Home Malware Programs Worms Worm.Virauto.A

Worm.Virauto.A

Posted: February 20, 2012

Threat Metric

Threat Level: 5/10
Infected PCs: 5
First Seen: February 20, 2012
OS(es) Affected: Windows

Worm.Virauto.A is a worm that may seem to be a harmless application but, in truth, it can harm the compromised PC. Worm.Virauto.A circulates on its own, replicating itself directly into the system drives. Worm.Virauto.A can also insert a copy of itself onto the computer system in an archived ZIP file. Worm.Virauto.A contains backdoor functionalities, which allow it to connect to the Internet and download other potentially malicious files. Worm.Virauto.A also hacks into the Hosts file and edits it in a way that the computer system does not download anti-virus updates anymore. Worm.Virauto.A is difficult to remove, because it has many components that are associated with other types of PC threats. Worm.Virauto.A can monitor MSN Messenger activities.

Aliases

Generic Trojan [Panda]Worm/Generic.WDO [AVG]W32/Autorun.AAA!tr [Fortinet]Worm.Win32.AutoRun [Ikarus]Trojan/Win32.Zapchast [AhnLab-V3]Worm:Win32/Virauto.A [Microsoft]Win32/IRCFlood.TTNI [eTrust-Vet]TR/Agent.prtf.5 [AntiVir]Trojan.Siggen1.59192 [DrWeb]Worm:W32/Autorun.JI [F-Secure]UnclassifiedMalware [Comodo]W32/Autorun-AAA [Sophos]Worm.Generic.47174 [BitDefender]Trojan.Win32.Zapchast.zi [Kaspersky]Virus in password protected archive [eSafe]
More aliases (31)

Technical Details

File System Modifications

Tutorials: If you wish to learn how to remove malware components manually, you can read the tutorials on how to find malware, kill unwanted processes, remove malicious DLLs and delete other harmful files. Always be sure to back up your PC before making any changes.

The following files were created in the system:



%PROGRAMFILES%\Windows NT\cmd32.exe File name: cmd32.exe
Size: 49.15 KB (49152 bytes)
MD5: 2cf00075617ae9bbdec708107c36d15d
Detection count: 5
File type: Executable File
Mime Type: unknown/exe
Path: %PROGRAMFILES%\Windows NT
Group: Malware file
Last Updated: February 20, 2012
Loading...