Pentagon Circle Virus - Amiga Virus Encyclopedia

VIRUS HELP TEAM




------------------------
Amiga Virus Encyclopedia
Pentagon Circle Virus
------------------------

    
=== Computer Virus Catalog 1.2: PENTAGON CIRCLE Virus (5-June-1990) ===
Entry...............: PENTAGON CIRCLE Antivirus Virus
Alias(es)...........: VIRUSSLAYER Virus
Virus Strain........: --
Virus detected when.: 8th September 1989
              where.: Elmshorn, FRG
Classification......: system virus (bootblock), resident
Length of Virus.....: 1. length on storage medium: 1024 byte
                      2. length in RAM           : 1024 byte
--------------------- Preconditions -----------------------------------
Operating System(s).: AMIGA-DOS
Version/Release.....: 1.2/33.180
Computer model(s)...: AMIGA 500, AMIGA 1000, AMIGA 2000A, AMIGA 2000B
--------------------- Attributes --------------------------------------
Easy Identification.: typical text: 'The Pentagon Circle VirusSlayer by
                      Mr.Mountainlake! Thanks to Onsala Sector for
                      their help! There is a VIRUS / OLD AntiVirus
                      on your disk! Make it write-enabled & press
                      RIGHT button! LEFT: Give control to it (NOOO!)
                      RIGHT: Kill it! Swapping:Onsala Sector,
                      Ljungliden 21,43900 Onsala,Sweden'
                      virus feature: Pressing the left mousebutton in
                      port 1 during a system reboot causes the screen
                      to change its color to different ones, the
                      virus will still be working
Type of infection...: self-identification method: hex. $2050656E at
                      memory location $0007FD84 (' Pen')
                      system infection: RAM resident, reset resident,
                      bootblock
Infection Trigger...: registration of a virus and positive answer to
                      PENTAGON's request of killing the detected virus
Storage media affected: only floppy disks (3.5" and 5.25")
Interrupts hooked...: --
Damage..............: permanent damage: overwriting bootblock
                      transient damage: alert box when finding a known
                      bootblock virus (text: see above)
Damage Trigger......: permanent damage: detecting a virus after a
                      request to the user (text: see above)
                      transient damage: detecting a virus after a
                      request to the user (text: see above)
Particularities.....: uses DoIO(); virulent antivirus,
                      detects the following viruses:
                      BYTE BANDIT, SCA, an old bootblock protector,
                      NORTH STAR I, NORTH STAR II, SYSTEM Z up to
                      V 4.0, BYTE WARRIOR, PARAMOUNT (as BYTE
                      WARRIOR) and a virus unknown here at VTC
Similarities........: ---
--------------------- Agents ------------------------------------------
Countermeasures.....: Names of tested products of Category 1-6:
                      Category 1: .2 Monitoring System Vectors:
                                     'CHECKVECTORS 2.2'
                                  .3 Monitoring System Areas:
                                     'CHECKVECTORS 2.2','GUARDIAN 1.2',
                                     'VIRUSX 4.0'
                      Category 2: Alteration Detection: --
                      Category 3: Eradication: 'CHECKVECTORS 2.2',
                                     'VIRUSX 4.0'
                      Category 4: Vaccine: ---
                      Category 5: Hardware Methods: ---
                      Category 6: Cryptographic Methods: ---
Countermeasures successful: 'CHECKVECTORS 2.2', 'GUARDIAN 1.2',
                            'VIRUSX 4.0'
Standard means......: 'CHECKVECTORS 2.2'
--------------------- Acknowledgement ---------------------------------
Location............: Virus Test Center, University Hamburg, FRG
Classification by...: Wolfram Schmidt
Documentation by....: Alfred Manthey Rojas
Date................: 5-June-1990
Information Source..: ---
===================== End of PENTAGON CIRCLE Virus ====================

Antivirus...........: Kickstart 1.2 & 1.3 : VT-Schutz v3.17
                      Kickstart all others: VirusZ III v1.04B or higher, and also Xvs.library v33.47 or higher


Screenshot of Pentagon Circle 1 Bootblock virus:

    

Ascii of Pentagon Circle 1 virus:





Virum Help Team
Denmark & Canada
Copyright © All rights reserved
www.vht.dk