Paramount Virus - Amiga Virus Encyclopedia

VIRUS HELP TEAM




 ------------------------
 Amiga Virus Encyclopedia
 Paramount Virus
 ------------------------

    
====== Computer Virus Catalog 1.2: PARAMOUNT Virus (5-June-1990) ======
Entry...............: PARAMOUNT Virus
Alias(es)...........: BYTE WARRIOR II Virus
Virus Strain........: BYTE WARRIOR Virus
Virus detected when.: March 1989
              where.: Elmshorn, FRG
Classification......: system virus (bootblock), resident
Length of Virus.....: 1. length on storage medium: 1024 byte
                      2. length in RAM           : 1024 byte
--------------------- Preconditions -----------------------------------
Operating System(s).: AMIGA-DOS
Version/Release.....: 1.2/33.180
Computer model(s)...: AMIGA 500, AMIGA 1000, AMIGA 2000A, AMIGA 2000B
--------------------- Attributes --------------------------------------
Easy Identification.: typical text: bootblock: 'PSWC !!' 'PARAMOUNT
                         SOFTWORKS CREW 1988 : Greetings to Napoleon ,
                         Obelisk, Idefix, Asterix   Hamburg '
                         in memory: 'Virus detector by the mighty Byte
                         Warrior!!! Please, please, please don't install
                         this disk, coz I want to travel! Spread the
                         bootblock and the word!'
Type of infection...: self-identification method: ---
                      system infection: RAM resident, reset resident,
                         bootblock
Infection Trigger...: reset (CONTROL + Left-AMIGA + Right-AMIGA)
                      operation: any disk access
Storage media affected: only floppy disks (3.5" and 5.25")
Interrupts hooked...: ---
Damage..............: permanent damage: overwriting bootblock
                      transient damage: ColdCapture and CoolCapture
                         vector are cleared
Damage Trigger......: permanent damage: reset
                         operation: any disk access
                      transient damage: reset
Particularities.....: uses DoIOVector; other resident programs using
                         the system resident list (KickTagPointer,
                         KickMemPointer), ColdCapture or CoolCapture
                         vector are shut down; checksum routine above
                         capture vectors has been optimized (compared
                         to BYTE WARRIOR virus code)
Similarities........: BYTE WARRIOR virus, only 'PARAMOUNT...' text was
                         written to free space at the end of the BYTE
                         WARRIOR bootblock
--------------------- Agents ------------------------------------------
Countermeasures.....: Names of tested products of Category 1-6:
                      Category 1: .2 Monitoring System Vectors:
                                     'CHECKVECTORS 2.2'
                                  .3 Monitoring System Areas:
                                     'CHECKVECTORS 2.2','GUARDIAN 1.2',
                                     'VIRUSX 4.0'
                      Category 2: Alteration Detection: --,
                      Category 3: Eradication: 'CHECKVECTORS 2.2',
                                     'VIRUSX 4.0'
                      Category 4: Vaccine: ---
                      Category 5: Hardware Methods: ---
                      Category 6: Cryptographic Methods: ---
Countermeasures successful: 'CHECKVECTORS 2.2', 'GUARDIAN 1.2',
                            'VIRUSX 4.0'
Standard means......: 'CHECKVECTORS 2.2'
--------------------- Acknowledgement ---------------------------------
Location............: Virus Test Center, University Hamburg, FRG
Classification by...: Wolfram Schmidt
Documentation by....: Alfred Manthey Rojas
Date................: 5-June-1990
Information Source..: ---
===================== End of PARAMOUNT Virus ==========================

Antivirus...........: Kickstart 1.2 & 1.3 : VT-Schutz v3.17
                      Kickstart all others: VirusZ III v1.04B or higher, and also Xvs.library v33.47 or higher


Ascii of Paramount virus:

     



Virum Help Team
Denmark & Canada
Copyright © All rights reserved
www.vht.dk