Search:       

Saturday, 17 May 2008       

Win32.Hales Spyware/Adware Definition


Name: Win32.Hales
Category: Viruses
Description: Details
Win32.Haless

It is not a dangerous nonmemory resident parasitic Win32 virus. It does work under Win32 including WinNT. When an infected file is executed, the virus scans Windows kernel and gets addresses of necessary Windows functions, then scans the subdirectory tree on all drives in the system and infects PE EXE files that are found. While infecting the virus looks for a zero-bytes cave in PE EXE header, and writes its code to there, if there is enough space.
The virus does not manifest itself in any way. It contains the text string:
Infected by Win32.TechnoMix.Harmless.1

The files searching and infection routine is run as an additional process' thread. The virus runs it and returns control to the host program, and the infection thread does its work in background up to the moment the host application terminates. As a result, if the infected application stays active for long time, the virus may infect all "infectable" PE EXE files on the hard drive.


Top Viruses Visited Pages:
ECW.57
Gorgan.271
Gorill
Guerilla.199
HLLP.Nover.771
Holiday Famil
HS.90
Hydra_II Famil
I-Worm.Mimail.
I-Worm.MyLife.
I-Worm.MyLife.
I-Worm.Sobig.
Ice Famil
IDEA.612
Imi.1536.

 


Main Menu
Home
Top Downloads
New Programs
Awards
Submit
Link to us
Spyware Definitions
Viruses Info
Recipes
Jokes
Contact us



Partners
Softs Land
Hotel Reservations
Computer Articles
Viruses Info
Free Downloads
Data Recovery Shareware Downloads Free Articles
Cooks Recipes
Download Programs
Windows Drivers
MySpace Generators

Check PageRank

 

 

- Privacy Policy -