请输入您要查询的百科知识:

 

词条 Trojan/PopMonster
释义

Trojan/PopMonster

病毒长度:变长

病毒类型:木马

危害等级:*

影响平台:Win9X/2000/XP/NT/Me

Trojan/PopMonster是一个不能自动激活的程序,运行时首先会进行安装。

传播过程及特征:

1.修改注册表:

添加下列键值:

HKEY_CURRENT_USER\\Software\\180solutions\\msbb

HKEY_LOCAL_MACHINE\\Software\\iefeatures\\ "lastdate"

HKEY_LOCAL_MACHINE\\Software\\iefeatures\\ "popstate"

HKEY_LOCAL_MACHINE\\Software\\iefeatures\\ "sys"

HKEY_LOCAL_MACHINE\\Software\\iefeatures\\ "userid"

HKEY_LOCAL_MACHINE\\Software\\iefeatures\\ "version"

HKEY_LOCAL_MACHINE\\Software\\Microsoft\\Windows\\CurrentVersion\\Run

"iefeatures" = "%Windir%\\IEFEATURES.exe"

HKEY_LOCAL_MACHINE\\Software\\Microsoft\\Windows\\CurrentVersion\\Run

"msbb" = "%Windir%\\MSBB\\MSBB.EXE"

HKEY_LOCAL_MACHINE\\Software\\Microsoft\\Windows\\CurrentVersion\\Run "MSVersion"

HKEY_LOCAL_MACHINE\\Software\\Microsoft\\Windows\\CurrentVersion\\Uninstall\\msbb

"DisplayName" = "PAD Lookups by n-CASE "

HKEY_LOCAL_MACHINE\\Software\\Microsoft\\Windows\\CurrentVersion\\Uninstall\\msbb

"default" = "UninstallString"

HKEY_LOCAL_MACHINE\\Software\\Microsoft\\Windows\\CurrentVersion\\Uninstall\CASE

"DisplayName" = "Interstitial Ad Delivery by n-CASE"

HKEY_CURRENT_USER\\Software\\Microsoft\\Internet Explorer\\Main

"Start Page" = "http://popnav.com"

HKEY_LOCAL_MACHINE\\Software\\Microsoft\\Internet Explorer\\Main

"Start Page" = "http://popnav.com"

2.生成文件:

%Windir%\\Desktop\\Eliminate Popups.url

%Windir%\\Desktop\\Internet Privacy Software.url

%Windir%\\Desktop\\Yahoo.url

%Windir%\\Favorites\\Ebay.url

%Windir%\\Favorites\\Search Now.url

%Windir%\\Favorites\\Stop Popups.url

%Windir%\\Favorites\\Internet Tools\\Internet Privacy Software.url

%Windir%\\Favorites\\Internet Tools\\Online Virus Scan.url

%Windir%\\Favorites\\Internet Tools\\Popup Blocker.url

%Windir%\\Favorites\\Search\\Search Casinos.url

%Windir%\\Favorites\\Search\\Search Dating.url

%Windir%\\Favorites\\Search\\Search Now.url

%Windir%\\Favorites\\Search\\Search Sports.url

%Windir%\\Favorites\\Shopping\\Best Buy.url

%Windir%\\Favorites\\Shopping\\Buy.com.url

%Windir%\\Favorites\\Shopping\\Ebay.url

%Windir%\\Favorites\\Shopping\\WalMart.url

%System%\\iefeatures.exe

%System%\\MSrdk.xml

%System%\\msbb\\kyf.dat

%System%\\msbb\\msbb.exe

随便看

 

百科全书收录4421916条中文百科知识,基本涵盖了大多数领域的百科知识,是一部内容开放、自由的电子版百科全书。

 

Copyright © 2004-2023 Cnenc.net All Rights Reserved
更新时间:2025/1/25 8:31:42