Threat Encyclopedia

Selected viruses, spyware, and other threats: sorted alphabetically

Crazy October

This is a resident, satellite, stealth COM and EXE infector. The virus copies its body under the victim’s name and renames the victim’s extension as follows: it subtracts two from each ASCII code (i.e. COM to AMK, and EXE to CVC). Naturally, the user does not notice it and instead of the original program he executes the virus body. After that the virus ensures that the original victim is executed. Obviously, only after its activities are completed. The virus hooks the interrupt INT 21h. It attacks files which it opens. On Friday, at the first execution of an infected program, the virus displays the following text:

Hi ! I am the Crazy October and I will now live on your system. Don't worry ! Everything is under controll. Now I must go to replicate, bye!

© 1992-2004 Eset s.r.o. All rights reserved. No part of this Encyclopedia may be reproduced, transmitted or used in any other way in any form or by any means without the prior permission.