Author Topic: New virus for the Grinder  (Read 2632 times)

0 Members and 1 Guest are viewing this topic.

flamingpope

  • Guest
New virus for the Grinder
« on: December 03, 2010, 11:24:05 PM »
hxxp://rogueprojects.org/TRash/vslujqusk.zip
~450 Kb, WARNING: This IS a virus, do not open unless you are a virus collector or avast dev team

Infected user temp folder. Avast detected a threat(incoming) but failed to eliminate threat. After virus installed itself, disabled avast, changed proxy settings, disabled task manager.

Found virus in safe mode and placed here for the grinder. Note: after renaming, avast scanned the exe and found it clean. Read: This was a FAIL on Avast's part to recognize the virus.

Virus Origin: piratebay.org(home search bar)
« Last Edit: December 04, 2010, 12:12:29 AM by misak »

Offline Pondus

  • Probably Bot
  • ****
  • Posts: 37597
  • Not a avast user
Re: New virus for the Grinder
« Reply #1 on: December 03, 2010, 11:31:39 PM »
dont post download links to malware in the forum. please remove the link

next time send to virus@avast.com in a password protected zip.file with subject: undetected sample and password: infected
« Last Edit: December 03, 2010, 11:39:48 PM by Pondus »

Offline Pondus

  • Probably Bot
  • ****
  • Posts: 37597
  • Not a avast user
Re: New virus for the Grinder
« Reply #2 on: December 03, 2010, 11:36:25 PM »

Offline misak

  • Moderator
  • Sr. Member
  • *
  • Posts: 234
    • Personal page (CZE)
Re: New virus for the Grinder
« Reply #3 on: December 04, 2010, 12:19:25 AM »
thank you for samples... will be detected in VPS 101204-0