32-bit Internet worm βSysid.exeβ
π
Article
π
2000
π
Elsevier Science
π
English
β 156 KB
## C:\windows\ C:\windows\system\ C:\winnt\ C:\winnt\system32\ The virus modifies the registry to load at the next Windows startup. It also writes a VBScript file to the system as WINVER.VBS in an attempt to distribute itself via MAPI Email. It may arrive as one of a large number of attachments (fo