Virus

Virus:Win32/Virut.K (file analysis)

Malware Removal

The Virus:Win32/Virut.K is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Virus:Win32/Virut.K virus can do?

  • Unconventionial binary language: Chinese (Simplified)
  • Unconventionial language used in binary resources: Chinese (Simplified)
  • The binary likely contains encrypted or compressed data.

How to determine Virus:Win32/Virut.K?


File Info:

crc32: A621AEC7
md5: ad9baafc04a1bb317e3460626b0eb6e7
name: AD9BAAFC04A1BB317E3460626B0EB6E7.mlw
sha1: 5229675c4fdb7905403ca2f91f335a3a0161fb12
sha256: a3a8dcd9141442ff08f1d2066975b4b9ae2abf91a58df8cc8713db5fd294e54c
sha512: 948231314074b2c02df55cc96e948746dcc692da66d3f3ae918f9fc1c649a7ff8c4568fcfded9b3175877f9c029801c6a04d555b0472fba35779f13b897befde
ssdeep: 24576:4Jbtmzx5l672bvvrwfu4ZDr+Ucs8JcAxRW:4eYCbvTwfusDr+Ucs8JcAxRW
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

LegalCopyright: Copyright (C) 2016 AFC
InternalName: TVMPassengerUI.exe
FileVersion: 1.0.3.1
CompanyName: AFC
ProductName: TVMx4e58x5ba2x754cx9762
ProductVersion: 1.0.3.1
FileDescription: TVMx4e58x5ba2x754cx9762
OriginalFilename: TVMPassengerUI.exe
Translation: 0x0804 0x04b0

Virus:Win32/Virut.K also known as:

BkavW32.Vetor.PE
K7AntiVirusVirus ( 00001b761 )
Elasticmalicious (high confidence)
DrWebWin32.Virut.5
MicroWorld-eScanWin32.Virtob.3.Gen
CAT-QuickHealW32.Virut.D
SangforTrojan.Win32.Save.a
K7GWVirus ( 00001b761 )
Cybereasonmalicious.c04a1b
BaiduWin32.Virus.Virut.a
CyrenW32/Virut.10640.A
SymantecW32.Virut.U
ESET-NOD32Win32/Virut.BA
APEXMalicious
AvastWin32:Virut [Inf]
CynetMalicious (score: 99)
KasperskyVirus.Win32.Virut.q
BitDefenderWin32.Virtob.3.Gen
NANO-AntivirusVirus.Win32.Virut.jxol
ViRobotWin32.Virut.Gen.B
TencentVirus.Win32.HanKu.Gen.200003
Ad-AwareWin32.Virtob.3.Gen
SophosW32/Vetor-A
ComodoVirus.Win32.Virut.q@1fhkey
BitDefenderThetaAI:FileInfector.D6DFFBB612
VIPREVirus.Win32.Virut.b (v)
TrendMicroPE_VIRUT.XP-3
McAfee-GW-EditionW32/Virut.j.gen
FireEyeGeneric.mg.ad9baafc04a1bb31
EmsisoftWin32.Virtob.3.Gen (B)
JiangminWin32/Virut.Gen
AviraW32/Virut.X
MicrosoftVirus:Win32/Virut.K
GDataWin32.Virtob.3.Gen
AhnLab-V3Win32/Virut.C
McAfeeW32/Virut.j.gen
MAXmalware (ai score=82)
PandaW32/Virutas.gen
TrendMicro-HouseCallPE_VIRUT.XP-3
RisingVirus.Virut!1.A08C (CLASSIC)
YandexWin32.Virut.Gen.5
SentinelOneStatic AI – Suspicious PE
MaxSecureVirus.Virut.Gen
FortinetW32/Virut.G
AVGWin32:Virut [Inf]
Qihoo-360Virus.Win32.Virut.AT

How to remove Virus:Win32/Virut.K?

Virus:Win32/Virut.K removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment