Uploaded April 2011 | Updated September 2026, 3 weeks ago
This worm sends 2 kinds of e-mails depending on choice. If you enter password in and press OK, your friends might screw you up.
Aliases:
Email-Worm.Win32.Crock (Kaspersky Lab)
I-Worm.Crock (Kaspersky Lab)
Virus: W32/Danvee@MM (McAfee)
W32/Crock-A (Sophos)
Worm.Crock (ClamAV)
Worm Generic.LC (Panda)
W32/VBTrojan.Downloader.1D!Maximus (FPROT)
Trojan:Win32/Meredrop (MS(OneCare))
Win32.HLLM.Generic.199 (DrWeb)
unknown NewHeur_PE virus (Nod32)
Generic.Malware.PV.90753BCE (BitDef7)
I-Worm.Crock!hstM15jR5nw (VirusBuster)
Win32:Crock [Wrm] (AVAST)
Email-Worm.Win32.Danvee (Ikarus)
Worm/Generic.KHK (AVG)
TR/Crypt.XPACK.Gen (AVIRA)
W32.Danvee@mm (NAV)
NseCheckFile2() returned 0x00010018 (Norman)
I-Worm.Crock!hstM15jR5nw (VirusBusterBeta)
This worm sends 2 kinds of e-mails depending on choice. If you enter password in and press OK, your friends might screw you up.
Aliases:
Email-Worm.Win32.Crock (Kaspersky Lab)
I-Worm.Crock (Kaspersky Lab)
Virus: W32/Danvee@MM (McAfee)
W32/Crock-A (Sophos)
Worm.Crock (ClamAV)
Worm Generic.LC (Panda)
W32/VBTrojan.Downloader.1D!Maximus (FPROT)
Trojan:Win32/Meredrop (MS(OneCare))
Win32.HLLM.Generic.199 (DrWeb)
unknown NewHeur_PE virus (Nod32)
Generic.Malware.PV.90753BCE (BitDef7)
I-Worm.Crock!hstM15jR5nw (VirusBuster)
Win32:Crock [Wrm] (AVAST)
Email-Worm.Win32.Danvee (Ikarus)
Worm/Generic.KHK (AVG)
TR/Crypt.XPACK.Gen (AVIRA)
W32.Danvee@mm (NAV)
NseCheckFile2() returned 0x00010018 (Norman)
I-Worm.Crock!hstM15jR5nw (VirusBusterBeta)



![E-mail Worm (Windows): Lorie (1,000 Subscribers Special)
Yea, after very long time, Ive finally decided to upload this as I didnt know what to upload at all. I couldnt find any kind of special worm like this one.
Warning - Ear Rape - Annotation added before it.
There are 5 payloads in this worm:
On every Monday, Wednesday and Friday, it shows some picture of woman and a message.
On every Tuesday, Thursday and Saturday, if the time is 20 or 40 minutes past an hour, shows another image of that woman and same message but with no color effect, but if the time is 15 or 30 minutes past an hour, it shows a warning message with no further effect than spamming it out.
On every Sunday, it shows error message which causes to restart computer if OK is pressed. Though, this gives out some crashing due to overloading messages.
And finally, on Friday 13th, it shows another error message and writes in AUTOEXEC.BAT commands for formatting drive and to set volume of drive to LILY.
Minor payload is that it disables adjusting date and time, so I couldnt change it after infection. However, payloads stop when requirements for payloads arent met, but payloads may combine, too.
And thanks to everyone who subscribed and still likes videos!
Aliases:
Email-Worm.Win32.Lorie (Kaspersky Lab)
I-Worm.Lorie (Kaspersky Lab)
Virus: W32/Lorie@MM (McAfee)
W32/Lorie-A (Sophos)
Worm.Lorie (ClamAV)
W32/Lorie (Panda)
W32/Malware!80a3 (FPROT)
Backdoor:Win32/Lorie.A (MS(OneCare))
Win32.HLLM.Lorie (DrWeb)
Win32/Lorie.A worm (Nod32)
Trojan.Generic.1926215 (BitDef7)
Win32.Lorie (VirusBuster)
Win32:Lorie [Wrm] (AVAST)
Email-Worm.Win32.Lorie (Ikarus)
I-Worm/Lorie (AVG)
WORM/Lorie (AVIRA)
W32.Lorie@mm (NAV)
W32/Lorie.A (Norman)
W32/Lorie@MM (NAI)
TROJ_LORIE.A (PCCIL)
Worm.Mail.Lorie (Rising)
TROJ_LORIE.A (TrendMicro) E-mail Worm (Windows): Lorie (1,000 Subscribers Special)](https://i.ytimg.com/vi/UQiIm83mC6g/mqdefault.jpg)


![Virus (Windows): HPS.5124
Captions will come soon.
Flips images and infects portable executable files, checks are files infected by dividing their file size in bytes with 101 on Saturdays. If there is no remainder, its infected.
Aliases:
Win9x.HPS.5124 (Kaspersky Lab)
Win95.HPS.5124 (Kaspersky Lab)
Virus: W95/HPS.gen (McAfee)
W95/Hanta-PS (Sophos)
W95/HPS (Panda)
W32/HPS.5124 (FPROT)
Virus:Win95/HPS.5104 (MS(OneCare))
Win95.HPS (DrWeb)
Win95/Hps virus (Nod32)
Win95.HPS.5116 (BitDef7)
Win95.Hanta.5124 (VirusBuster)
Win32:Hanta (AVAST)
Win95:Hanta-PS (AVAST)
Virus.Win9x.HPS (Ikarus)
W95/HPS.5124 (AVG)
W95/Hanta.PS.1 (AVIRA)
W95/Hanta (AVIRA)
W95.HPS (NAV)
W32/HPS.5124 (Norman)
W95/HPS.gen (NAI)
PE_HPS.A (PCCIL)
Win32.HPS (Rising)
Virus.Win9x.HPS.5124 [AVP] (FSecure)
PE_HPS.A (TrendMicro)
Win95.Hanta.5124 (VirusBusterBeta) Virus (Windows): HPS.5124](https://i.ytimg.com/vi/UtgBhvsaZIU/mqdefault.jpg)



