Is the Happy Hour virus a computer virus?
## Happy Hour
The Happy Hour virus is a VB Source program viruses specifically infect .htm, .html, .vbs, .asp and .htt files. It spreads itself as an attachment to an email and exploits a performance flaw in Outlook Express, a known security flaw in Microsoft Outlook Express that can run itself without you running any attachments. I also used the stationery function of Outlook Express to copy myself on the Html template of the stationery for dissemination.Poisoning Symptoms
When "Happy Hour" attacks:
·It will Disguise yourself as a Help.hta, Help.vbs, Help.htm or Untitled.htm file. ·It will change the key value on HKEY_CURRENT_USER\Software\Help\Count in the registry and update the number of infected files.The sum of the month and the date is equal to 13
·When the sum of the month and the date is equal to 13, the source virus will delete all .exe and .dll files. ·Each email containing the "Happy Hour" virus will have the following format: Subject: HelpMessage: (The message body is empty)Attachment: Untitled.htm (infected attachment)Email-infected files: .htm, .vbs, .asp or .htt file names will be stored in In the HKEY_CURRENT_USER\Software\Help\FileName of the system registry. Related recommendations: "FAQ"
Whenever 366 infected people
·Every time 366 people When an infected person is infected, the following two things have an equal chance of happening: One is that all letters stored in the inbox will be replied to in the following form: Subject: Fw: < Initial sender address>Message: (The message body is empty)Attachment: Untitled.htm (Infected attachment)Another situation is as follows Send an email to all default contacts in the form of: Subject: HelpMessage: (The message body is empty)Attachment: Untitled.htm (Infected attachment)Default Wallpaper
·The virus source program creates a new default wallpaper and displays an infected Help.htm page so that the virus can automatic running. In order to better hide itself, it will try to use the same wallpaper as before being infected. ·The source virus infects the .htt file under the Windows\web folder. Hypertext template files are used to design and view the contents of folders. If you set up to browse folders via the Web, then every folder you browse will be infected.Default stationery format
·The virus will set a default stationery format. Every time you send a letter, it will be sent to other people's computers together with the body of the letter. , through such replication, it continues to spread. It should be noted that if your Email program or Email server does not support letters in Html format, the Email program or Email server will convert the letters into attachments and send them to you. If you open the attachment, you will also be infected with the "Happy Hour" virus. Symantec Security Response has developed a program to recover computers infected by "VBS.Haptime.A@mm" or "VBS.Haptime.B@mm".How to delete the virus
·Need to delete the .htt file and all detected "VBS.Haptime.A@mm", delete The key value added by the virus in the registry can be used to reset your Outlook Express. ·Update your anti-virus program to make sure you have the latest virus definitions. ·Open Symantec Antivirus (NAV) and run a full system scan to ensure that all files are scanned. ·Change the registry: Click Start, click Run; enter "regedit", click OK, the registry will open; find the following and delete the key value: HKEY_CURRENT_USER\Software\Help\Count HKEY_CURRENT_USER\Software\Help\FileNameExit the Registry Editor. ·Reset Microsoft Outlook Express: Open Outlook Express; click Tools, click Options; click Spelling; in the stationery options, if you do not select stationery when sending the letter, do not select Mail; otherwise, select what you want Letter paper used. Microsoft has designed a patch for this security vulnerability that exists in the "Scriptlet.TypLib" network multimedia technology control. If you install this patch, the "Happy Hour" virus will no longer run automatically.The above is the detailed content of Is the Happy Hour virus a computer virus?. For more information, please follow other related articles on the PHP Chinese website!

Hot AI Tools

Undresser.AI Undress
AI-powered app for creating realistic nude photos

AI Clothes Remover
Online AI tool for removing clothes from photos.

Undress AI Tool
Undress images for free

Clothoff.io
AI clothes remover

AI Hentai Generator
Generate AI Hentai for free.

Hot Article

Hot Tools

Notepad++7.3.1
Easy-to-use and free code editor

SublimeText3 Chinese version
Chinese version, very easy to use

Zend Studio 13.0.1
Powerful PHP integrated development environment

Dreamweaver CS6
Visual web development tools

SublimeText3 Mac version
God-level code editing software (SublimeText3)

Hot Topics

The 2024CSRankings National Computer Science Major Rankings have just been released! This year, in the ranking of the best CS universities in the United States, Carnegie Mellon University (CMU) ranks among the best in the country and in the field of CS, while the University of Illinois at Urbana-Champaign (UIUC) has been ranked second for six consecutive years. Georgia Tech ranked third. Then, Stanford University, University of California at San Diego, University of Michigan, and University of Washington tied for fourth place in the world. It is worth noting that MIT's ranking fell and fell out of the top five. CSRankings is a global university ranking project in the field of computer science initiated by Professor Emery Berger of the School of Computer and Information Sciences at the University of Massachusetts Amherst. The ranking is based on objective

Windows Remote Desktop Service allows users to access computers remotely, which is very convenient for people who need to work remotely. However, problems can be encountered when users cannot connect to the remote computer or when Remote Desktop cannot authenticate the computer's identity. This may be caused by network connection issues or certificate verification failure. In this case, the user may need to check the network connection, ensure that the remote computer is online, and try to reconnect. Also, ensuring that the remote computer's authentication options are configured correctly is key to resolving the issue. Such problems with Windows Remote Desktop Services can usually be resolved by carefully checking and adjusting settings. Remote Desktop cannot verify the identity of the remote computer due to a time or date difference. Please make sure your calculations

<p>MSTeams is the trusted platform to communicate, chat or call with teammates and colleagues. Error code 80090016 on MSTeams and the message <strong>Your computer's Trusted Platform Module has failed</strong> may cause difficulty logging in. The app will not allow you to log in until the error code is resolved. If you encounter such messages while opening MS Teams or any other Microsoft application, then this article can guide you to resolve the issue. </p><h2&

The "e" of computer is the scientific notation symbol. The letter "e" is used as the exponent separator in scientific notation, which means "multiplied to the power of 10". In scientific notation, a number is usually written as M × 10^E, where M is a number between 1 and 10 and E represents the exponent.

The meaning of cu in a computer depends on the context: 1. Control Unit, in the central processor of a computer, CU is the component responsible for coordinating and controlling the entire computing process; 2. Compute Unit, in a graphics processor or other accelerated processor, CU is the basic unit for processing parallel computing tasks.

Occasionally, the operating system may malfunction when using a computer. The problem I encountered today was that when accessing gpedit.msc, the system prompted that the Group Policy object could not be opened because the correct permissions may be lacking. The Group Policy object on this computer could not be opened. Solution: 1. When accessing gpedit.msc, the system prompts that the Group Policy object on this computer cannot be opened because of lack of permissions. Details: The system cannot locate the path specified. 2. After the user clicks the close button, the following error window pops up. 3. Check the log records immediately and combine the recorded information to find that the problem lies in the C:\Windows\System32\GroupPolicy\Machine\registry.pol file

After a mobile phone is infected with a certain Trojan virus, it cannot be detected and killed by anti-virus software. This principle is just like a computer infected with a stubborn virus. The virus can only be completely removed by formatting the C drive and reinstalling the system. , then I will explain how to completely clean the virus after the mobile phone is infected with a stubborn virus. Method 1: Open the phone and click "Settings" - "Other Settings" - "Restore Phone" to restore the phone to factory settings. Note: Before restoring factory settings, you must back up important data in the phone. The factory settings are equivalent to those of the computer. "It's the same as formatting and reinstalling the system". After the recovery, the data in the phone will be cleared. Method 2 (1) First turn off the phone, then press and hold the "power button" + "volume + button or volume - button" on the phone at the same time.

What should I do if the edge browser detects a virus and cannot download it? The edge browser is the default browser software for our Microsoft system computers, and it is also a browser software used by many friends. When downloading a file in the edge browser, it will be scanned by the computer's default security protection. If it is determined to be a risky file, it cannot be downloaded normally. If you must download the file, follow the editor to see if it cannot be downloaded. Let’s introduce the solution to the file. What should I do if the edge browser detects a virus and cannot download? 1. Open the edge browser settings and find private search and services - scroll down to find "Security" - turn off Microsoft Defender Smartscreen; 2. Then open our