Search Solo Products, Services and others Overview of the Site Design and Build a Career Contact us for customer service and other feedback info SRN Micro Privacy Statement

 


VBS/ANJULIE WORM REPORTED IN THE WILD

Virus Name  : VBS/Anjulie

Alias             : I-Worm.Anjulie, VBS_ANJULIE

Virus type    : VBScript worm

Threat level : Low

Virus details :

                     VBS/Anjulie is a Visual basic script worm uses Microsoft outlook to spread and also drops the deadly Win95/CIH virus. The email message subject will be "Read the true history on Angelina Julie " and the attachment will be "AngelinaJulie.txt.vbs, or T4UMHF5.VBS " and the message body will be "Your life Your work Your lovers ".

                     The VBS extension will not appear if Windows Scripting Host is installed. When you open the attachment, it copies to windows temp as T4UMHFS.VBS and also drops the file ALE32.EXE. Then it opens the Microsoft Outlook Address book and sends email to all the addresses stored in that.

It also creates a new key in the registry to load automatically. Because of the mass mailing routine there is a threat to down e-mail servers. The CIH virus dropped by this worm will attempt to damage hard disk and mother board.

HKLM\Software\Microsoft\Windows\CurrentVersion\RunServices
\T4UMHF5=C:\WINDOWS\TEMP\T4UMHF5.VBS

How can I protect my system?

                   Solo has incorporated VBS/Anjulie in its signature file to protect users from this worm attack. Solo antivirus registered users are already protected from this worm. Make sure that you have installed registered version of Solo Antivirus to protect your system from all virus threats.

                   To protect your system against infection, disable Windows Scripting Host by following these steps: Click the Start button, Settings, Control Panel, then select Add/Remove Programs, then select the Windows Setup tab, then double-click Accessories, scroll down to Windows Scripting Host, and uncheck the box. Save changes and close the window.

How to remove this worm?

                   You can check the system manually. VBS/Anjulie worm creates the file "T4UMHF5.VBS" in the Windows Temp folder. The presence of this file ensures you are infected with this worm.  

                   If you are already infected with this worm, you can remove it from your computer using Solo Antivirus software. Solo antivirus can detect and remove VBS/Anjulie safely. Use the following link to Download 30 day trial version of Solo antivirus to remove viruses from your computer.

                   Solo anti-virus not only scans for all viruses, it contains a unique System Integrity Checker to protect you from New Internet Worms, Backdoors and malicious VB, Java Scripts. It also effectively removes all existing Internet Worms, File viruses, malicious VB, Java scripts, Trojans, Backdoors, boot sector, partition table and macro viruses.

You can purchase Solo antivirus using the link