TheMost
Simply.. Evolution !!
I recently plugged my pen drive into my friends PC and he had some silly malware ...
I Straightaway plugged that into another friends PC which had avast and it moved that to chest ! I wanted to test my Dad's - So i restored and came home ...
My Dad has NIS 2011 and that detected nothing .... no autorun blocked or so ...
Even i Did a scan ......
But i see this message ....
*img3.imageshack.us/img3/4760/unlededp.png
But my pendrive works perfect ... Also my PC also scanned with emsisoft antimalware ....
And Didn't see any suspicious process running ...
Also after reboot nothing happens ...
But when i plug this into my Laptop running MSE v2 it detects and wants me to select the action ....
So What is this ??
Is NIS ineffective ??
If i open the autorun.inf with notepad the below is visible ..
INFO :
VIRUSTOTAL
I Straightaway plugged that into another friends PC which had avast and it moved that to chest ! I wanted to test my Dad's - So i restored and came home ...
My Dad has NIS 2011 and that detected nothing .... no autorun blocked or so ...
Even i Did a scan ......
But i see this message ....
*img3.imageshack.us/img3/4760/unlededp.png
But my pendrive works perfect ... Also my PC also scanned with emsisoft antimalware ....
And Didn't see any suspicious process running ...
Also after reboot nothing happens ...
But when i plug this into my Laptop running MSE v2 it detects and wants me to select the action ....
So What is this ??
Is NIS ineffective ??
If i open the autorun.inf with notepad the below is visible ..
Code:
[AutoRun]
;greokMNOSqJpwsY yKpMdQtGu lRwq aecH
;bWsn
ShElL\OPen\commAnd =gaah.exe
;GMen
sheLL\exploRe\ComMand =gaah.exe
;
Open= gaah.exe
;choiDRsNsoFgae yaAhgtrxeFr
Shell\opeN\dEFAuLt=1
Shell\auToPlaY\ComMAnd=gaah.exe
INFO :
VIRUSTOTAL
Last edited: