Home Malware Programs Trojans Win32/Rovnix.gen!C

Win32/Rovnix.gen!C

Posted: April 9, 2014

Threat Metric

Ranking: 8,998
Threat Level: 1/10
Infected PCs: 2,815
First Seen: April 9, 2014
Last Seen: October 10, 2023
OS(es) Affected: Windows


Win32/Rovnix.gen!C is a Trojan indicating that a malicious Volume Boot Record (VBR) has been installed on a PC. Win32/Rovnix.gen!C attempts to tamper with some Windows kernel data to load its own malicious driver. Win32/Rovnix.gen!C uses this trick to possibly bypass Driver Signature Enforcement on a 64-bit system. Win32/Rovnix.gen!C can be installed on a computer by other malware threats from the same family. To conceal itself, Win32/Rovnix.gen!C may intercept the hard disk I/O (input/output) operation. Win32/Rovnix.gen!C may restore the original clean copy of the VBR if it is accessed throughout the operation. Win32/Rovnix.gen!C can drop and install other malware threats on the targeted computer system.

Technical Details

Additional Information

The following URL's were detected:
fileconverterlive.com
Loading...