Skip to main content

Riihi

Classification

Category:

Malware

Type:

Virus

Aliases:

  • Riihi

Summary

Riihi virus was found in Finland in the beginning of December 1993. It's one of the smallest known functioning memory-resident viruses.

Removal

Technical Details

When an infected program is first executed, Riihi becomes memory resident, and infects COM files as they are executed. Riihi does not decrease available DOS memory, and it does not show up in memory maps.

When the virus is resident, it will check every executed program. If the file extension is COM, and the program does not start with the 'M' letter, the virus infects it. The 'M' check is done in order not to infect EXE files that have been renamed to COM.

Infected programs grow by 132 bytes. The virus does not do anything except spread, and it does not contain any texts.

The exact origin of Riihi is not known, but it is suspected to be written in Finland - it caused several large-scale infections in Finland during December 1993 and January 1994.

Protect your devices from malware with F‑Secure Total

Protecting your devices from malicious software is essential for maintaining online security. F‑Secure Total makes this easy, helping you to secure your devices in a brilliantly simple way.

  • Award‑winning antivirus and malware protection

  • Online browsing, banking, and shopping protection

  • 24/7 online identity and data breach monitoring

  • Unlimited VPN service to safe­guard your privacy

  • Password manager with private data protection

Choose how many devices you want to protect to get started.

  • Free customer support

  • Cancel anytime

  • The trial does not obligate you to buy the product

After 30 days your subscription will renew automatically for one year at €69.99.

More Support

Community

Ask questions in our Community.

User guides

Check the user guide for instructions.

Contact Support

Chat with with or call an agent.

Submit a Sample

Submit a file or URL for analysis.