传播方式:
1.电子邮件;
2.共享网络;
3.光盘;
4.网上下载;
5.FTP;
6.软盘;
病毒描述:
该木马是用Visual Basic 6编写的,不会对被感染机器造成任何危害,但会使人产生恐惧及厌恶情绪,它可能随时发作,发作时会:
1.在屏幕上显示恐怖的女鬼图片;
2.不断打开及关闭光驱;
修改注册表,创建如下键值:
1.HKLMSoftwareMicrosoftWindowsCurrentVersionRun=
%Registry path where the file was run % gfg.exe
2.HKLMSoftwareMicrosoftWindowsCurrentVersionRunServices=
%Registry path where the file was run% gfg.exe
这使得它会在每次机器启动时自动运行。
清除方法:
1.更新您的杀毒软件的病毒库;
2.删除注册表中病毒创建的键值:
HKLMSoftwareMicrosoftWindowsCurrentVersionRun=
%Registry path where the file was run % gfg.exe
HKLMSoftwareMicrosoftWindowsCurrentVersionRunServices=
%Registry path where the file was run% gfg.exe
3.重启机器;
4.利用杀毒软件进行扫描,一旦发现,立即杀除。



