home *** CD-ROM | disk | FTP | other *** search
- This is very detailed (although stopping short of a listing of course)
- description of the Vigay Virus. It is strongly recommended reading, if only to
- give you a better understanding of how the virus operates.
-
- Vigay Virus technical information
- ---------------------------------
-
- This is a 2311-byte BASIC program called "datadqm" with an associated 97-byte
- !Boot file. The REMs at the start of the program are as follows:
-
- REM (C)1989 PAUL VIGAY
- REM
- REM A nasty little Archie Virus !!
- REM ... or is something up with your monitor ???
- REM
- REM version 1.1a (24th October 1989)
-
- Hence you now know why it's called the "Vigay Virus" - the author's name
- appears as a comment at the start !
-
- When first run, it initialises as a Wimp task called "TaskManager" and then
- waits for either:
-
- 1) a chance of (500 * hours left of a Thursday) to 1 to crop up to spark off
- a silly "wobble" demo (wobbles the screen and mouse pointer). Yes, this demo
- only appears on a Thursday and more frequently as the day wears on.
-
- or:
-
- 2) a file/directory double-click, in which case it attempts to replicate itself
- to the first application directory at that level that doesn't already have
- either an !Boot or a datadqm file.
-
- There is no infection count maintained across replications. Thanks to task
- handle code by Martin Avison, VKiller can now detect the Vigay Virus at any
- time - VKiller sends a Message_Quit Wimp message to shut it down.
-
- Vigay Virus Innoculation
- ------------------------
-
- Innoculation can be achieved by creating a new !Boot in the same manner
- as the Extend Virus is innoculated.
-