Select local site

| Japanese | Simplified Chinese | Traditional Chinese (Hong Kong) | Traditional Chinese (Taiwan)

F-Secure Malware Information Pages: Virus:W32/Divvi

[Summary] | [Detailed Description] | [Detection]

Name : Virus:W32/Divvi
Alias:Virus.Win32.Tupac.a
Size:12868
Type:Virus
Category:Malware
Platform:W32
Origin:Asia
Date of Discovery:October 10, 2007
Radar

Summary
"Divvi" is a file infecting virus that does not currently appear to be spreading in the wild.

If active, Divvi will launch a denial of service (DoS) attack against F-Secure on the 28th day of each month.
Back to the Top

Detailed Description
Divvi is a virus that infects EXE-files. When run, it displays the following messagebox:



Divvi also attempts to copy itself to removable drives and set an autorun file to enable itself to spread.

Divvi also contains the following strings:

  • Mikko cut ur ponytail
  • Divinorum
  • *** Sadafa elte7am !!! ****
  • doG saW madaS
  • Coded by: Berniee!2007

On the 28th day of each month the virus will attempt to start a Denial of Service (DoS) attack against F-Secure.
Back to the Top

Detection

F-Secure Anti-Virus detects this malware with the following updates:

[FSAV_Database_Version]

Version = 2007-10-12_04.


Back to the Top



F-Secure Corporation

Last Modified: November 06, 2007