- ExploreZip
ExploreZip, also known as I-Worm.ZippedFiles, is a destructive
computer worm which attacks machines runningMicrosoft Windows . It was first discovered inIsrael onJune 6 ,1999 .Distribution
It is distributed in the form of an
e-mail message with the words:"Hi!"
"I have received your email and I shall send you a reply ASAP. Till then take a look at the attached zipped docs."
"Bye!"
Payload
The message includes an attachment with the name ZIPPED_FILES.EXE. If opened, a
dialog box appears in Windows resembling the one normally appearing when opening a corrupted Zip archive, while the worm copies itself onto the machine's hard drive, while modifying theWIN.INI file (Windows 9x ) or theWindows Registry (Windows NT ) so that it re-executes onreboot .The worm looks for a copy of
Microsoft Outlook to mail itself to all other people in the user'saddress book and also destroysMicrosoft Office documents and C andC++ source files on the user's hard-drive by overwriting them with zero-byte files.External links
* [http://www.symantec.com/security_response/writeup.jsp?docid=2000-121514-1418-99 Worm.ExploreZip – Symantec.com]
* [http://www.ciac.org/ciac/bulletins/j-047.shtml The ExploreZip worm - Computer Incident Advisory Capability] (US Department of Energy )
Wikimedia Foundation. 2010.