Gaara virus disinfector type 2 for the TI-89.
f98358c3bbe3ab69b253d4343904ac99Gaara virus disinfector type 1 for the TI-89.
14c04c934d383f4b5d40a6e0fc9df19dGaara is world's first resident entry-point-obscuring virus for ti89 Titanium calculators. Written fully in Motorola 68K assembly. For educational purposes only.
107cc4ce090ac29830113f6be8fc6f4aELF binary infector written in assembly. Infects all binaries in /bin and opens a backdoor on port 30464. Shellcode can be added at the end.
c4a63238c5cff540ee32316cf6a43382File::Scan allows users to make multiplatform virus scanners which can detect Windows/DOS/Macintosh viruses. It includes a virus scanner and signature database.
3dc411fc16d8b42b36b13b299bda95c3UPolyX version 0.3 is a simple polymorphic open-source UPX scrambler. Comes with VC6 source code.
6cb294f883b08ac702017356931a87bbVirus disinfection utility to be used against the Win32.HLLP.Sharp virus. Windows executable and source code included.
5f2d1b3b67e32be39097dbe4c94bc34cCrew.tgz is the executable package for the lion worm. Includes 1i0n.sh and helper binaries.
8e791aeee8bddf7f4f75edac002b525ePolyPedoWorm is an example of a way to create a polymorphic, Microsoft Encoded Worm. Features include Polymorphism, Varying file size, and renaming of the variants.
550400eda25aa0e6d705398e726e6a2cAnnaKlean is a Console Application To Wipe Out Anna Kournikova Worm From Registry.
4de4550be4a992b19ddd77aa72cb0c06Unencrypted source code for the AnnaKournikova email worm, which is written in vbs.
4ad89f22979f76adfc6534ab76a310c9AnnaKournikova.jpg.vbs email virus source code. Warning - Do not rename.
a2bfb18131a0bdde1c016be5507116b9Membrain.zip is a functional overwriting virus written in Quickbasic 4.5. Full source included.
14fd168435f21a7b5d2918995b9ffe5cPossible source to the Love Letter virus. Originally submitted to Packet Storm as Win32DLL.txt. Submitted by Ingenius N.N. who warns "Do not rename Win32DLL.txt with .vbs extention".
bf87e31dc502ff88d7a0328493ba0bedDivorce the Love Letter virus. Cleans the rubbish out that the Virus caused. Not elegant but does the job! Read then run the Run_Fix.bat. Use at your own risk.
33ea18030997b35eb38e2e70063f6068vengine.zip (engine + virus source code) is a polymorphizer that can be used to polymorphize any MS-Word macro virus. This file includes Melissa and Polyssa scripts, and instructions simple enough for idiots who desire to spread viruses maliciously.
5aa992e59c54f3c633c6e455b60c5c04Excellent Mini-FAQ entitled "antivirus software for Linux".
fc09bed9b51b7d4812314effc6f8cb79VDAT, the virus scene database, version 1.80 is THE resource for anything and everything related to the virus scene. Authors, Groups, Interviews, Magazines, Creators, Engines & Tools, Tutorials, Essays & Papers, Legal Issues, Anti-Virus, Virus Glossary, Editorials, and much, much more. At over 13 MB in uncompressed HTML format, there is simply too much to list here. Check out the VDAT web site for a detailed list of new additions in this release. Make sure you check out the interview with Stealthf0rk, Tally's Virus Link Reference, the Wild list March 1999, all of the new zines, and the excellent tutorials. 6.8 MB.
cfd05fe31c986fbc1ef1fed24cc8831dvengine.txt (just the engine) is a polymorphizer that can be used to polymorphize any MS-Word macro virus.
bb5982fcd3843054711b16c01e6541a4MS-DOS/Linux source-code demonstration virii by SVAT. califax replaces the stdio.h file in the /usr/local/include directory and gets compiled into every file compiled with gcc.
223ff3050165920e76bb3cd073b429f5Linux kernel module infecting virus source code.
4b518caaf0ea229fecaa11fb665299c2VDAT v1.6 - THE virus scene database. 5.93MB.
6fa5a7e161ffb683ab0ad5c83a502d94VLP I is a Linux source-code demonstration virus that infects ELF-execs.
ebf375b2521442d782a49a1c455d7c83UNIX/Linux source-code demonstration virii by the NetW0rker and Stealthf0rk of the SVAT-group. Stealth's web site
c929d29d9fc566d5104cbc18a2f7fd36Virus that infects ELF-files non-overwriting.
67881a4c7027569c198733164ed62833