Laureline 1.0 Bootblockvirus:

        - Kickstart 2.0x needed (based on patch routines.

        This bootblockvirus is not resetproof and kills ColdCapture,
        Coolcapture and the KickTagPointer. To spread itself it patches
        the DoIO vector from Exec (quite strange way of patching).

        The virus uses the memory from $6e800+1024 bytes to place its
        code. The memory will be not allocated and so every programm
        can trash it and as a result your computer goes to India. I
        have tested it with VW on an A500+ with 1MB Chip and I had very
        often a complete systemcrash.
        After 35 infections a little message will be displayed
        using DisplayAlter from the intuition lib.:

                'The Laureline Virus V1.0'
                'Code by Cat Lord'
                ',Report: 30.05.93'
                'Sex: Male'
                'Number of copy: 0002'
                'Laureline Male Found: 0000'
                'Laureline Female Found: 0000'
                'Girl Maked: 0000'
                'Disk Found: 0002'
                'Dos Boot Found: 0000'
                'Other Virus Found: 0000'
                'Amiga V1.2: 0000'
                'Amiga V1.3: 0001'
                'Amiga V2.0: 0000'
                       'Amiga V3.0: 0000'

        The values for "Amiga V... 000x" will be changed by the virus
        itself and it really contains the code to check for various
        Kickstart versions. Other destruction routines are not placed
        in the virus.

        General comment: Better play with your joystick ! Some routines
        are extremly strange...

                                        Detection tested 07.07.1994.

        Test by Markus Schmall

[Go back]