论文部分内容阅读
InitRun.B:该病毒复制和传播方式为短信,以一款音乐播放器软件的形式诱骗用户安装。病毒文件并不是直接包含在安装包中,而是被打在一个名为meta.inf的压缩包中。安装后病毒自动运行,并解压该压缩包,释放出真正的病毒可执行文件。稍后病毒可执行文件自动运行,并自动发送短信。病毒文件会自我复制,无法通过文件浏览器删除该病毒文件。BootHelper.C.D.E:
InitRun.B: This virus is copied and transmitted as a text message, tricking users into installing it in the form of a music player software. The virus file is not directly included in the installation package, but rather in a tarball called meta.inf. After the installation of the virus automatically run, and extract the compressed package, release the real virus executable file. Later, the virus executable file runs automatically and automatically send text messages. Virus files are self-replicating and can not be deleted by the file browser. BootHelper.C.D.E: