论文部分内容阅读
该病毒名称是I_WORM.MTX,是一个感染WINDOWS 9X/NT系统的32位PE格式的文件型病毒,同时也是INTERNET网络蠕虫类程序,病毒文件长度为18483字节。它修改WSOCK32.DLL系统文件,使受感染的系统的发送邮件增加自动发送附件的功能。受感染用户可能接受到一个带有附件的邮件。邮件附件的文件名是变化的,该邮件没有主题及内容。不管附件的文件名、扩展名如何变化,但是它其实都是一个PE格式的32位病毒程序。该病毒感染32位的PE格式文件,感染WINDOWS系统目录下的EXE文件
The virus name is I_WORM.MTX, is a 32-bit infected PE file system WINDOWS 9X / NT system virus, but also INTERNET network worm program, the length of the virus file is 18483 bytes. It modifies WSOCK32.DLL system files so that the infected system’s sending mail adds the ability to automatically send attachments. Infected users may receive an e-mail with an attachment. The file name of the email attachment is changed, and the email has no subject or content. Regardless of the file name of the attachment, how the extension changes, it is actually a 32-bit virus program in PE format. The virus infected 32-bit PE format file, infected WINDOWS system directory EXE file