You need to boot from a Windows installation USB, open the Command Prompt (via "Repair your computer"), and run the command: bootrec /fixmbr .
If you have accidentally run the destructive version, your OS is likely unbootable.
The trojan reached widespread fame when Joel Johansson (also known as ), a member of the popular live-streaming group Vinesauce , demonstrated it in action on a Windows 10 virtual machine during his "Windows Destruction" series. Viewers were fascinated by the escalating chaos the program caused, turning MEMZ into an infamous legend within the online community. MEMZ-virus.rar
break your Windows installation by overwriting the boot sector.
While the user is distracted by the blinking lights and internet memes on their screen, MEMZ silently targets sector zero of the hard drive—the Master Boot Record. It completely overwrites the standard Windows bootloader with a custom 16-bit assembly program. The Final Loop You need to boot from a Windows installation
Includes screen tunneling effects, random mouse movement, launching random websites/programs, and reversing screen colors. Final Stage: Overwrites the MBR with a Nyan Cat animation. Two Versions:
Analysis of MEMZ-virus.rar Classification: Trojan / Malware Demonstration Threat Level: High (Destructive to the Host Operating System) Primary Target: Microsoft Windows (XP, Vista, 7, 8, 10) Viewers were fascinated by the escalating chaos the
: Eventually, the Trojan overwrites the Master Boot Record (MBR) . Once the computer is restarted, the Windows boot sequence is gone, replaced by an unskippable, full-screen animation of the Nyan Cat. Why is it so famous?
If a user opens Windows Task Manager and attempts to terminate the MEMZ.exe process, the Trojan intercepts the command. It displays a mocked-up warning box reading: "WARNING: Task Manager has been disabled by your administrator." If the process is forcefully killed via the command line or if the timer runs out, the system immediately crashes into a Blue Screen of Death (BSOD).