Eng
  1. Skip to navigation
  2. Skip to content
  3. Skip to sidebar


Cinderella


Aliases:


Cinderella

Malware
Virus
W32

Summary

Cinderella was found in Finland in June, 1991.

It infects all COM-programs which are longer than 390 bytes.

Due a programming error, Cinderella may infect files with extension CO, DOC, OC or no extension at all.

Cinderella counts the user's keypresses and activates after a certain amount. Then the virus creates a hidden file named cInDeReL.la and resets the computer.

Virus stores itself to low system memory, on the interrupt table. Therefore it does not reduce available DOS memory while resident.

There are several variants.



Disinfection & Removal

Automatic Disinfection

Allow F-Secure Anti-Virus to disinfect the relevant files.

For more general information on disinfection, please see Removal Instructions.









Submit a sample




Wondering if a file or URL is malicious? Submit a sample to our Lab for analysis via the Sample Analysis System (SAS)

Give And Get Advice




Give advice. Get advice. Share the knowledge on our free discussion forum.