- Jun 5, 2005
- 1,820
- 2
- 81
Just wanted to pass along some info about some malware I've seen on a number of machines in my office lately. It looks like your run of the mill fake A/V, but warns about hard drive failure, etc... In addition it makes all directories hidden. Removal itself is easy enough with a Malwarebytes (preferably safe mode) or combofix scan.
After cleaning the machine, disable anti-virus then run "unhide.exe" available from bleepingcomputer here http://download.bleepingcomputer.com/grinler/unhide.exe. It's designed not to remove the -h attribute from system files.
I'm sure many of you already figured this out.
After cleaning the machine, disable anti-virus then run "unhide.exe" available from bleepingcomputer here http://download.bleepingcomputer.com/grinler/unhide.exe. It's designed not to remove the -h attribute from system files.
I'm sure many of you already figured this out.