Skip to content

J-Security Center

Latest Attack Object Updates
  • IDP Daily Update #1321
    posted: 12/02/08
  • NSM Daily Update #1321
    posted: 12/02/08
  • Deep Inspection 5.3r5 and above, 5.4, 6.0 #1321
    posted: 12/02/08
  • Deep Inspection 5.1, 5.2, 5.3r4 and below #1300
    posted: 12/02/08
  • Deep Inspection 5.0 #1132
    posted: 04/01/08
  • Antivirus
    posted: 12/01/08

Virus.Win32.GPCode.ac


27 Jan 2006 12:25:00 +0300

A new version of Virus.Win32.GPCode has caused a large number of infections in Russia. It started spreading markedly during 26th January 2006.

The virus encodes data on the victim machine. It creates a file called readme.txt which contains the following text:

=============================
Some files are coded by RSA method.
To buy decoder mail: xxxxxxxx
with subject: RSA xxxxxxxxxxxxxx
=============================

A full description of Virus.Win32.GPCode.ac is available in the Virus Encyclopaedia.

An update to antivirus databases containing detection for Virus.Win32.GPCode.ac was released yesterday. Users are strongly recommended to ensure that their antivirus protection is up to date.