When the file attachment is executed, the worm copies itself to the Windows folder "Explorer.exe" and changes the Windows registry so that the code activates every time the computer is switched on. The Aphex worm arrives as an email attachment with...
The first time that Duload is run, it copies itself to the Windows system directory under the name "Systemconfig.exe", and edits the system registry so that it is automatically run whenever Windows is loaded.
The W32.Sahay.A@mm virus arrives as an attachment called "mathmagic.scr", with the subject "Fw: Sit back and be surprised. It attempts to attach itself to all the .exe file in the Windows and C:\Program Files\Mirc\download folders, but due to bugs...
Once activated the Palyh worm copies itself into the Windows directory under the name "MSCCN32.EXE" and registers this file in the system registry's auto-run key so that it is placed into system memory and automatically launched upon operating...
The attachment bearing Bugbear.B arrives as a .exe, .pif or .scr file. But may appear for example as document.doc.exe - in attempt to dupe users into thinking it is a Word file. As ever, caution is advised when opening any attachment.
Here's a nice Christmas screensaver instead :)," and the message carries an attachment called xmas.scr. When executed, the file becomes resident in memory and sends messages to other MSN Messenger users every five minutes, prompting them to...