Sophos

Sophos blogs

W32/Vetor-A

Aliases
  • W32/Virut.gen
  • W32/Virut.V
  • PE_VIRUT.L
  • Virus.Win32.Virut.n
  • Virus:Win32/Virut.AE
  • W32.Virut.H
Category
Type
What to do
Prevalence low high

Summary

 
How it spreads
  • Infected files
Affected operating systems Windows
Protection available since 2 April 2007 06:24:02 (GMT)
Last updated 14 October 2009 01:23:22 (GMT)
Detected by All Sophos products
  • Free virus, spyware, and adware scan
  • Test your existing anti-virus protection
  • Find threats your anti-virus missed

Action

More Information

W32/Vetor-A is a polymorphic virus for the Windows platform.

If run with sufficient privileges, W32/Vetor-A copies itself into shared memory and hooks into all running processes in order to infect files. The virus also attempts to disable Windows File Protection for each file before infecting it.

W32/Vetor-A connects to an IRC network through which a remote attacker can instruct the virus to download and execute more malware.

W32/Vetor-A often infects the same file more than once, in which case disinfection will need to be repeated. W32/Vetor-A may infect both through midinfection and at the entrypoint.

RSS|Atom
Get reports about the latest virus and spyware threats delivered to your computer