Throwback Thursday: Peter-II - Three Questions of The Sphinx

Posted by   Virus Bulletin on   Jan 28, 2016

This Throwback Thursday, VB heads back to 1993, when an ordinary memory-resident master boot sector virus spiced things up with a bit of pop trivia.

Over recent years we have become used to hearing about ransomware extorting money from victims by locking up their devices and demanding a ransom in order for access to the device to be restored. Back in 1993, however, before malware had truly become linked with monetary gain, there was a device hold-up of a different kind: know your pop trivia or face losing your data.

The creator of the Peter-II virus seemingly fancied himself as some sort of quiz master and set the haplesss victims of his boot sector virus a pop trivia challenge: get the answers right and your hard disk would be recovered, but get the answers wrong and all your data would be lost...

In July 1993, Eugene Kaspersky brought us a full analysis of Peter-II — including the answers to the trivia questions, should you ever need to know them.

Read Eugene Kaspersky's analysis of Peter-II here in HTML-format, or download it here as a PDF.

Posted on 28 January 2016 by Helen Martin

twitter.png
fb.png
linkedin.png
hackernews.png
reddit.png

 

Latest posts:

New paper: Collector-stealer: a Russian origin credential and information extractor

In a new paper, F5 researchers Aditya K Sood and Rohit Chaturvedi present a 360 analysis of Collector-stealer, a Russian-origin credential and information extractor.

VB2021 localhost videos available on YouTube

VB has made all VB2021 localhost presentations available on the VB YouTube channel, so you can now watch - and share - any part of the conference freely and without registration.

VB2021 localhost is over, but the content is still available to view!

VB2021 localhost - VB's second virtual conference - took place last week, but you can still watch all the presentations.

VB2021 localhost call for last-minute papers

The call for last-minute papers for VB2021 localhost is now open. Submit before 20 August to have your paper considered for one of the slots reserved for 'hot' research!

New article: Run your malicious VBA macros anywhere!

Kurt Natvig explains how he recompiled malicious VBA macro code to valid harmless Python 3.x code.

We have placed cookies on your device in order to improve the functionality of this site, as outlined in our cookies policy. However, you may delete and block all cookies from this site and your use of the site will be unaffected. By continuing to browse this site, you are agreeing to Virus Bulletin's use of data as outlined in our privacy policy.