病毒名称:
Worm.Babyboy
类别: 蠕虫
病毒资料:
破坏方法:
一个用vb编写的蠕虫病毒
病毒行为:
该病毒运行后将自己复制到%windows%目录文件名为:TskMgr.exe
并在注册表HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\RunServices
加入自己的键值:TaskManger
邮件标题:
Here is the Setup
Here is the Setup you asked me for
Hey, check this out
Hi, check this out
I found this, finally it's about time
I have done you this favour, now you owe me (Hehe)
I downloaded this, I thought you might want it too
It's a babyboy
Outlook.Application
This is a useful program, so I thought I should send it to you
I got it, (Yay). Here it is
We have waited so long for this, finally I got it. Here it is
It's about time, it has taken awhile but here it is
It's just what we were after
邮件附件:
Excel2004.exe
F-Secure2004 (With Serialcode).exe
Icq2004.exe
McAfee2004 (With Serialcode).exe
MSN7 (Latest Edition).exe
Norton2004 (With Serialcode).exe
PassWordCracker.exe
PopupKiller.exe
PopupRemover.exe
SerialCracker.exe
Setup.exe
TrendMicro2004 (With Serialcode).exe
WinRAR (Limited Edition).exe
WinZip (Limited Edition).exe
YahooMsg2004.exe
病毒的清除法:
使用光华反病毒软件,彻底删除。
病毒演示:
病毒FAQ:
Windows下的PE病毒。
发现日期:
2003-12-1