View Single Post
  #28  
Old July 15th, 2010, 06:55 PM
CloneRanger's Avatar
CloneRanger CloneRanger is offline
Massive Poster
 
Join Date: Jan 2006
Location: Home usually
Posts: 3,929
Question Re: Rootkit.TmpHider

Quote:
Code:
SOFTWARE\SIEMENS\WinCC\Setup
STEP7_Version
SOFTWARE\SIEMENS\STEP7
SOFTWARE\Microsoft\Windows\CurrentVersion\MS-DOS Emulation
NTVDM TRACE

When i ran the installer.0022.exe malware very recently, it tried to infect using NTVDM.exe MS-DOS Emulation. Nobody picked up on it, or seemed to think it relevant enough to comment on it ?

http://www.wilderssecurity.com/showthread.php?

Wonder if there might be more this after all, than was initially thought by some people, and in this case too ?
__________________
.
Malware = You don't scare me

A different perspective https://rt.com - https://rt.com/on-air