Worm.DellCom

Worm.DellCom 計算機病毒,傳染條件:通過網路高速傳播,影響系統:Win9x/WinMe/WinNT/Win2000/WinXP/Win2003

基本介紹

  • 中文名:計算機病毒
  • 外文名:Worm.DellCom
  • 別名:Worm.P2P.gen [AVP]
  • 威脅級別:★
  • 病毒類型:蠕蟲
  • 傳染條件:通過網路高速傳播
  • 影響系統:Win9x/WinMe/WinNT/Win2000/WinXP/Win2003
系統修改
A、在系統目錄下添加以下檔案:
%System%DellCom.exe
%System%DellCom.exe-up.txt
以及一個資料夾:
%System%kazaabackupfiles
在該資料夾下包含如下檔案:
vicecity.exe
gtafull.exe
gta crack.exe
Harry_PotteR_TETRIS.exe
crazy taxi 2.exe
doom3 beta.exe
quake 3 mods.exe
half-life.exe
RA21006EN.exe
hl1110.exe
osp-Quake3-1[1].01_full.exe
q3pointrelease_131.exe
osp-wolf-0.21.exe
Wolf_Update_141_full.exe
Diablo Dupe Hack.exe
Diablo Map Hack.exe
Starcraft Map hack.exe
half life bunny hop.exe
Half life wall hack.exe
Half life skin hack.exe
Hacktoolz.exe
PeeLover_game.exe
Lord_of_the_rings_screensaver.exe
Harry_Potter_screensaver.exe
Enrique Iglesias ScreenSaver.exe
Ja Rule ScreenSaver.exe
Pamela_Anderson vs Tommy_lee screensaver.exe
Trillian_pro_plugins.exe
Trillian Pro.exe
ICQ_Message_bot.exe
Yahoo!_Message_Bot.exe
Paltalk_pwd_hacker.exe
Paltalk_AntiBouncer.exe
Credit_Card_Gen_5.50.exe
Windows_xp_Media_center_hacker.exe
Hotmail_pwd_hacker.exe
Yahoo!_hacker.exe
XXX_Passwords.exe
WinXP_KeyGen.exe
WinMX_Backdoor_Hack.exe
Windows_XP_Keygen.exe
Windows_XP_Backdoor_Hack.exe
Windows_Hacker.exe
Windows_98_Hacker.exe
WinACE_With_Crack.exe
Warcraft_3_Keygen.exe
Warcraft_3_Crack.exe
Mirc crack.exe
mIRC_Backdoor_hack.exe
Nero Full Version.exe
lolita-dialer.exe
lolita.exe
Aol_passwordcrack.exe
XXX_Password_Generator.exe
popup_stopper.exe
KazaaLite.exe
Kmd_171.exe
Kazaa_Advertisement_Remover.exe
Kazaa_Ad_Remover.exe
IRC_Hacker.exe
ICQ_Password_Stealer.exe
ICQ_Hack.exe
ICQ_AIM_Password_Stealer.exe
Nero Crack.exe
Hot_Sex.exe
Hentai.exe
Aol_Punter.exehacking_Tools.exe
Aol_Password Steal.exe
Aol_Hacker.exe
Aim_Punter.exe
Aim_Password_Stealer.exe
Aim_Hacker.exe
B、在註冊表主鍵
HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindowsCurrentVersionRun
下添加如下鍵值:
"DellComp" = "DELLCOM.exe"
HKEY_CURRENT_USERSOFTWAREMicrosoftWindowsCurrentVersionRun
下添加如下鍵值:
"DellComp" = "DellCom.exe"
添加子鍵:
HKEY_CURRENT_USERSOFTWAREKAZAALocalContent
並在其下添加如下鍵值:
"Dir0" = "012345:%System%kazaabackupfiles"
C、該病毒運行後,還會刪除第一次運行時的檔案。
發作現象:
特別說明:

熱門詞條

聯絡我們