Page 1 of 1

W32.Disttrack destroys everything on your Windows

Posted: 20 Aug 2012, 18:54
by viking60
ImageW32.Disttrack - also referred to as the Shamon Attacks has so far been targeted against a company within the energy sector. But that does not make it any less dangerous.
It destroys the Windows boot sector and leaves your box useless.
The virus spreads via the network to the next box and destroys that too etc.
This is not common because mostly the game is to gather some information, but this one is only out to destroy!

On infected computers the virus hides on::
C:\Shamoon\ArabianGulf\wiper\release\wiper.pdb
If you detect it - pull the plug! +1

You can use a Linux Live CD to detect and remove it.