Verwolf Famil
Details
Verwolf Family
These are not dangerous(?) nonmemory resident parasitic polymorphic viruses. They search for EXE files and write themselves into the middle or to the end of the file. While infecting a file they trace and hook INT 13h and install themselves as device driver (I see not for what reason). Sometimes they leave the memory resident program that hooks INT 21h and triggers while opening some files. The viruses contain the text strings:
“Verwolf.3308″: My name is VERWOLF !
“Verwolf.3502″: My name is VERWOLF1 !
Related Posts