Yet another GPCode

A new variant of the ransom-ware-send-money-to-decrypt-your-files was discovered sometime last week by Kaspersky (and yes, we have the file as well and is now being processed by the service team). From the Kaspersky blog: “The new variant of GPCode was widely spammed throughout the Russian segement of the Internet”, and yes, we do lack coverage in terms of malware acquisition in Russia. Hmmmmm… Perhaps a Russian expedition is in order? heheehehe. Anyway, we’ll post updates later (detection/VR).



Update(JJ, 30 January 2006 21:41:49)


Virus Report here: TROJ_PGPCODER.C.