meatologist
Posts: 134 +0
Hey,
Has anyone heard of this little virus that's appeared as of 25th December ?
TSPY_GOLDUN.BI
It cloaks itself as epsonsys.sys - I think... but there is NO info on this when google'ing!
apart from some dodgy french site that (when translated) says something about a guy in France who's machine blue screened on December 25th with an error pointing to epsonsys.sys.
anyway - We had a power cut, our Primary Domain Controller wouldnt boot after we fixed the power problem - booted into safe mode and saw this error to do with epsonsys.sys - so I changed the Binary from 1 to 0 (basically disabled the service) and rebooted ... it booted fine.
So - the service is here in the registry:
HKLM\SYSTEM\CurrentControlSet\Services\epsonsys
but I cant find anything to do with this?!
Can anyone help?
Has anyone heard of this little virus that's appeared as of 25th December ?
TSPY_GOLDUN.BI
It cloaks itself as epsonsys.sys - I think... but there is NO info on this when google'ing!
apart from some dodgy french site that (when translated) says something about a guy in France who's machine blue screened on December 25th with an error pointing to epsonsys.sys.
anyway - We had a power cut, our Primary Domain Controller wouldnt boot after we fixed the power problem - booted into safe mode and saw this error to do with epsonsys.sys - so I changed the Binary from 1 to 0 (basically disabled the service) and rebooted ... it booted fine.
So - the service is here in the registry:
HKLM\SYSTEM\CurrentControlSet\Services\epsonsys
but I cant find anything to do with this?!
Can anyone help?