Originally Posted by
ShadowAS1
Hello,
One of my friends is having trouble with a virus wich identefies itselfs as WinRar (lolz) i cant clearly explain what it does so ill post what i know
1. It IS a keylogger
2. its running under the process mines.exe
3. It is sending data to an server in the UK and USA (blocked it by using the firewall)
4. It is located as a system file in the hidden map C:\System1 and C:\Program Files\System1\
5. It is UNDETECTED by ANY virus scanner
6. it targets ONLY login information
I am a verie experienced computer user for my age :P (i know, im just 14 but whatever) but i cant get rid of it, somthing keeps downloading it again but it remains blocked on firewall,
I checked the complete registry
Runned miltiple scans on it
I Cant get it deleted in any way cause it coems back instant.
Thanks in advance
ShadowAS1