Security News > 2020 > April > Wiper Malware Called “Coronavirus” Spreads Among Windows Victims

A new Windows malware has emerged that makes disks unusable by overwriting the master boot record.
Overwriting the MBR is the same trick that the infamous NotPetya wiper malware used in 2017 in a campaign that caused widespread, global financial damage.
In a posting on Tuesday, researchers explained that victims of the Coronavirus trojan find themselves with a gray screen and a blinking cursor with a simple message, "Your computer has been trashed."
The operator behind this malware takes it one step further, going so far as to take the coronavirus as its name and infection theme.
The malware cleaves tight to its pandemic theme: An installer sets up the attack by creating a hidden folder named "COVID-19" on the victim machine.
News URL
https://threatpost.com/wiper-malware-coronavirus-windows-victims/154368/
Related news
- Steam pulls game demo infecting Windows with info-stealing malware (source)
- EncryptHub Exploits Windows Zero-Day to Deploy Rhadamanthys and StealC Malware (source)
- APT36 Spoofs India Post Website to Infect Windows and Android Users with Malware (source)
- WhatsApp vulnerability could be used to infect Windows users with malware (CVE-2025-30401) (source)