Through monitoring the Internet, the National Computer Virus Emergency Center found an abnormal virus email on March 1 2004. After analysis, it is confirmed that the virus is another variant of "CyberSky" virus. At the same time, some characteristics of this variant are the same as Worm_Netsky. C, for example, the virus file name generated under the windows folder, can be started by modifying the registry key value, and some registry key values are deleted. We named this virus Worm_Netsky. The virus has spread in the United States, Japan and France. And it has already appeared in China.
This variant has no new technology and function, only changes have been made in the theme, content and attachment of the virus email. The virus attachment needs to be clicked to run the virus before it can break out. Therefore, the most important thing for users is to upgrade their anti-virus software immediately, start the functions of "real-time monitoring" and "mail monitoring", be vigilant when receiving emails, and don't open the attachments of emails easily.
This virus is a worm spread by mail. The sender, subject, content and attachment of the virus email are not fixed, and the attachment is a. pif file. When the virus runs, it will generate virus files, modify and delete registry keys.
/content/Worm_Netsky。 D.htm