加糖苦咖啡 | daishuo's blog

戴硕的blog

cih_AUTHOR

; ******************************************************************** ; * The Virus Program Information                                    * ; ******************************************************************** ; *                                                                  *; * Designer : CIH Original Place : TTIT of Taiwan                   * ; * Create Date : 04/26/1998 Now Version : 1.2                       * ; * Modification Time : 05/21/1998                                   * ; *                                                                  * ; *==================================================================* ; * Modification History                                             * ; *==================================================================* ; * v1.0 1. Create the Virus Program.                                * ; * 2. The Virus Modifies IDT to Get Ring0 Privilege.                * ; * 04/26/1998 3. Virus Code doesn't Reload into System.             * ; * 4. Call IFSMgr_InstallFileSystemApiHook to Hook File System.     * ; * 5. Modifies Entry Point of IFSMgr_InstallFileSystemApiHook.      * ; * 6. When System Opens Existing PE File, the File will be          * ; * Infected, and the File doesn't be Reinfected.                    * ; * 7. It is also Infected, even the File is Read-Only.              * ; * 8. When the File is Infected, the Modification Date and Time     * ; * of the File also don't be Changed.                               * ; * 9. When My Virus Uses IFSMgr_Ring0_FileIO, it will not Call      * ; * Previous FileSystemApiHook, it will Call the Function            * ; * that the IFS Manager Would Normally Call to Implement            * ; * this Particular I/O Request.                                     * ; * 10. The Virus Size is only 656 Bytes.                            * ; *==================================================================* ; * v1.1 1. Especially, the File that be Infected will not Increase  * ; * it's Size... ^__^                                                * ; * 05/15/1998 2. Hook and Modify Structured Exception Handing.      * ; * When Exception Error Occurs, Our OS System should be in          * ; * Windows NT. So My Cute Virus will not Continue to Run,           * ; * it will Jmup to Original Application to Run.                     * ; * 3. Use Better Algorithm, Reduce Virus Code Size.                 * ; * 4. The Virus "Basic" Size is only 796 Bytes.                     * ; *==================================================================* ; * v1.2 1. Kill All HardDisk, and BIOS... Super... Killer...        * ; * 2. Modify the Bug of v1.1                                        * ; * 05/21/1998 3. The Virus "Basic" Size is 1003 Bytes.              * ; ******************************************************************** 


Trackback: http://tb.donews.net/TrackBack.aspx?PostId=846515


[点击此处收藏本文]  发表于2006年04月26日 10:02 AM




正在读取评论……

发表评论

大名:
网址:
验证码
评论 
   

news

about me
访问量:

我的其他blog
Daishuo's blog(iBlog.com)
加糖苦咖啡(Bokee.com)



我的安全网摘

每日病毒播报

导航

blog stats

文章

收藏

相册

友情链接

存档


正在读取评论……