Virus

Virus:Win32/Virut.D (file analysis)

Malware Removal

The Virus:Win32/Virut.D is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Virus:Win32/Virut.D virus can do?

  • Authenticode signature is invalid

How to determine Virus:Win32/Virut.D?


File Info:

name: 93E2BF4740EA66DBF486.mlw
path: /opt/CAPEv2/storage/binaries/11bb7f04d49ffc188f2a071ddf208b5e4346423a095ba1d517f51fa135789df0
crc32: 33F788E6
md5: 93e2bf4740ea66dbf486dcce23291aae
sha1: f279157899c7d1fe84d033c2f645e71099ab5e5e
sha256: 11bb7f04d49ffc188f2a071ddf208b5e4346423a095ba1d517f51fa135789df0
sha512: 5c3a4b2064dea63bd3447593e22c2f281d764e3fce42b98c9f345e8444211b7966bdfa2bbb0a87dcdd18524e4d72af7aeae26ccd166c7c54d5e1702310571b81
ssdeep: 3072:fja9lG6TZ9WqfkA/ar9xMS/TEcxYPpsCmOPsy3TMELkRB/s:fYXTZppyx7hx+rPsGo7RBE
type: PE32 executable (console) Intel 80386, for MS Windows
tlsh: T113D39D02B188807FD5A661F14A29771623B2CF119C2BBF9A63453D158F7D4E28A7F363
sha3_384: 80bee8b7222c0af9a11d3cb0a87c273061ce74e67ead985008a72a58472b9bfb34bb8ade038cd238758ae3091dffad68
ep_bytes: 558bece814000000e8900000006764ff
timestamp: 1987-01-30 03:38:08

Version Info:

CompanyName: Microsoft Corporation
FileDescription: Microsoft RSVP
FileVersion: 5.1.2600.0 (xpclient.010817-1148)
InternalName: rsvp.exe
LegalCopyright: © Microsoft Corporation. All rights reserved.
OriginalFilename: rsvp.exe
ProductName: Microsoft® Windows® Operating System
ProductVersion: 5.1.2600.0
Translation: 0x0409 0x04b0

Virus:Win32/Virut.D also known as:

BkavW32.Vetor.PE
LionicVirus.Win32.Virut.n!c
Elasticmalicious (high confidence)
MicroWorld-eScanWin32.Virtob.6.Gen
FireEyeGeneric.mg.93e2bf4740ea66db
CAT-QuickHealW32.Virut.D
SkyhighBehavesLike.Win32.Virut.ch
McAfeeW32/Virut.j.gen
ZillyaVirus.Virut.Win32.14
SangforVirus.Win32.Virut.V4n1
K7AntiVirusVirus ( 00001b761 )
AlibabaVirus:Win32/Virut.d06fa126
K7GWVirus ( 00001b761 )
Cybereasonmalicious.740ea6
BaiduWin32.Virus.Virut.i
VirITWin32.Cheburgen.A
SymantecW32.Virut.H
tehtrisGeneric.Malware
ESET-NOD32Win32/Virut.NAB
APEXMalicious
TrendMicro-HouseCallPE_VIRUT.NS-1
ClamAVWin.Trojan.Virut-21
KasperskyVirus.Win32.Virut.n
BitDefenderWin32.Virtob.6.Gen
NANO-AntivirusVirus.Win32.Virut.jxol
AvastWin32:Virut [Inf]
EmsisoftWin32.Virtob.6.Gen (B)
GoogleDetected
F-SecureMalware.W32/Virut.H
DrWebWin32.Virut.5
VIPREWin32.Virtob.6.Gen
TrendMicroPE_VIRUT.NS-1
Trapminemalicious.high.ml.score
SophosW32/Vetor-A
SentinelOneStatic AI – Malicious PE
JiangminWin32/Virut.e
WebrootW32.Virut.Gen
VaristW32/Virut.D.gen!Eldorado
AviraW32/Virut.H
Antiy-AVLVirus/Win32.Virut.n
KingsoftWin32.Virut.n.2600
MicrosoftVirus:Win32/Virut.D
XcitiumVirus.Win32.Virut.n@ozrpx
ArcabitWin32.Virtob.6.Gen
ViRobotWin32.Virut.Gen.B
ZoneAlarmVirus.Win32.Virut.n
GDataWin32.Virtob.6.Gen
CynetMalicious (score: 100)
AhnLab-V3Win32/Virut.D
Acronissuspicious
BitDefenderThetaAI:FileInfector.1E3F74C612
MAXmalware (ai score=100)
Cylanceunsafe
PandaW32/Virutas.gen
ZonerProbably Heur.ExeHeaderL
TencentVirus.Win32.HanKu.d
YandexWin32.Virut.Gen
IkarusVirus.Win32.Virut.n
MaxSecureVirus.Virut.Gen
FortinetW32/MetaCrypt.1
AVGWin32:Virut [Inf]
DeepInstinctMALICIOUS
CrowdStrikewin/malicious_confidence_100% (W)
alibabacloudTrojan

How to remove Virus:Win32/Virut.D?

Virus:Win32/Virut.D removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment