Worm.Beagle.fa

王朝other·作者佚名  2008-08-14
窄屏简体版  字體: |||超大  

病毒名称(中文):

恶鹰fa

病毒别名:

威胁级别:

★☆☆☆☆

病毒类型:

蠕虫病毒

病毒长度:

15497

影响系统:

Win9xWinMeWinNTWin2000WinXPWin2003

病毒行为:

这是一个通过邮件传播的病毒,该病毒会搜索用户机器上的邮件地址向其发送病毒本身,修改host文件阻止用户升级和获取病毒信息.对用户的影响极大.

1.生成文件:

%system%\winlog.exe

%system%\winlog.dll

2.添加注册表起始项,使病毒开机启动:

HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run

"key2"

%system%\winlog.exe

3.修改host文件,使常见安全软件无法升级:

avp.ch

avp.com

avp.ru

awaps.net

banner.fastclick.net

banners.fastclick.net

ca.com

www.ca.com

click.atdmt.com

clicks.atdmt.com

customer.symantec.com

dispatch.mcafee.com

download.mcafee.com

download.microsoft.com

downloads-eu1.kaspersky-labs.com

downloads-us1.kaspersky-labs.com

downloads-us2.kaspersky-labs.com

downloads-us3.kaspersky-labs.com

downloads.microsoft.com

downloads1.kaspersky-labs.com

downloads2.kaspersky-labs.com

downloads3.kaspersky-labs.com

downloads4.kaspersky-labs.com

engine.awaps.net

f-secure.com

fastclick.net

ftp.avp.ch

ftp.downloads2.kaspersky-labs.com

ftp.f-secure.com

ftp.kasperskylab.ru

ftp.sophos.com

go.microsoft.com

ids.kaspersky-labs.com

kaspersky-labs.com

kaspersky.com

liveupdate.symantec.com

liveupdate.symantecliveupdate.com

mast.mcafee.com

mcafee.com

media.fastclick.net

msdn.microsoft.com

my-etrust.com

nai.com

networkassociates.com

office.microsoft.com

phx.corporate-ir.net

rads.mcafee.com

secure.nai.com

securityresponse.symantec.com

service1.symantec.com

sophos.comspd.atdmt.com

support.microsoft.com

symantec.com

trendmicro.com

update.symantec.com

updates.symantec.com

updates1.kaspersky-labs.com

updates2.kaspersky-labs.com

updates3.kaspersky-labs.com

updates4.kaspersky-labs.com

updates5.kaspersky-labs.com

us.mcafee.com

vil.nai.com

viruslist.com

viruslist.ru

windowsupdate.microsoft.com

www.avp.ch

www.avp.com

www.avp.ru

www.awaps.net

www.ca.com

www.f-secure.com

www.fastclick.net

www.grisoft.com

www.kaspersky-labs.com

www.kaspersky.com

www.kaspersky.ru

www.mcafee.com

www.my-etrust.com

www.nai.com

www.networkassociates.com

www.sophos.com

www.symantec.com

www.trendmicro.com

www.viruslist.com

www.viruslist.ru

www3.ca.com

 
 
 
免责声明:本文为网络用户发布,其观点仅代表作者个人观点,与本站无关,本站仅提供信息存储服务。文中陈述内容未经本站证实,其真实性、完整性、及时性本站不作任何保证或承诺,请读者仅作参考,并请自行核实相关内容。
 
 
© 2005- 王朝網路 版權所有 導航