这个是个什么病毒啊名称是Infostealer.Aobys.怎么能彻底清除

来源:百度知道 编辑:UC知道 时间:2024/05/29 12:50:44
我用诺顿 可是怎么也清除不了这个病毒

Infostealer.Aobys分析2006-12-11 13:45来自SYMANTEC

TECHNICAL DETAILS (技术分析)
Discovered: December 9, 2006Updated: December 10, 2006 05:51:27 PM GMTType: Trojan HorseSystems Affected: Windows 2000, Windows 3.x, Windows 95, Windows 98, Windows CE, Windows Me, Windows NT, Windows Server 2003, Windows XP

Infostealer.Aobys is a Trojan horse that drops a rootkit component and may download remote files.

When the Trojan is executed, it performs the following actions:

Copies itself to the following location:

%Temp%\mhs.exe

Creates the following files:

%Temp%\mhs.dll
%Temp%\[RANDOM_NAME].dll
%Temp%\aoob.sys (detected as Hacktool.Rootkit)
%SYSTEM%\drivers\ope005.sys (detected as Hacktool.Rootkit)

Note:
%Temp% is a variable that refers to the Windows temporary folder. By default, this is C:\Windows\TEMP (Windows 95/98/Me/XP) or C:\WINNT\Temp (Wind