So there I am happily working away on my laptop at work, decided to google a technical issue, opened a few websites, speed read them and closed them as normal … turned away from the screen for a couple of seconds … next thing I know, my fully up-to-date (checks for updates every 10 mins) very expensive Anti-Virus product is going mad and windows are opening all over the place running executables on my laptop, including a full installation of a product called ‘wefi’!
Wow! Of course I immediately removed the LAN cable, switched off WiFi and shutdown my pc, but checking the AV server logs shows that I had 27 infections detected in the space of 3 seconds. My guess is that these were downloaded by a piece of malware that the AV company haven’t issued a detection signature for yet.
I’m currently running an AV scan in safe mode and watching all the infected files being listed one by one and have found a number of htm files that appear to be renamed executables with a fake XML footer appended to them. So I guess I’m the victim of a new IE security hole.
The odd thing is, although I’m very annoyed, part of me actually wants to congratulate the writer of this evil malware for a well engineered piece of software.