Jump to content


Photo

Undetected Cooties


  • This topic is locked This topic is locked
1 reply to this topic

#1 CopyDoc

CopyDoc

    New Member

  • Members
  • Pip
  • 1 posts
  • Gender:Male

Posted 22 June 2012 - 08:52 PM

Not sure if this is a new strain of the Live Security virus (ransomware) or something similar, but here are two virus exe that seem related and are planting themselves inside the prefetch folder and within registry.

Other is called VMR Allocator.

is showing two launchers, so could be two seperate items, but got them both at the same time and was a bit annoying for a couple hours, but since it did the standard disable of C/A/D, I couldn't access task man so went in via safe mode to shut it down and traced the files down from there to /all users/application data/. Used msconfig to locate registry entry

hope this helps and is actually a true virus, does appear to be...

First timer here, so forgive any errors...

CopyDoc

Attached Files

  • Attached File  VMR.zip   370.15KB   15 downloads


#2 sUBs

sUBs

    Forum Deity

  • Moderators
  • PipPipPipPipPipPip
  • 8,316 posts

Posted 22 June 2012 - 08:59 PM

Thank you for your help. Attached file will be verified.
sUBs
Research Engineer

Posted Image

Follow us: Twitter, Become a fan: Facebook




0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users