A forum for reverse engineering, OS internals and malware analysis 

Forum for analysis and discussion about malware.
 #12150  by Neurofunk
 Fri Mar 16, 2012 12:38 am
Tested on Windows XP SP3 32bit on VMWare Workstation 8.0.0 and it successfully remove Sirefef.P (8e2f4bf01cb0de455d1a2c97ee606842)
https://www.virustotal.com/file/7017464 ... /analysis/

Requires two reboots one to install a driver and one to remove the infection itself. I attached the log from the program to this post in case you want to see what exactly it logs/does.
Attachments
(90.71 KiB) Downloaded 61 times
 #12176  by Neurofunk
 Fri Mar 16, 2012 3:36 pm
Dunno if it is against the rules to post it or not since it was pulled by panda for some reason but i've got a copy of it on my machine at home still if it isn't available by then i'll provide a copy of it for those that want it.
  • 1
  • 23
  • 24
  • 25
  • 26
  • 27
  • 38