Sunday, October 23, 2011

Zentom System Guard (FakeAV) - 10.20.2011 - Analysis and Removal


This was done on a Virtual Machine on 10.20.2011

Possibly included a ZeroAccess driver if it were not for me being on a VM.

Did not find the random RunOnce registry .exe spawns like I wanted to analyze.

No comments:

Post a Comment