vebor
May 16, 2017, 6:47pm
1
Short story: WannaCry is able to encrypt my files, in sandbox.
I think it only happens in Windows XP. I even tested it on a real system and got the same result.
I also tested old versions of ccav, the malware seems can’t get through them. (The problem starts from ver 1.9, I guess.)
Malware info.
SHA1 480053030da18b67355eb1ad499825a4a5e50d8d
note: attachment is the video, not malware
[attachment deleted by admin]
umesh
May 16, 2017, 7:05pm
2
Thanks for sharing,
Team is going to check out and we will get back.
Thanks
-umesh
Short story: WannaCry is able to encrypt my files, in sandbox.
I think it only happens in Windows XP. I even tested it on a real system and got the same result.
I also tested old versions of ccav, the malware seems can’t get through them. (The problem starts from ver 1.9, I guess.)
Malware info.
SHA1 480053030da18b67355eb1ad499825a4a5e50d8d
VirusTotal
note: attachment is the video, not malware
Jon79
May 16, 2017, 8:09pm
3
Short story: WannaCry is able to encrypt my files, in sandbox.
I think it only happens in Windows XP. I even tested it on a real system and got the same result.
I also tested old versions of ccav, the malware seems can’t get through them. (The problem starts from ver 1.9, I guess.)
Malware info.
SHA1 480053030da18b67355eb1ad499825a4a5e50d8d
VirusTotal
note: attachment is the video, not malware
what makes you think it’s related to XP only?
vebor
May 16, 2017, 8:18pm
4
Because I’ve run the same test on Windows 8.1 64bit in VirtualBox, seems okay.
Jon79
May 16, 2017, 8:31pm
5
Ok that’s reassuring
Did your XP get the latest patch Microsoft pushed out just to fight wannacry?
vebor
May 16, 2017, 8:45pm
6
Nope, I don’t think they’re relevant.
Yes it is totally irrelevant, the fix only stops the exploit which is used to disseminate the malware. Without it WannaCry is just another regular piece of ransomware.
Jon79
May 18, 2017, 3:09pm
8
Hi umesh,
any news about this issue?
Thanks
umesh
May 18, 2017, 3:14pm
9
Hi,
Yes, only in CCAV with XP system, a sandbox bug.
No issue with any other OS.
Btw on same XP system, CIS protects fine.
So just in XP system with CCAV.
We have a release coming soon, that will have a fix.
Thanks
-umesh
Jon79
May 18, 2017, 3:31pm
10
Hi,
Yes, only in CCAV with XP system, a sandbox bug.
No issue with any other OS.
Btw on same XP system, CIS protects fine.
So just in XP system with CCAV.
We have a release coming soon, that will have a fix.
Thanks
-umesh
OK, thanks, this is even more reassuring than before
umesh
May 19, 2017, 10:38am
11
umesh
May 19, 2017, 9:17pm
12