OT: Virii

From: John Foust <jfoust_at_threedee.com>
Date: Thu Jul 19 08:33:42 2001

At 09:32 AM 7/19/01 +0100, Alan Pearson wrote:
>I just did a Google search for "Magistr" - a whole load of
>sites all say the same thing - a month after infection the virus kicks in
>and nobbles hard disk sectors, then has a go at the BIOS too. It doesn't
>sound like it's that easy to fix :-(

PE_Magistr plays interesting tricks. It searches documents on
your system, and uses fragments to assemble the body of the e-mail
that's sent. I received it several times - from a programmer,
the text was techy and the filename hinted at the registry,
from someone in government, the text was puzzling but reminiscent.
I can see how people are fooled. It also has several levels of
polymorphism to evade detection.

- John
Received on Thu Jul 19 2001 - 08:33:42 BST

This archive was generated by hypermail 2.3.0 : Fri Oct 10 2014 - 23:33:53 BST