Fake Hard Drive Failure + Hidden Folders Fix

goobernoodles

Golden Member
Jun 5, 2005
1,820
2
81
Just wanted to pass along some info about some malware I've seen on a number of machines in my office lately. It looks like your run of the mill fake A/V, but warns about hard drive failure, etc... In addition it makes all directories hidden. Removal itself is easy enough with a Malwarebytes (preferably safe mode) or combofix scan.

After cleaning the machine, disable anti-virus then run "unhide.exe" available from bleepingcomputer here http://download.bleepingcomputer.com/grinler/unhide.exe. It's designed not to remove the -h attribute from system files.

I'm sure many of you already figured this out. :p
 

jae

Golden Member
Jul 31, 2001
1,034
0
76
www.facebook.com
I've fixed about 3-4 systems with this on it about a month and a half ago.

Delete the random files in application data.
Run TDSSKiller by Kaspersky
Run RogueKiller options 2 & 6.