New malware called "heuristic.archive.bomb"?

  • Thread starter Thread starter windowz6
  • Start date Start date
W

windowz6

Installed A-Squared Pro recently and upon scanning it found several
instances of what it calls "heuristic.archive.bombs which, as per my
non-techie understanding, means a file that may be very small (maybe a
few megs) but may essentially expand to several gigs in size, so much
so that the sheer size bogs-down or incapacitates the infected
machine.

Is this a new type of malware?
 
Installed A-Squared Pro recently and upon scanning it found several
instances of what it calls "heuristic.archive.bombs which, as per my
non-techie understanding, means a file that may be very small (maybe a
few megs) but may essentially expand to several gigs in size, so much
so that the sheer size bogs-down or incapacitates the infected
machine.

Is this a new type of malware?

You mean something like 42.zip?
 
From: "windowz6" <[email protected]>

| Installed A-Squared Pro recently and upon scanning it found several
| instances of what it calls "heuristic.archive.bombs which, as per my
| non-techie understanding, means a file that may be very small (maybe a
| few megs) but may essentially expand to several gigs in size, so much
| so that the sheer size bogs-down or incapacitates the infected
| machine.

| Is this a new type of malware?


Not neccessarily a small ZIP that expands to a large file but can be; an archive within an
archive, within an archive, whithin and archive, etc, etc.
 
Installed A-Squared Pro recently and upon scanning it found several
instances of what it calls "heuristic.archive.bombs which, as per my
non-techie understanding, means a file that may be very small (maybe a
few megs) but may essentially expand to several gigs in size, so much
so that the sheer size bogs-down or incapacitates the infected
machine.

Is this a new type of malware?

What other security products do you have installed? A-Squared flagged my
NOD32 installer as one of those. Need to be careful with A-Squared, as it
is notorious for finding false positives. Make sure to check the path of
the file, as it may be perfectly legit.
 
Back
Top