Home Malware Programs Viruses Virus.Virut

Virus.Virut

Posted: March 21, 2013

Threat Metric

Ranking: 9,282
Threat Level: 8/10
Infected PCs: 3,593
First Seen: March 21, 2013
Last Seen: September 22, 2023
OS(es) Affected: Windows

Aliases

Trj/CI.A [Panda]Riskware/Generic [Fortinet]Virus.Win32.Virut [Ikarus]MSIL:Dropper-NB [GData]Virus:Win32/Virut [Microsoft]TR/Drop.217088 [AntiVir]BackDoor.Bifrost.16034 [DrWeb]HEUR:Trojan.Win32.Generic [Kaspersky]MSIL:Dropper-NB [Drp] [Avast]WS.Reputation.1 [Symantec]Artemis!2398F6F4C7FB [McAfee]

Technical Details

File System Modifications

Tutorials: If you wish to learn how to remove malware components manually, you can read the tutorials on how to find malware, kill unwanted processes, remove malicious DLLs and delete other harmful files. Always be sure to back up your PC before making any changes.

The following files were created in the system:



%WINDIR%\SysWOW64\cmd.exe File name: cmd.exe
Size: 323.07 KB (323072 bytes)
MD5: 0658414f82b435aace3b014ddee75469
Detection count: 74
File type: Executable File
Mime Type: unknown/exe
Path: %WINDIR%\SysWOW64
Group: Malware file
Last Updated: August 17, 2016
file.exe File name: file.exe
Size: 513.02 KB (513024 bytes)
MD5: 841ad010f82af0ec3eaad86c60c49a7c
Detection count: 43
File type: Executable File
Mime Type: unknown/exe
Group: Malware file
Last Updated: January 13, 2017
%APPDATA%\Microsoft\Windows\Start Menu\Programs\Startup\rundll32 .exe File name: rundll32 .exe
Size: 217.08 KB (217088 bytes)
MD5: 2398f6f4c7fb2d6f6224f8c7b678be5c
Detection count: 12
File type: Executable File
Mime Type: unknown/exe
Path: %APPDATA%\Microsoft\Windows\Start Menu\Programs\Startup
Group: Malware file
Last Updated: March 21, 2013
%WINDIR%\System32\ie4uinit.exe File name: ie4uinit.exe
Size: 745.98 KB (745984 bytes)
MD5: a37a1917e338efafe8b8bb246b4e8c78
Detection count: 7
File type: Executable File
Mime Type: unknown/exe
Path: %WINDIR%\System32
Group: Malware file
Last Updated: March 7, 2017

Registry Modifications

The following newly produced Registry Values are:

Regexp file mask%PROGRAMFILES%\Microsoft\watermark.exe%PROGRAMFILES(x86)%\Microsoft\watermark.exe

Related Posts

Loading...