登入
歡迎您,
Language:
繁體中文
English
Deutsch
Français
Español
Italiano
Nederlands
Português
Türkçe
Русский
日本語
简体中文
繁體中文
한국어
欲瞭解有關我們公司和產品的更多資訊,
請訪問我們的全球網站
。
家庭及個人防護
企業資訊安全
技術支援
聯絡我們
Search
摘要
病毒說明
統計資料
Alias:
Worm/Readme
Type:
Worm
Size:
24.576 Bytes
Origin:
Date:
09-06-2001
Damage:
Sent by email.
VDF Version:
6.23.00.00
Danger:
Low
Distribution:
Low
Distribution
It sends itself by email using Microsoft Outlook. The email sent by the worm has the following structure:
Subject: As per your request!
Body: Please find attached file for your review I lokk forward to hear form your again very soon. Thank you.
Attachment: README.EXE
Technical Details
W32/Apost is an Internet worm, programmed in Visual Basic 6. If the worm is activated, a window appears indicating a false WinZip error message. When the user clicks on "Aceptar" button, the worm sends itself by email, using Microsoft Outlook Address Book. After sending emails, another window appears.
The worm creates copies of itself in Windows directory and in root directories of the local drives (C:\; D:\; ...) as README.EXE, which has the standard Visual Basic 6 application icon.
The worm makes the following registry entry:
HKCU\Software\Microsoft\Windows\Current Version\Run\macrosoft = %Windows%\Readme.exe
說明撰寫者 Crony Walker 開啟 2004年6月15日星期二
返回
.
.
.
.
我的帳戶
https
://
為了你的安全,此視窗已加密。
登入
忘記密碼
重設密碼
我的個人檔案
產品
付款歷程記錄
通知
密碼重設
聯絡我們
登出