Home Malware Programs Viruses ModTool.A

ModTool.A

Posted: February 1, 2011

Threat Metric

Threat Level: 8/10
Infected PCs: 61
First Seen: February 1, 2011
Last Seen: June 10, 2020
OS(es) Affected: Windows

Virus.ModTool.A (ModTool.A) is a virus, which infects Windows computers. Virus.ModTool.A can circulate via Yahoo’s Instant Messenger. Once installed on the compromised PC, Virus.ModTool.A can connect to the Internet, download other malware threats, modify the Windows Registry, and disable legitimate security tools on the affected computer. When on a corrupted PC, Virus.ModTool.A hides itself and attempts to steal personal information including your personal accounts in order to distribute itself to other computers. Virus.ModTool.A uses the name of an original Windows systems compatible file and, thus, can record processes of your system programs, inputs, register Registry products, and manipulate other Windows programs; therefore, PC users should be careful when removing the malicious executable because the legitimate one can be easily deleted.

Aliases

W32/Sohanat.AS.worm [Panda]Virus/Win32.Virut.n [Antiy-AVL]Win32/Yahlover.DN [eTrust-Vet]Trojan.Autoit.CI.14 [McAfee-GW-Edition]W32/Virut.Gen [AntiVir]IM-Worm:W32/Sohanad.HM [F-Secure]Win32.Worm.Sohanad.NBN [BitDefender]PUA.Packed.ASPack212 [ClamAV]Win32/Autoit.AG [NOD32](Suspicious) - DNAScan [CAT-QuickHeal]W32/Autorun.worm.bm [McAfee+Artemis]W32/Sohanat.FO.worm [Panda]Worm/Generic.HHA [AVG]W32/Airworm.A!worm [Fortinet]Trojan.Autoit [Ikarus]
More aliases (48)

Technical Details

File System Modifications

Tutorials: If you wish to learn how to remove malware components manually, you can read the tutorials on how to find malware, kill unwanted processes, remove malicious DLLs and delete other harmful files. Always be sure to back up your PC before making any changes.

The following files were created in the system:



C:\Users\<username>\appdata1\Roaming\regsvr.exe File name: regsvr.exe
Size: 1.05 MB (1058111 bytes)
MD5: 5e6fe5fd42896844ddbfc5485abb716b
Detection count: 28
File type: Executable File
Mime Type: unknown/exe
Path: C:\Users\<username>\appdata1\Roaming\regsvr.exe
Group: Malware file
Last Updated: February 16, 2022
Loading...