VBS_SOYSOS is designed to remove DWG, JPG and MP3 files

Nov 26, 2013 23:11 GMT  ·  By

Security researchers have come across a piece of malware that’s designed to delete files, including files for CAD software, from infected devices.

The threat identified by Trend Micro has been dubbed VBS_SOYSOS. The malware has been developed in VBScript and it has been mainly seen in Mexico. The largest number of infections (3,331) was recorded on November 10.

After it infects a machine, VBS_SOYSOS creates copies of itself by using the names of MP3, JPG and DWG files found on removable drives. Once these copies are created, the original files are deleted.

What’s interesting about this piece of malware is that it disables access to the registry editor and the task manager. This means that users need to install third-party alternatives in order to have the threat removed manually.

Popular anti-malware solutions should be able to detect the threat before it causes any damage, so make sure that such an application is running on your computer.