LigH
3rd August 2016, 15:28
According to their Twitter account (https://twitter.com/CultOfRazer), the "Pegglecrew" hacked FossHub (currently shut down) and replaced installers of several freeware tools (Classic Shell, Audacity) with malware droppers, which are reported to replace the MBR with a death message. They say an EFI module was ready but not included due to issues with the installer...
The MBR may be restored e.g. with the known repair feature of Windows installation disks, but an additional scan from antivirus boot disks will be recommended.
via heise News (http://www.heise.de/newsticker/meldung/FossHub-kompromittiert-Software-Installer-mit-Malware-infiziert-3286347.html) (German) - via Reddit (https://www.reddit.com/r/pcmasterrace/comments/4vw21h/massive_psa_do_not_download_classic_shell_read/)
The MBR may be restored e.g. with the known repair feature of Windows installation disks, but an additional scan from antivirus boot disks will be recommended.
via heise News (http://www.heise.de/newsticker/meldung/FossHub-kompromittiert-Software-Installer-mit-Malware-infiziert-3286347.html) (German) - via Reddit (https://www.reddit.com/r/pcmasterrace/comments/4vw21h/massive_psa_do_not_download_classic_shell_read/)