Big Boss Virus (SCA Clone) - Amiga Virus Encyclopedia

VIRUS HELP TEAM




--------------------------
Amiga Virus Encyclopedia    
Big Boss Virus (SCA Clone) 
--------------------------
     
     
===== Computer Virus Catalog 2.0: SCA.Big_Boss Virus  (1. II. 1994) =====
Entry...............: SCA.Big_Boss Virus
Alias(es)...........: ---
Virus Strain........: SCA Virus family
      detected when.: ---
              where.: ---
Classification......: System virus (bootblock), resident
Length of Virus.....: 1. Length on storage medium: 1024 byte
                      2. Length in RAM:            1024 byte
--------------------- Preconditions -------------------------------------
Operating System(s).: AMIGA-DOS
Version/Release.....: 1.2/all, 1.3/all, 2.0/all, 3.0/all
Computer model(s)...: All models
--------------------- Attributes ----------------------------------------
Easy identification.: Typical texts:
                      '        HaHaHaHaHaHa !!!         '
                      '       BIG BOSS        '
                      '  is back with  ...'
                      '       his strong virus !      '
                      '    Killing   '
                      '  disks is much fun!  '
                      '!!!  BIG BOSS  !!!    '
                      and:
                      'A!BIG_BOSS!BIG_BOSS!BIG_BOSS!B'

Type of Infection...: Self-identification method: compares bootblock
                      checksum with precalculated virus checksum
                      System infection: RAM resident, reset resident,
                      bootblock
Infection Trigger...: Reset
Storage Media affec.: Only floppy disks (3.5" and 5.25")
Systemcalls hooked..: ---
Stealth.............:
Tunneling/Selfprot..:
Oligo/Polymorphism..:
Encoding Method.....:
Damage..............: Permanent damage: overwriting bootblock
                      Transient damage: screen buffer manipulation:
                      screen becomes black, message
                      (see above) is shown by
                      fading in and out pieces of it.
Damage Trigger......: Permanent damage: reset
                      Transient damage: 15th infection
Particularities.....: Any resident program using the CoolCaptureVector
                      is shutdown, also those using ColdCaptureVector
                      when virus is shutdown by its `suicide` function
Similarities........: SCA virus family
--------------------- Agents --------------------------------------------
Countermeasures.....: Virus Workshop 3.0, VT 2.60, VC 6.33,
                      VirusZ II 1.00
Standard means......: VT 2.60
--------------------- Acknowledgements ----------------------------------
Location............: Virus Test Center, University Hamburg, FRG
Classification by...: Jens Vogler
Documentation by....: Jens Vogler
Date................: 1. II. 1994
Information Source..: virus disassembly
======================= End of SCA.Big_Boss Virus =======================

Antivirus...........: Kickstart 1.2 & 1.3 : VT-Schutz v3.17
                      Kickstart all others: VirusZ III v1.04B or higher, and also Xvs.library v33.47 or higher


Ascii of BigBoss (SCA) virus:





Virum Help Team
Denmark & Canada
Copyright © All rights reserved
www.vht.dk