Lamer Exterminator is an Amiga boot block virus first detected in Germany in October 1989. It infects the boot block area of disks, residing in the first 1024 bytes, and is notable in malware history as an early example of a defensive or stealth-oriented virus on the Amiga platform. The malware hooks system functionality so that inspection of an infected boot block appears normal, and it encrypts itself when replicating, with known variants using multiple decryption routines of differing complexity.
After infection, Lamer Exterminator overwrites the boot block, remains resident in memory, and persists across resets by hooking into the system. Beyond replication and concealment, it is destructive: it repeatedly overwrites media blocks, causing read/write errors, filesystem corruption, and unrecoverable data loss. It is widely remembered as one of the more feared destructive Amiga viruses of the late 1980s.
Mallory pivots from this family to the IOCs, detections, and named campaigns that touch your stack, and pages you when something new lands.
16 sources tracked across advisories, community write-ups, and news. New activity surfaces here as Mallory finds it.
Named 1980s-era malware (listed as part of a historical timeline). No behavior details provided in the content.
Computer virus (only referenced by name in the 1980s malware timeline; no additional details provided).
An early destructive virus for the Amiga with a payload that wiped storage media data blocks.
Hacking in the 1980s ... Malware ... Jerusalem ... Lamer Exterminator ... MacMag
Match every observed IP, domain, and hash against your live telemetry.
Named campaigns wielding this family, with evidence pinned to each claim.
CVEs this family uses for access and lateral movement.
YARA, Sigma, Snort, and vendor rules, auto-deployed to your SIEM.
Every documented technique, ranked by evidence weight.
Reddit, Mastodon, and CTI community discussion around this family.