June 12, 2007

I got talked into helping a friend this weekend whose computer had been disabled by viruses.

After doing a scan with the command line scanner provided by sophos and the latest ide's from their website I noticed that there was still some suspicious looking file under "Documents and Settings/All Users/Application Data" that weren't picked up by the scan.

I copied the file to my 256M USB Key and uploaded it to Sophos:

Sophos just got back to me and told me that i had discovered a new virus which they dubbed Troj/Muddy-A

It's a shame i didn't get to name it.

[Here is the info about the Trojan i discovered]
http://www.sophos.com/virusinfo/analyses/trojmuddya.html

Follow these steps to download the command line scanner and the latest IDE's [Hint: It's free for anyone ]
http://www.sophos.com/support/disinfection/trojan.html

Upload Samples here:
http://www.sophos.com/support/samples


I told my friend who is really embarassed because they had 52 viruses on the systems with about 10 differrent variants!