݸ¤¹¤ëŽ¡(¥Õ¥í¥Ã¥Ô¡¼¥Ç¥£¥¹¥¯¤Î¾ì¹ç¤Ïޤ¥·¥ê¥ó¥À¡¼0ޤ¥µ¥¤
¥É6ޤ¥»¥¯¥¿¡¼14)
̾¡¡¡¡¾Î:PROTO-T
ʬ¡¡¡¡Îà:¥Õ¥¡¥¤¥ë´¶À÷·¿
ÂС¡¡¡¾Ý:.COM
¥¦¥¤¥ë¥¹¥µ¥¤¥º:695¥Ð¥¤¥È¡Ê.COM¡Ë
ȯ¾ÍÃÏ:ÉÔÌÀ
ȯ¸«Æü:ÉÔÌÀ
¾Ü¡¡¡¡ºÙ:´¶À÷ÊýË¡:
1¡Ë¥á¥â¥ê¤Ë¾ïÃ󤷤Ƥ¤¤Ê¤±¤ì¤Ð¾ïÃ󤹤롣
2¡Ë¾ïÃó¸å¡¢¥ª¥ê¥¸¥Ê¥ë¥Õ¥¡¥¤¥ë¤ò¼Â¹Ô¤¹¤ë¡£
3¡Ë¥á¥â¥ê¤Ë¾ïÃó¤·¡¢Ì¤´¶À÷¤Î¥Õ¥¡¥¤¥ë¤¬¼Â¹Ô¤µ¤ì¤ëÅ٤˴¶
À÷¤¹¤ë¡£
Ç˲õ:´¶À÷¡¢Áý¿£°Ê³°¤Î³èư¤Ï¤Ê¤·¡£
¼±ÊÌÊýË¡:´¶À÷¥Õ¥¡¥¤¥ë¤Ï695¥Ð¥¤¥ÈÁý²Ã¤¹¤ë¡£
È÷¡¡¡¡¹Í:¥á¥Ç¥£¥¢¤Ê¤É¤Ë¥é¥¤¥È¥×¥í¥Æ¥¯¥È¡Ê½ñ¤¹þ¤ß¶Ø
»ß½èÍý¡Ë¤¬»Ü¤µ¤ì¤Æ¤¤¤ë¾ì¹ç¡¢
¥×¥í¥°¥é¥à¼Â¹Ô»þ¤Ë"½ñ¤¹þ¤ßÉÔ²Ä"¤È¤¤¤¦°ÕÌ£¤Î¥¨¥é¡¼¥á
¥Ã¥»¡¼¥¸¤òɽ¼¨¤¹¤ë¡£
̾¡¡¡¡¾Î:PROTOVIR
ʬ¡¡¡¡Îà:¥Õ¥¡¥¤¥ë´¶À÷·¿
ÂС¡¡¡¾Ý:.COM
¥¦¥¤¥ë¥¹¥µ¥¤¥º:730¥Ð¥¤¥È(ŽÌާ޲ŽÙ)¡¢270¥Ð¥¤¥È(¥á¥â¥ê)
ȯ¾ÍÃÏ:ÉÔÌÀ
ȯ¸«Æü:ÉÔÌÀ
¾Ü¡¡¡¡ºÙ:´¶À÷ÊýË¡:
̤´¶À÷.COM¥Õ¥¡¥¤¥ë¤ò¼Â¹Ô¤¹¤ë¤È´¶À÷¤¹¤ë¡£
´¶À÷¥Õ¥¡¥¤¥ë¤Ï730¥Ð¥¤¥ÈÁý²Ã¤·¡¢¥Õ¥¡¥¤¥ëËöÈø¤Ë¥¦¥¤¥ë¥¹
¥³¡¼¥É¤òÉÕÃ夵¤»¤ë¡£
¥Õ¥¡¥¤¥ë¤ÎÀèÆ¬7¥Ð¥¤¥È¤òÊѹ¹¤·¤Æ¥¦¥¤¥ë¥¹¥³¡¼¥É¤Ë¥¸¥ã¥ó
¥×¤¹¤ë¡£
¥ª¥ê¥¸¥Ê¥ë¤ÎÀèÆ¬7¥Ð¥¤¥È¤ò´¶À÷¥Õ¥¡¥¤¥ë¤ÎËöÈø¤ËÊݸ¤¹
¤ë¡£
Ç˲õ:´¶À÷¥Õ¥¡¥¤¥ë¤ÎÂ礤µ¤¬Áý²Ã¤·¡¢»ÈÍѲÄǽ¤Ê¥á¥â¥ê
¤¬¸º¾¯¤¹¤ë¡£
ÆÃħ:»ÈÍѲÄǽ¤Ê¶õ¤¥á¥â¥ê¤¬720¥Ð¥¤¥È¸º¾¯¤¹¤ë¡£
»ÈÍѳä¤ê¹þ¤ßÌ¿Îá:INT 21h
È÷¡¡¡¡¹Í:
̾¡¡¡¡¾Î:PRUDENTS
ÊÌ¡¡¡¡Ì¾:1210
ʬ¡¡¡¡Îà:¥Õ¥¡¥¤¥ë´¶À÷·¿
ÂС¡¡¡¾Ý:.EXE
¥¦¥¤¥ë¥¹¥µ¥¤¥º:1210¥Ð¥¤¥È¡Ê.EXE¡Ë
ȯ¾ÍÃÏ:ÉÔÌÀ
ȯ¸«Æü:ÉÔÌÀ
¾Ü¡¡¡¡ºÙ:´¶À÷ÊýË¡:
1¡Ë¥á¥â¥ê¤Ë¾ïÃ󤷤Ƥ¤¤Ê¤±¤ì¤Ð¾ïÃ󤹤롣
2¡Ë¾ïÃó¸å¡¢¥ª¥ê¥¸¥Ê¥ë¥Õ¥¡¥¤¥ë¤ò¼Â¹Ô¤¹¤ë¡£
3¡Ë¥á¥â¥ê¤Ë¾ïÃó¤·¡¢Ì¤´¶À÷¤Î¥Õ¥¡¥¤¥ë¤¬¼Â¹Ô¤µ¤ì¤ëÅ٤˴¶
À÷¤¹¤ë¡£
.COM¥Õ¥¡¥¤¥ë¤Ë¤Ï´¶À÷¤·¤Ê¤¤¡£
Ç˲õ:¥ª¥ê¥¸¥Ê¥ë¥Õ¥¡¥¤¥ë¤ò¾å½ñ¤¤¹¤ë¡£
¼±ÊÌÊýË¡:¥·¥¹¥Æ¥à¤ÎÆüÉÕ¤¬5·î1¡Á4Æü¤Ç¤¢¤ì¤Ð¡¢ÉÑÈˤ˥Ç
¥£¥¹¥¯¤ò¥Á¥§¥Ã¥¯¤¹¤ë¡£
È÷¡¡¡¡¹Í:¥á¥Ç¥£¥¢¤Ê¤É¤Ë¥é¥¤¥È¥×¥í¥Æ¥¯¥È¡Ê½ñ¤¹þ¤ß¶Ø
»ß½èÍý¡Ë¤¬»Ü¤µ¤ì¤Æ¤¤¤ë¾ì¹ç¡¢
¥×¥í¥°¥é¥à¼Â¹Ô»þ¤Ë"½ñ¤¹þ¤ßÉÔ²Ä"¤È¤¤¤¦°ÕÌ£¤Î¥¨¥é¡¼¥á
¥Ã¥»¡¼¥¸¤òɽ¼¨¤¹¤ë¡£
̾¡¡¡¡¾Î:PS-MPC
ÊÌ¡¡¡¡Ì¾:SON_OF_PSMPC
ʬ¡¡¡¡Îà:¤½¤Î¾
ÂС¡¡¡¾Ý:command.com
¥¦¥¤¥ë¥¹¥µ¥¤¥º:ÆÃÄê¤Ç¤¤º
ȯ¾ÍÃÏ:ÉÔÌÀ
ȯ¸«Æü:ÉÔÌÀ
¾Ü¡¡¡¡ºÙ: PS-MPC¤Ï¥¦¥¤¥ë¥¹¤òºîÀ®¤¹¤ë¤¿¤á¤Î¥×¥í¥°¥é
¥à¡£
"PC-MPC A.CFG B.CFG..." ¤Î¤è¤¦¤ËÀßÄê¤ò¼Â¹Ô¤¹¤ë¤È¡¢"A.
ASM B.ASM..."¤Î¤è¤¦¤Ë
¥½¡¼¥¹¥Õ¥¡¥¤¥ë¤¬ºîÀ®¤µ¤ì¡¢¥³¥ó¥Ñ¥¤¥ë¡¢¥ê¥ó¥¯¤ò¹Ô¤¦¤³
¤È¤Ë¤è¤Ã¤Æ¥¦¥¤¥ë¥¹¤¬¤Ç¤¤ë¡£
À³Ê¾å¡¢Ìµ¿ô¤Î°¡¼ï¤¬Â¸ºß¤¹¤ëŽ¡
È÷¡¡¡¡¹Í:¥á¥Ç¥£¥¢¤Ê¤É¤Ë¥é¥¤¥È¥×¥í¥Æ¥¯¥È¡Ê½ñ¤¹þ¤ß¶Ø
»ß½èÍý¡Ë¤¬»Ü¤µ¤ì¤Æ¤¤¤ë¾ì¹ç¤Ç¤â¡¢
¥×¥í¥°¥é¥à¼Â¹Ô»þ¤Ë"½ñ¤¹þ¤ßÉÔ²Ä"¤È¤¤¤¦°ÕÌ£¤Î¥¨¥é¡¼¥á
¥Ã¥»¡¼¥¸¤òɽ¼¨¤·¤Ê¤¤¡£
ºîÀ®¤µ¤ì¤¿¥¦¥¤¥ë¥¹¤Ï"COMMAND.COM" ¤Ë´¶À÷¤·¤¿¤ê°Å¹æ²½
¤¹¤ë¤Ê¤É¤Î½¬À¤ò¤â¤Ä¡£
̾¡¡¡¡¾Î:PSV-354
ʬ¡¡¡¡Îà:¥Õ¥¡¥¤¥ë´¶À÷·¿
ÂС¡¡¡¾Ý:.COM
¥¦¥¤¥ë¥¹¥µ¥¤¥º:354¥Ð¥¤¥È
ȯ¾ÍÃÏ:ÉÔÌÀ
ȯ¸«Æü:ÉÔÌÀ
¾Ü¡¡¡¡ºÙ:´¶À÷ÊýË¡:
¤Þ¤º¡¢¥¦¥¤¥ë¥¹¤Ï¼«¿È¤Î¥³¡¼¥É¤ò°Å¹æ²òÆÉ¤¹¤ë¡£
´¶À÷²Äǽ¤Ê¥Õ¥¡¥¤¥ë¤¬¤¢¤ì¤Ð1¤Ä¤À¤±´¶À÷¤¹¤ë¡£
¤Ê¤±¤ì¤Ð¥ª¥ê¥¸¥Ê¥ë¥ë¡¼¥Á¥ó¤ËÌá¤ë¡£
¸¡º÷¥Ñ¥¹¤ÏPATH¤ËÀßÄꤵ¤ì¤¿Ä̤ꡣ
150¡Á65000¥Ð¥¤¥È¥µ¥¤¥º¤Î̤´¶À÷.COM¥Õ¥¡¥¤¥ë¤Ë´¶À÷¤¹
¤ë¡£
Ç˲õ:´¶À÷¡¢Áý¿£°Ê³°¤Î³èư¤Ï¤Ê¤·¡£
È÷¡¡¡¡¹Í:1¡Ë´¶À÷¥Õ¥¡¥¤¥ë¤ÎÆüÉդȻþ¹ï¤ÏÊѹ¹¤µ¤ì¤Ê¤¤¡£
2¡ËDOS 5.0¤ÎCOMMAND.COM¤Ë¤Ï´¶À÷¤·¤Ê¤¤¡£
̾¡¡¡¡¾Î:PSYCHO
ʬ¡¡¡¡Îà:¥Õ¥¡¥¤¥ë´¶À÷·¿
ÂС¡¡¡¾Ý:.COM;.EXE
¥¦¥¤¥ë¥¹¥µ¥¤¥º:ÊѲ½¤Ê¤·
ȯ¾ÍÃÏ:ÉÔÌÀ
ȯ¸«Æü:ÉÔÌÀ
¾Ü¡¡¡¡ºÙ:´¶À÷ÊýË¡:
1¡Ë¥«¥ì¥ó¥È¥Ç¥£¥ì¥¯¥È¥êÆâ¤Î.COM¤Þ¤¿¤Ï.EXE¥Õ¥¡¥¤¥ë¤òõ
¤·½Ð¤¹¡£
2¡Ë¤¹¤Ç¤Ë Psycho¥¦¥¤¥ë¥¹¤Ë´¶À÷¤·¤Æ¤¤¤ì¤Ð¾¤Î̤´¶À÷.
COM¤Þ¤¿¤Ï.EXE¥Õ¥¡¥¤¥ë¤òõ¤¹¡£
3¡Ë¥Ç¥£¥ì¥¯¥È¥êÆâ¤ÎÁ´¤Æ¤Î.EXE¤È.COM¥Õ¥¡¥¤¥ë¤Ë´¶À÷¤¹
¤ë¡£
Ç˲õ:¥ª¥ê¥¸¥Ê¥ë¥Õ¥¡¥¤¥ë¤ò¾å½ñ¤¤¹¤ë¤Î¤Ç¡¢¥Õ¥¡¥¤¥ë¥µ
¥¤¥º¤ÏÊѤï¤é¤Ê¤¤¡£
»ÈÍѳä¤ê¹þ¤ßÌ¿Îá:¤Ê¤·
È÷¡¡¡¡¹Í:¥á¥Ç¥£¥¢¤Ê¤É¤Ë¥é¥¤¥È¥×¥í¥Æ¥¯¥È¡Ê½ñ¤¹þ¤ß¶Ø
»ß½èÍý¡Ë¤¬»Ü¤µ¤ì¤Æ¤¤¤ë¾ì¹ç¡¢
¥×¥í¥°¥é¥à¼Â¹Ô»þ¤Ë"½ñ¤¹þ¤ßÉÔ²Ä"¤È¤¤¤¦°ÕÌ£¤Î¥¨¥é¡¼¥á
¥Ã¥»¡¼¥¸¤òɽ¼¨¤¹¤ë¡£