2012/08/06

Fake AV - Windows Interactive Safety

Windows Interactive Safety - next rogue from Fake Vimes family.

Malware MD5: a7bf42b967a2f306f841093ac187e90d
File size: 2955264 Bytes 
Files created:
C:\Documents and Settings\Administrator\Application Data\Protector-avtj.exe ( or other ) 
Files read:
C:\Documents and Settings\UserName\My Documents\desktop.ini
C:\Documents and Settings\All Users\Documents\desktop.ini
C:\WINDOWS\Registration\R00000000000b.clb
C:\Documents and Settings\UserName\Application Data\result.db 
    
Protector-avtj.exe (or other)
Malware MD5: a7bf42b967a2f306f841093ac187e90d
File size: 2955264 Bytes 

Used files:
C:/Windows/System32/cmd.exe - C:\WINDOWS\system32\cmd.exe" /c del "C:\setup.exe

DOWNLOAD SAMPLE:
http://www66.zippyshare.com/v/37438429/file.html  
Password: malware-sniper 

Members www.malware-sniper.blogspot.com no responsibility for any damage caused by malware. It is used at your own risk! 







No comments:

Post a Comment