Virus.Win9x.CIH - removal process

Поделиться
HTML-код
  • Опубликовано: 25 апр 2016
  • / danooct1
    another CIH anniversary video. I released my original video covering the CIH virus four years ago in 2012, which is currently my most viewed video. this video attempts to follow up on that one, showing how CIH can potentially be removed (if the system's BIOS hasn't been overwritten).
    please forgive me for being terrible at video editing, it's not something I work a lot with (despite making videos for almost 8 years lol). lots of lazy cuts/transitions, but i think it gets the point across well enough. if i waited until i was happy with how this video was coming along it wouldn't have been released this year so this is as good as it's gonna get.
  • РазвлеченияРазвлечения

Комментарии • 413

  • @Shortninja66
    @Shortninja66 8 лет назад +417

    3:38
    *says you need to change the date far away from 26 april*
    *changes date to 20 april*
    lmao

    • @trancesunrise3056
      @trancesunrise3056 7 лет назад +29

      Blaze it!

    • @sixfr0nt
      @sixfr0nt 6 лет назад +6

      a veeerrry special day, lmao

    • @add3685
      @add3685 5 лет назад +4

      Best date to avoid CIH: April 27

    • @DJRY360
      @DJRY360 4 года назад

      But my birthday is April 26

    • @xxEzraBxxx
      @xxEzraBxxx 4 года назад

      4-20

  • @Bisqwit
    @Bisqwit 8 лет назад +269

    Very nice video. Your style of narration is also easy and pleasant to listen to. Good job!

    • @StevePro121
      @StevePro121 8 лет назад +4

      +Bisqwit wait... you are the same guy who created a recreation of doom in C?

    • @Bisqwit
      @Bisqwit 8 лет назад +8

      +Elmo64 Yup.

    • @cldgonz
      @cldgonz 8 лет назад

      +Bisqwit didnt expect to see you in this vid lol

    • @Lunascaped
      @Lunascaped 7 лет назад +2

      Bisqwit dannoct1 is bob ross confirmed?!

    • @Microsoft-Windows
      @Microsoft-Windows 5 лет назад

      +Bisqwit Found you again in a comment haha :)

  • @deterdettol
    @deterdettol 8 лет назад +115

    Very interesting. Back in 1999, when CIH infected our family computer, now I understand why our anti-virus kept finding so many infected files, and multiple scans didn't work. My dad had no choice but to boot into DOS and executed all the tools on command line to eradicate the infection.
    Just want to confirm if it is possible instead to boot to DOS to run the tools instead of running it on Windows.
    Thanks Danooct1, you have outdone yourself once again with an extremely informative and entertaining video.

    • @ZRZK2127
      @ZRZK2127 8 лет назад +9

      +James Chan i loved how you let us know it was your dad that did it. it's like i'm back in the 90s and the family computer got infected and dad has to fix it

    • @deterdettol
      @deterdettol 8 лет назад +14

      +Zero Ziat Actually, we don't know who did it. A couple of people were using it and were downloading stuff from people's emails and the Internet.
      My dad was quite good with the computer, so he cleaned up the mess.

    • @ZRZK2127
      @ZRZK2127 8 лет назад +3

      +James Chan the same happened in my house! hahaha

    • @OctoomyYTOfficial
      @OctoomyYTOfficial Год назад +1

      That family computer got lucky

  • @JMC_90
    @JMC_90 8 лет назад +132

    No fucking way, I had this when I was younger, My BIOS wasn't deleted and the machine continued to boot into windows, but that green bar at the top would appear when I visited certain websites, tried to watch video, listen to music, files would stop working etc.. The computer would then hang until I pressed the reset button and start again. I tested the hardware thinking it might have been a graphics error but no such luck, It would still happen in safe mode etc, eventually got a hold of my 98 disc and reinstalled completely and the problem was fixed, so couldn't have been hardware..
    Is it possible there where variations of this virus or does it just affect different systems in different ways?
    EDIT: At 2:35 the screen has a green a bar at the top with distorted purple pixels, this is exactly the way my screen would go the second I ran pretty much anything.

    • @xxxprogamerxxx5909
      @xxxprogamerxxx5909 4 года назад +2

      Jamie McG you didnt even edited your fucking comment

    • @tristan6509
      @tristan6509 4 года назад +17

      @@xxxprogamerxxx5909 RUclips didn't record if a comment is edited until 1-2 years ago...

    • @ibapreppie
      @ibapreppie 4 года назад

      @@xxxprogamerxxx5909 Neither did you

    • @ChanceOfOne344254
      @ChanceOfOne344254 10 месяцев назад

      As far as I know, the other CIH variants primarily affected payload dates, and not the payload itself. It's possible you were infected with a different virus, it may have been something like the virus CAW, because that virus would cause the distorted line lock up when you run programs.
      However it is possible you had a variant that hasn't been documented and which didn't perform payloads correctly and/or altered them.

  • @NetRolller3D
    @NetRolller3D 6 лет назад +21

    Interesting sidenote: HDDs formatted with newer utilities (those supporting Advanced Format) are mostly impervious to CIH. These new utilities put the 1st partition at sector 2048 instead of 63 to ensure alignment, so all that needs to be done after a CIH attack is a simple MBR rebuild (since the first 1MB is left clear, except for the MBR).

  • @awesomegamer31
    @awesomegamer31 8 лет назад +25

    I love this high production value post commentary you've sort of done. Great work Dan! Hope to see more of this genre in the future.

    • @GDNachoo
      @GDNachoo 6 лет назад

      verbose convertor?

  • @dragonsky2884
    @dragonsky2884 8 лет назад +56

    Why did your videos suddenly become more professional? Your voice is clearer, you talk more fluently,calmly and in a warm tone, and the footage is more high-quality than usual...
    Me likes it.

  • @mxl12
    @mxl12 8 лет назад +3

    Allthough no one will be struck by CIH unintentionally these days it is still a great prove of concept, knowing how destructive it was back then.This reminds me of picking up an old video game from your childhood and finally beat the endboss which you never managed to when you were young. Even though none of your friends will take about the game anymore and value your success it is still an important achievement for your ego.If you can beat CIH Dan you will probably do so with many viruses to come. That is why I am subscribed to your channel :)

  • @SmeddyTooBestChannel
    @SmeddyTooBestChannel 8 лет назад +169

    Now do the process of reflashing the BIOS with only the technology at the time. ;)

    • @sevencinderblocks
      @sevencinderblocks 8 лет назад +57

      rip danoct1

    • @xanlord2k
      @xanlord2k 8 лет назад +50

      unsolder the bios chip, put another one and force an update via ms-dos and hotswap the old chip. simple.

    • @SireSquish
      @SireSquish 8 лет назад +16

      +OH MY GOD!!! So try to find a similar board with a similar chip. They don't necessarily have to be identical.

    • @8bits59
      @8bits59 5 лет назад +2

      ...so order a new BIOS chip from the manufacturer? They were almost all socketed at this point in time

    • @AwesumIndustrys
      @AwesumIndustrys 4 года назад +2

      So spend hundreds of dollars on an EEPROM writer and somehow find a clean copy of the BIOS to flash it with?

  • @kitanaisunshine1057
    @kitanaisunshine1057 8 лет назад +1

    Great work! I love how you sound so happy throughout the video. That just makes it even more fun to watch :D

  • @UltimateTMGModder
    @UltimateTMGModder 8 лет назад +13

    No dislikes, well deserved. You're awesome Dan I love watching these videos and it's shown me a lot about viruses. Keep it up

  • @davyvangeerke5826
    @davyvangeerke5826 8 лет назад +6

    Hey! I only just found your channel a few days ago and you make some really interesting videos that are super fun to watch! I was just wondering what field you specialised in? or what course you studied in order to have such a good understanding of all this. Love the channel dude!!

  • @Wrydryn
    @Wrydryn 8 лет назад

    these videos are so entertaining. having heard about many of them but now I can see them in action.

  • @NickRosaci
    @NickRosaci 8 лет назад +1

    I just came across your videos yesterday. This is really interesting stuff! I've always wanted to see a virus in action, but not on my own computer, of course. I've always wondered about the viruses that cause physical damage to the computers, so I'll be looking for those.
    It's also really interesting that these viruses still break out of the virtual operating systems to cause real damage. Old, obsolete viruses still able to infect new computers--really cool.

  • @aaronlindros6048
    @aaronlindros6048 8 лет назад +77

    Did you change the date to 4/20 on purpose?

    • @AbRaSkZo
      @AbRaSkZo 8 лет назад +17

      say this to Druaga1

    • @Brorrowind
      @Brorrowind 8 лет назад +1

      +SkelettZockt Goddamn and I thought I was the only one that thought about Druaga when they saw that date.

    • @AbRaSkZo
      @AbRaSkZo 8 лет назад +1

      Brorrowind yea smoke w33d everyday

    • @henrikhyrup3995
      @henrikhyrup3995 4 года назад +3

      Should have changed it to 6/9 :P

    • @nokti...
      @nokti... 4 года назад +4

      *_n i c e_*

  • @CYXXYC
    @CYXXYC 8 лет назад +27

    When saw the title in my sub box got so excited :D

    • @Wolfblood2004
      @Wolfblood2004 8 лет назад

      +BurnyCreative Lol I know right :D

  • @DVDfeverGames
    @DVDfeverGames 4 года назад +2

    These days, we have Windows 10 to download updates that don't work, and cause it to reboot 3 times before it gives up, uninstalls its own update, and takes you back to where you were originally. It's equally irritating.

  • @chamseddinehammouda6965
    @chamseddinehammouda6965 8 лет назад +64

    Cool video! By the way, did you know that you were featured in a Quebec documentary about zero day flaws that was broadcasted a week ago?

    • @danooct1
      @danooct1  8 лет назад +25

      +Chockeyproh Wii U 3DS really? do you have a link/more information?

    • @chamseddinehammouda6965
      @chamseddinehammouda6965 8 лет назад +9

      +danooct1 Sure! One second please, just to upload a screenshot of it online.

    • @chamseddinehammouda6965
      @chamseddinehammouda6965 8 лет назад +18

      +danooct1 drive.google.com/file/d/0B_DKmOADWDWiY2pjeWlIY3BXa0k/view?usp=docslist_api drive.google.com/file/d/0B_DKmOADWDWiSGg2a1Y4VmpDUjg/view?usp=docslist_api
      These are two (awful quality) pictures I took. I can also give you the video (about 7 seconds) of where you are involved, but it is in french. It is a part explaining that first malware that took control of your OS were not dangerous and were having a diverting payload.

    • @sorsu
      @sorsu 8 лет назад +3

      +OH MY GOD!!! i even saw the source and its right. that is step up. a HUGE STEP UP.

  • @Tyler-on5se
    @Tyler-on5se 8 лет назад

    Dan ive been waiting for another cih vid for a while. Thank you!!!!

  • @Exachad
    @Exachad 8 лет назад +2

    You finally made the vid. I have been waiting for 4 years now.

  • @notlun
    @notlun 8 лет назад

    At first I was sceptic but the way you did this video and explained everything was brilliant. very nice content, hope to see more of this

  • @GabeofPlayStationLand
    @GabeofPlayStationLand 8 лет назад

    Great video, Dan! I don't think I've ever been more enticed during one of your vids!

  • @FragsJr
    @FragsJr 8 лет назад

    Great video Dan! Loved the editing/voiceover style.

  • @Pachoom
    @Pachoom 8 лет назад

    Im waiting for this soooo many months,i knew its fixable!Great vid Dan

  • @PavlentijIvani4
    @PavlentijIvani4 4 года назад +4

    My computer was corrupted by cih, bios and hdd both. It was a real pain!

    • @PavlentijIvani4
      @PavlentijIvani4 4 года назад +2

      @@malwaretestingfan hm, smtng about 2000-ies. It was pentium 133 or something like that 😁 and windows98 to my mind.

    • @PavlentijIvani4
      @PavlentijIvani4 4 года назад

      @@malwaretestingfan it was popular in 00s

  • @melihcelik9797
    @melihcelik9797 4 года назад

    Fascinating tool. Since I don't want to run a DOS simulator on this program, I read the instructions from your video (thx for including all of them by the way) and this is just pure clever. I don't know how it would be possible to reconstruct the whole MRB with FAT16 systems, but if Steve Gibson says its possible, then its possible somehow. However, using the copy to reconstruct whole disk is just amazing. Just people in this bussines knows how a file system works and he delivered a solution to this problem.
    Also it shows you how slow computer storage was back in the day. This isn't even really old but 7 minutes for a GB is massive considering this tool runs on machine code, standalone on the CPU.

  • @Sketch1994
    @Sketch1994 8 лет назад +4

    OMG...My first computer in 2004 came with Windows ME and I only now I realize how lucky I was to have it until 2012!

  • @delta_cosmic
    @delta_cosmic 8 лет назад +24

    you also need to empty the recycle bin just to be safe

  • @AIpresidential_Z
    @AIpresidential_Z 8 лет назад +1

    Hey dancot I love your vids they are the best I was always into technology and how viruses work. thank you and keep making great videos

  • @Etobio
    @Etobio 8 лет назад

    Excellent work! Glad to see such an awesome nerdy video!

  • @ZimmyFox
    @ZimmyFox 8 лет назад +4

    Good ol' Steve Gibson. I instantly recognized the name lol. He's got some pretty good podcasts

  • @BeavisOfArabia
    @BeavisOfArabia 8 лет назад +10

    I've suggested this before, but I'd like to see the effects of a virus and how to remove it in a single video. I don't mind having it split into two videos, but the fact that you sometimes don't do removals for some viruses (don't think you've said in the video that you can't remove it after it's infected the system) and I really wonder how some of those viruses can actually be removed.

    • @danooct1
      @danooct1  8 лет назад +10

      +TheEngineer TCR (TheEngineerTCR) most viruses don't have specific removal tools and i just format the drive to get rid of them.

    • @maddiwulfe
      @maddiwulfe 8 лет назад +1

      I use the command prompt

  • @LucasVieira_luksamuk
    @LucasVieira_luksamuk 8 лет назад +1

    Despite the obvious fact that ClamAV doesn't have live scan (although I've already seen extensions that can help ClamAV perform live scans), do you think it's efficient enough? I currently use no antivirus on my Windows system, and I don't feel like any of them are any more effective nowadays than minding what you access.

  • @antthegord9411
    @antthegord9411 6 лет назад +13

    Having been in network security for 4 years and understanding quite a lot about not just the skill but the psychology of hackers, I can already assure you many hackers hate you severely for exposing how a vast majority of these older hacks (and the newer ones too) were used, clearing up a lot of the panic/fear the used to exist around malware.
    It's glorious to finally be able to be so publicly smug towards those jobless, lazy bastards who won't get a real job. Then again, keeps guys like me in business so I guess I should be thanking them

    • @KenSharp
      @KenSharp 5 лет назад

      Honestly they couldn't care less. A child could fix this.

  • @tacticaltux4231
    @tacticaltux4231 8 лет назад +1

    Danooct1, thank you for your great content. By the way, do you have access to the database virusshare?

  • @usslibertyincident
    @usslibertyincident 8 лет назад +3

    damn, this is probably your most well made video yet.

  • @K3NnY_G
    @K3NnY_G 8 лет назад

    Awesome video man, keep up the great work!

  • @rpeetz
    @rpeetz 8 лет назад +3

    To repair the BIOS corruption you could hotswap the bios on a good motherboard and flash it again or get one external programmer to flash the bios again.

  • @ThePreviousLevel
    @ThePreviousLevel 8 лет назад +1

    Seeing all these videos, it would appear best defense for a lot of those malwares was to simply disable/freeze your system time.
    Awesome channel though. It brings me back some cool memories.

    • @LiEnby
      @LiEnby 5 лет назад +1

      siwoti remove the CMOS Battery lol

  • @Hexaotl
    @Hexaotl 8 лет назад +1

    Hey Dan!
    Your videos have really inspired me to try to mess around with some programming and try to make some simple malware programs. So i am just wondering what programming language you would recommend for someone starting up writing malware?

    • @Hexaotl
      @Hexaotl 8 лет назад

      ***** I dont really know if Assembly is the correct choice nowadays. And isnt C really difficult/time consuming to learn?

  • @thatonemelody
    @thatonemelody Год назад

    "Rendering the computer unbootable. SOME OF YOU-"
    that threw me into wednesday

  • @Poebat
    @Poebat 8 лет назад

    I liked the way you edited this video.

  • @SzymonParys
    @SzymonParys 5 лет назад

    why this video is so satisfying?

  • @GingerChristmas
    @GingerChristmas 8 лет назад

    Makes me wonder what the most recent chipset/CPU that the bios overwrite payload will work on.

  • @NothingIsScary
    @NothingIsScary 2 месяца назад

    I wish we got to see more of these virus removal videos

  • @ZRZK2127
    @ZRZK2127 8 лет назад

    Nice video man, love these. It's like a trip to the 90s. You ever gonna do some old linux malware videos or something?

    • @pixelbucket8884
      @pixelbucket8884 8 лет назад

      I didn't even know Linux malware existed (0_0)

    • @ZRZK2127
      @ZRZK2127 8 лет назад +1

      +PixelBucket The Herobrine Hunter there obviously are some exploits and such. frankly it'd be interesting to see, specially on older systems

  • @daytonsMusicRoom
    @daytonsMusicRoom 2 года назад

    Amazing Video As Always

  • @20EsOfficial
    @20EsOfficial 8 лет назад

    I know most people wouldn't like to try this, but what would happen if you ran CIH on bootcamp on a Mac w/ dualboot. Will it still boot to OSX?

  • @JTCGiantz56
    @JTCGiantz56 8 лет назад +14

    I'm surprised you're able to find all of this old virus cleanup software

    • @raspberry144mb3
      @raspberry144mb3 4 года назад +2

      CIH was particularly nasty and widespread, so it's not too terribly surprising.

  • @eduardoluann
    @eduardoluann 8 лет назад +5

    That was a very interesting video! As far as I knew, the only way to repair a computer destroyed by CIH was to find another clean PC with the same chipset and hot-swap BIOS chips. I didn't knew there were "immune" chipsets, that are repairable.
    Can you do a BIOS-swap video too? It would be a very interesting thing to watch!

    • @LiEnby
      @LiEnby 5 лет назад +1

      Eduardo W. I'm guessing boot with working bios then hotswap to the non working one and use the same exploit to write the original bios onto it?

    • @GRBtutorials
      @GRBtutorials 2 года назад

      Well, it could also be externally reprogrammed. From what I read, even back then it was possible to buy a flash programmer and successfully reflash the BIOS. Not common knowledge, though, especially back then, and you needed another computer anyways.

  • @SireSquish
    @SireSquish 8 лет назад +8

    Dan - I know you get a million messages, and I've asked before - but have you actualy done a hotswap BIOS?

    • @danooct1
      @danooct1  8 лет назад +15

      +SireSquish I'd like to try one but I don't have a similar enough mobo. Maybe someday I'll pick one up and make a video on it.

    • @fazbearentertainment5720
      @fazbearentertainment5720 7 лет назад

      danooct1 I'd love to get a pc I'm watching on Samsung galaxy tab e lite

  • @SuperSamcity
    @SuperSamcity 7 лет назад

    This was beautiful.

  • @timothysimmons9359
    @timothysimmons9359 8 лет назад +2

    I heard about CIH.
    I wish to see the most destructive worm/trojan/ or virus ever known!

  • @matthew65536
    @matthew65536 7 лет назад +2

    have you thought of trying this in Qemu? I think it would successful in Qemu, because its closer to acting like a real Pc.

  • @MidnightMechanic
    @MidnightMechanic 8 лет назад +1

    So what if you're unlucky and have a BIOS that gets overwrote by CIH? Since all the boot drives are rendered unbootable, there's no way of using DOS as a saving grace, huh?

    • @LiEnby
      @LiEnby 5 лет назад

      Midnight Mechanic you have to desolder the bios and hotswap with one from a working board then use the same exploit? to re-write the firmware to it

  • @prifes7364
    @prifes7364 4 года назад +6

    Okay, but is there a kill_covid-19 command that I can just write into the console of life?

  • @VuLinhAssassin
    @VuLinhAssassin 8 лет назад

    Your video is awesome. Remind me of my childhood :D

  • @mt441
    @mt441 2 года назад

    that excitement is indeed justified dw

  • @suzunakuraki3747
    @suzunakuraki3747 Год назад +1

    I do wanna know what happens to the machines that have been wrecked by CIH -- As in black-screened, no access to the BIOS? Most Virus wrecked machines do let you get to the BIOS screen before moving to the BSOD -- OS's failing to boot because the virus wrecked a system file.

  • @Budgiebrain994
    @Budgiebrain994 8 лет назад

    Outstanding video

  • @zumbach242
    @zumbach242 8 лет назад

    Can you do a video on the whistler virus? I used to have it and it drove me crazy for a month. Took me forever to find out how to fix it.

  • @triplebog
    @triplebog 8 лет назад +13

    Have you ever thought about playing Lose/Lose? That game is kind of like a virus in itself. I would love to see a video on it.

    • @themightypikachu2829
      @themightypikachu2829 7 лет назад

      Tar Alacrin I've never seen a Mac video on this channel.

    • @phrench64
      @phrench64 6 лет назад

      +TheMighty Pikachu Mac's dont really get viruses because of the way they are.

    • @sixfr0nt
      @sixfr0nt 5 лет назад +1

      I apologize for the extremely late reply, but Tom.K did a great video on Lose/Lose that you should check out.

  • @vicr123
    @vicr123 8 лет назад +3

    Your video editing isn't too bad. It's pretty good! :D

    • @Fyralism
      @Fyralism 6 лет назад

      Victor Tran omg I know you from is first timer

  • @ELMO7TARAMQ8
    @ELMO7TARAMQ8 4 года назад +1

    if the creator of that virus had made the virus trigger on all of the dates on the calender then it would be even harder to remove this virus

  • @Marcel_RSL
    @Marcel_RSL 4 года назад +2

    Reactor 4.exe has exploded

  • @nothingclick2786
    @nothingclick2786 2 года назад

    What is the stripped down Norton Antivirus. Just curious

  • @FF-Pineberry
    @FF-Pineberry 3 года назад +1

    CIH needs to change date to 26 April 1986. This date of Explosion the Chernobyl NPP.

  • @Industryman
    @Industryman 8 лет назад +7

    Question: I'm a computer geek, but want to know what it means when a virus "Writes its code to the end"?

    • @danooct1
      @danooct1  8 лет назад +26

      +Dodge it all | One Hour Specialty when a virus infects a file it will patch in code at the beginning of a file telling it to jump to a location at the end of the program. the virus writes its code there so when the program is run, it will jump to the virus, run the virus, then jump back to the host program and run the original program the user was trying to run. so trying to run any infected file will always load the virus.
      different viruses have different methods of infecting files, like CIH (nicknamed Spacefiller) will seek out empty pockets of space in a file when infecting it, rather than writing to the end of it, so that there's not an increase in the original file's size (which would alert the user that it had been altered in some way)

    • @Industryman
      @Industryman 8 лет назад +1

      +danooct1 Alright! Thank you for clearing the air!

  • @RRW359
    @RRW359 7 лет назад

    How did this (the virus) work? Wasn't this before NAND storage?

  • @disastra_tds
    @disastra_tds 8 лет назад +1

    7 people has destroyed BIOS...

  • @DriftHyena
    @DriftHyena 23 дня назад

    I built and ran this virus on my PII build. Only got one BSOD but it gave me a blank screen with a cursor and a solid hard drive light. Next reboot it never posted, but I made sure to backup the BIOS chip before hand and now I can at least get into BIOS. Next step is to restart the deleted hard drive segments and wipe it.

  • @IrtyGo560
    @IrtyGo560 10 месяцев назад

    If you run it on a VM will you have to reinstall the VM software?

  • @carsonp.7009
    @carsonp.7009 6 лет назад

    hey, at 1:59 why isnt the virus called CIH.exe like on the other vid, same OS right?

  • @windowsthebattler5806
    @windowsthebattler5806 4 года назад +1

    4:12 thank you for choosing the norton antivirus virus scanner to check your computer system for viruses

    • @danem2215
      @danem2215 4 года назад +1

      Thank you for dialing 911 for all your emergency services needs

    • @windowsthebattler5806
      @windowsthebattler5806 4 года назад

      @@danem2215 i never use 911, i use the 112!

  • @mattr2238
    @mattr2238 4 года назад +2

    Someone on github rewrote CIH to work on the NT kernel. It's still entirely in assembly language, and it's insane.

    • @partitionhlep
      @partitionhlep 3 года назад

      oh no

    • @mattr2238
      @mattr2238 3 года назад

      @@partitionhlep
      It doesn't really work though because it is still hardware specific, it requires kernel exploits that have been patched since win2k, and it requires borland turbo assembler. I tried assembling it and running it on a 64 bit win7 vm and it did nothing.
      If you wanted to create a CIH like virus in 2021, you need to start from scratch and use UEFI. Now that's scary, because UEFI is already completely broken.

    • @partitionhlep
      @partitionhlep 3 года назад

      @@mattr2238 my bios mode is legacy

    • @mattr2238
      @mattr2238 3 года назад

      @@partitionhlep
      That may very well be the case, but the expliot used by CIH is specific to the original IBM PC BIOS, not what we call legacy bios on modern computers. On modern computers, a legacy BIOS is typically a UEFI BIOS that uses a Compatibility Support Module to emulate some of the functionality of the original PC BIOS.
      Perhaps your computer came with the original Windows NT back in the 90s, in which case it does have a PC BIOS and is vulnerable to the destructive payload.

    • @partitionhlep
      @partitionhlep 3 года назад

      @@mattr2238 ok, i'm running windows 10 on a 2011 pc if you don't know

  • @Browningate
    @Browningate 4 года назад

    Good follow through.

  • @gummel82
    @gummel82 8 лет назад

    Which anti virus software are you using? Just curious

  • @szabotihamer
    @szabotihamer 8 лет назад +4

    Too bad there's no fix for the dead BIOS. It would have been nice if the bricked machine would have had a removable eprom chip. That way you could get an eprom burner and flash the old BIOS ROM back to the chip and resurrect the machine.

    • @GRBtutorials
      @GRBtutorials 5 лет назад +4

      Tihamér Szabó ? If the virus could overwrite the BIOS, you can reflash the BIOS as well.

    • @nororlol4life819
      @nororlol4life819 5 лет назад

      coreboot?

  • @jtotheroc
    @jtotheroc 6 лет назад

    @danoct1 is CIH short for something??

  • @vkvo2000
    @vkvo2000 8 лет назад +1

    Glad to see a living PC😎

  • @Yrouel86
    @Yrouel86 8 лет назад

    Nice, so did you repair that old pc that was nuked in the original video? With a programmer the BIOS can easily be reflashed

    • @Notevenmad955
      @Notevenmad955 8 лет назад

      if you can find a bios that old than its easy

    • @Notevenmad955
      @Notevenmad955 8 лет назад

      +I am not even mad then*

    • @dragonsky2884
      @dragonsky2884 8 лет назад

      +I am not even mad It's not like you can flash another BIOS that is compatible. It doesn't have to be the exact same one.

  • @LilZesty
    @LilZesty 8 лет назад

    you have no idea how much I would love to help you find viruses and record with you.

  • @lysandus
    @lysandus 8 лет назад

    How do you find specific viruses to test?

  • @blackblob500
    @blackblob500 8 лет назад

    I have a SE440-BX-2. Can It be infected with CIH?

  • @RaptorZX3
    @RaptorZX3 7 лет назад +1

    GRC is awesome to have made that Fix-CIH freeware!

  • @Veso266
    @Veso266 8 лет назад

    can you post CIH Removal files here?
    PS: Do you think this would work on an emulator that emulates physical BIOS? (something like PCem ( citadel.ringoflightning.net/pcem101_experimental.7z )?

  • @leperuna2475
    @leperuna2475 8 лет назад

    Nice, great video. Can you do more email worm showcases or something like that.

  • @kalvincj
    @kalvincj 4 года назад +2

    I guess this virus trashed my father's computer years ago.

  • @silversakaki1983
    @silversakaki1983 8 лет назад

    yay! new video!

  • @Synthematix
    @Synthematix 5 лет назад

    How did you get it to boot again?

  • @Keksnek
    @Keksnek 8 лет назад +1

    Wow, original video was made in 2012 ? I feel so old :D

  • @Merainee
    @Merainee 8 лет назад

    Back at it again with the virus tests! xD

  • @edgelordtv
    @edgelordtv 8 лет назад

    Best.......video......EVER!!!

  • @Mario583a
    @Mario583a 8 лет назад

    Is Danooct1 gonna be the new Rogueamp1/2 now??

  • @DimensionDevices
    @DimensionDevices 8 лет назад

    You should do a video on NRLG Nukes Randomic Life Generator. It (was) awesome - it's on VCHeavens

  • @raymanninja2194
    @raymanninja2194 8 лет назад

    What computer do you use

  • @modedrain_cbt_lover
    @modedrain_cbt_lover 8 лет назад +2

    i like how his real wallpaper is like a modern version of bubbles lmao

  • @concepcion_abel
    @concepcion_abel 4 года назад

    Porque el título del vídeo está en español si hablas ingles ? Saludos

  • @MayDay386
    @MayDay386 8 лет назад

    maybe is first video about removal of this virus?

  • @felixisdev
    @felixisdev 8 лет назад

    Is it hard to put a simple "BIOS Write Enable" switch on the computer? I think it's stupid, that the BIOS isn't read only

    • @LiEnby
      @LiEnby 5 лет назад

      Felix K on modern systems they decided to make EFI writable so it can be updated by the operating system (lol)