In this video I go over everything that I discovered while researching the recent LHR Unlocker Virus!
Huge thanks to Y3ti, @ChumpChangeXD and @RedPandaMining !!
Red Panda's Livestream:
• Testing this LHR Unlocker LIVE with C...
ChumpchangeXD's livestream:
• NEW Nvidia RTX LHR UNLOCK Driver SCAM...
My Discord:
/ discord
My website for Hashrates:
https://hashsearch.tech/
Notes:
A software like this usually comes pre-packaged for the hacker, meaning that he might choose to use one or more part of it, and not all of it. Even though a virus scan says that there is this virus among other virus' it might not be in use.
backdoor = a open port on you pc with access to do whatever, also known as a RAT (Remote access trojan)
Trojan = Hides it's functionality, known to do things such as a ddos, spamming, keylogging or unknowingly running a background process.
ddos = when you send multiple requests to a server to bog it down
keylogging = logging usernames and passwords
FileRepMalware
COULD BE "KMSPIBO" aka Win32:Evo-gen[Susp]
Can activate Windows without buying a copy of windows.
Probably not this, so it's unknown.
https://appuals.com/what-is-filerepma...
Gen:NN.ZemsilF.34232.jm0@aWzx0un
backdoor
https://www.microsoft.com/en-us/wdsi/...
Trojan.downloaderNET.324
Trojan
spyware
evader from defender
and maybe ransomware?
https://www.joesandbox.com/analysis/3...
Trojan.spy
Trojan
Spyware
(Pretty self explanatory)
https://www.google.com/search?q=troja...
trojan.malware.300983.susgen
malware
disguises harmful processes as background windows processes.
https://www.google.com/search?q=troja...
Arternis|Trojan
Trojan that limits the users actions, usually tied with ransomware.
https://www.enigmasoftware.com/artemi...
Malicious
Unknown
generic ml pua
Ransomware
Malware
https://howtofix.guide/generic-ml-pua...
Generic.mg1870bb66ef6d3dfd
Trojan's that start with Generic are just trojans that are so new or so obscure that they're undocumented.
win/malicious_confidence_60% (w)
Displaying popup ads
Hijacking your browser
Infecting your desktop shortcuts, etc.
Inserting ads to the web pages
This article describes it as "crapware"
http://malwarefixit.com/howto/remove-...
VHO:Trojan-downloader.MSIL.Seraph.gen
Goes and downloads something without the user's permission or knowledge .
https://www.microsoft.com/en-us/wdsi/...
Artermis|1870bb66EF6D
Probably the same thing as Generic.mg1870bb66ef6d3dfd
Googling this leads to nasa website lol. No other information.
Trojan:Win32/Sabsik.FL.B!ml
This can do a long list of things, I highly recommend going to the website I have linked to see, but here are some things that it does.
Backdoor
hides applications
steals information
attempts to use powershell
creates hidden system files
checks for virtualization
and much, much more. This was probably what would allow the hacker to steal crypto.
https://howtofix.guide/trojanwin32-sa...
static ai - suspicious pe
Malware detector?
Scan executable files, probably be used for something else.
https://www.cyberbit.com/blog/endpoin...
ml.attribute.highconfidence
Unknown Trojan, but likely related to application data and user data.
https://www.trendmicro.com/vinfo/us/t...
Wanna support the channel? Send some Bitcoin! Address:
167ygjRfssXSmPAodpepB543baRmNWnqop
Смотрите видео What's in the LHR UNLOCKER VIRUS!? онлайн без регистрации, длительностью часов минут секунд в хорошем качестве. Это видео добавил пользователь RylanTech 23 Февраль 2022, не забудьте поделиться им ссылкой с друзьями и знакомыми, на нашем сайте его посмотрели 2,770 раз и оно понравилось 109 людям.