MtE is not really a virus, but an "add-on"
product supplied by the person who calls himself Dark
Avenger from Bulgaria. It can be used to give any virus a
"Polymorphic" ability, making it undetectable
with a signature-based scanner.
Instead, an algorithmic approach is used, which may
(theoretically) produce false alarms. If your Virus
protection indicates that MtE is a Virus or if it is
detecting a virus with MtE listed within the name, it may
just be a false or positive alarm. If you get an alarm
from a data file (non-executable), it is a certain false
alarm.
One known false alarm is a file called 120492_v.dxf.
If you find MtE from this file, simply ignore it.
Several viruses are already known which make use of
this "Mutation Engine"; therefore, there are
several Variants of this Virus.
|
|
| Resolved | Were you able to locate the answer to your questions? |
|
|