Is there anyone has new rogue "Windows Diagnostic" or "System Diagnostic"
thanks very much if you could post the sample here
thanks very much if you could post the sample here
A forum for reverse engineering, OS internals and malware analysis
Meriadoc wrote:E-Set Antivirus 2011Found a way to run this in a VM: create a file called "nvm.ch" at the folder of the dropper, %programfiles%\E-Set\, and %windir%\system32
Windows Registry Editor Version 5.00
[HKEY_CURRENT_USER\Software\A88B44]
"fhgbcglanhmbignajg"="<"
"chacffld"="="