Skip to content
Silicon Shecky

Silicon Shecky

Infosec Practitioner

  • Security is Reactionary, No Matter What Security
  • New Year, New Post, from the start General
  • First Defcon – The results Reviews
  • Defender, KQL and Lockbit Microsoft
  • Do well, not be “popular” Ramblings
  • Defense Layers: A Case Study Microsoft
  • Device vs. User Microsoft
  • Ransomware, Are You Ready? General

Malware everywhere with some new tricks

Posted on October 19, 2010 By Michael Kavka 1 Comment on Malware everywhere with some new tricks

So as the malware war continues, I have found that the fake AV virus learned a new trick or two. The latest version I dealt with had a new rootkit in it that prevented combofix, malwarebytes and superantispyware from running. Of course it is not smart enough to stop those pieces of software from running if you change the name of their executables.

I suggest using combofix from bleepingcomputers.com first. Download it, rename the executable to comboxif.exe, and do not have it update. The autoupdate will have problems because of the infection. Just download the latest one available and run it.

Once combofix has run, all the other anti-malware programs should run without any issues or needing to rename them.

Computers, Security, Software Tags:combofix, fake AV, Malware, Malwarebytes, Rootkit

Post navigation

Previous Post: Shecky Tweets for 2010-10-19
Next Post: Shecky Tweets for 2010-10-20

Related Posts

  • Security is Reactionary, No Matter What Security
  • Defender, KQL and Lockbit Microsoft
  • Defense Layers: A Case Study Microsoft
  • Device vs. User Microsoft
  • Ransomware, Are You Ready? General
  • Are you sure it is the execs? Ramblings

More Related Articles

Security is Reactionary, No Matter What Security
Defender, KQL and Lockbit Microsoft
Defense Layers: A Case Study Microsoft
Device vs. User Microsoft
Ransomware, Are You Ready? General
Are you sure it is the execs? Ramblings

Comment (1) on “Malware everywhere with some new tricks”

  1. Cinderella Danekas says:
    October 25, 2010 at 22:46

    I tried at least a half-dozen applications to get a executable virus off my PC. One even required me to restore my computer. All the spyware/malware/virus programs found a quarantined the problem, but never removed it. This application found AND FIXED the problem.

Leave a Reply

Your email address will not be published. Required fields are marked *

This site uses Akismet to reduce spam. Learn how your comment data is processed.

  • About
  • Links
    • Burbsec
    • BSides312
    • Infosec Exchange Mastodon
    • BSidesRoc
    • Hacks4Pancakes Blog
    • Krebs On Security
    • Bleeping Computer
  • Categories
    • General
    • Computers
    • Software
    • Rants
    • Security
    • Internet/Music
    • Reviews
    • Microsoft
    • Hardware
    • Mobile Computing
  • Archives
  • Social Media

Browse by tags

2008 Active Directory Android Antivirus Apple Beta CarbonBlack Chrome Computers Exchange Exchange 2007 Firefox General Thoughts Google InfoSec Internet Explorer iOS iPad IT Linux Mac Malware Microsoft OS OSx Patches SBS SBS 2008 Security Server SMB Software Support Surface TechEd Thotcon Tweets Ubuntu Verizon Virus Vista Windows Windows 7 Windows 8 XP
  • About
  • Links
    • Burbsec
    • BSides312
    • Infosec Exchange Mastodon
    • BSidesRoc
    • Hacks4Pancakes Blog
    • Krebs On Security
    • Bleeping Computer
  • Categories
    • General
    • Computers
    • Software
    • Rants
    • Security
    • Internet/Music
    • Reviews
    • Microsoft
    • Hardware
    • Mobile Computing
  • Archives
  • Social Media

Connect

  • Bluesky
  • LinkedIn
  • Mastodon
  • RSS
  • Twitter

RSS feed: iFin Intel Feed iFin Intel Feed

  • Ransomware forces Lancaster, Ohio, to take city computers offline September 9, 2026 Joseph Topping
  • Group of bipartisan lawmakers ask US government to ban several hack-for-hire firms September 9, 2026 Zack Whittaker
  • FBI officials say AI is bolstering adversaries, emphasizing need to focus on cyber basics, patching September 9, 2026 Tim Starks
  • WeChat worm could pwn a friend before they even answered the call September 9, 2026
  • Expanding the Attack Surface: Analyzing Nightmare-Eclipse's Latest PoCs September 9, 2026 Serhii Melnyk and Timmy Lister
  • Ukraine prosecutor general steps down amid scam call center bribery probe September 9, 2026
  • Claude Fable Solves a Historical Cipher September 9, 2026 Bruce Schneier
  • Fort Scott, Kansas, restores systems after ransomware attack September 9, 2026 Joseph Topping
  • A “proof” of Fermat’s Last Theorem that fits the margin September 9, 2026
  • Over 36,000 exposed Plex servers vulnerable to recent flaws September 9, 2026 Sergiu Gatlan
  • Untracked Nightmares: The Threats Hiding Behind Commodity Infrastructure September 9, 2026 Rem Dudas
  • Man gets 15 years for extorting women with AI-generated porn videos September 9, 2026 Sergiu Gatlan

Browse by tags

2008 Active Directory Android Antivirus Apple Beta CarbonBlack Chrome Computers Exchange Exchange 2007 Firefox General Thoughts Google InfoSec Internet Explorer iOS iPad IT Linux Mac Malware Microsoft OS OSx Patches SBS SBS 2008 Security Server SMB Software Support Surface TechEd Thotcon Tweets Ubuntu Verizon Virus Vista Windows Windows 7 Windows 8 XP

RSS feed: iFin Intel Feed iFin Intel Feed

  • Ransomware forces Lancaster, Ohio, to take city computers offline September 9, 2026 Joseph Topping
  • Group of bipartisan lawmakers ask US government to ban several hack-for-hire firms September 9, 2026 Zack Whittaker
  • FBI officials say AI is bolstering adversaries, emphasizing need to focus on cyber basics, patching September 9, 2026 Tim Starks
  • WeChat worm could pwn a friend before they even answered the call September 9, 2026
  • Expanding the Attack Surface: Analyzing Nightmare-Eclipse's Latest PoCs September 9, 2026 Serhii Melnyk and Timmy Lister
  • Ukraine prosecutor general steps down amid scam call center bribery probe September 9, 2026
  • Claude Fable Solves a Historical Cipher September 9, 2026 Bruce Schneier
  • Fort Scott, Kansas, restores systems after ransomware attack September 9, 2026 Joseph Topping
  • A “proof” of Fermat’s Last Theorem that fits the margin September 9, 2026
  • Over 36,000 exposed Plex servers vulnerable to recent flaws September 9, 2026 Sergiu Gatlan
  • Untracked Nightmares: The Threats Hiding Behind Commodity Infrastructure September 9, 2026 Rem Dudas
  • Man gets 15 years for extorting women with AI-generated porn videos September 9, 2026 Sergiu Gatlan
  • Security is Reactionary, No Matter What Security
  • New Year, New Post, from the start General
  • First Defcon – The results Reviews
  • Defender, KQL and Lockbit Microsoft
  • Do well, not be “popular” Ramblings
  • Defense Layers: A Case Study Microsoft
  • Device vs. User Microsoft
  • Ransomware, Are You Ready? General

Social Media

  • Bluesky
  • Mastodon
  • Twitter

Copyright © 2026 Silicon Shecky.