Threat Database Viruses VBS/Dinihou.G.2

VBS/Dinihou.G.2

By GoldSparrow in Viruses

Threat Scorecard

Ranking: 8,112
Threat Level: 50 % (Medium)
Infected Computers: 867
First Seen: April 16, 2014
Last Seen: September 16, 2023
OS(es) Affected: Windows

VBS/Dinihou.G.2 is a threat created in Visual Basic. VBS/Dinihou.G.2 spreads by using typical threat tactics such as infecting files and concealing itself in removable drives. One typical way in which computer users detect VBS/Dinihou.G.2 is because VBS/Dinihou.G.2 converts files into shortcuts and hides the contents of affected memory devices in a hidden directory. This is a common worm tactic that is used to tempt computer users into clicking on files in external memory devices. This is an increasingly common tactic because many computers are not as susceptible to common AutoRun exploits that were used by previous generations of worms. The use of a strong security product is necessary if you suspect that your PC is infected by VBS/Dinihou.G.2.

VBS/Dinihou.G.2 is a Deceitful Threat that may Cause Harm to Your PC

The most common problem that has been linked with VBS/Dinihou.G.2 is the fact that the affected computer's security program will repeatedly indicate the presence of VBS/Dinihou.G.2 in a removable drive. However, attempts to delete infected files or VBS/Dinihou.G.2 itself are met with error messages claiming that this is impossible. The cause of this is that VBS/Dinihou.G.2 makes changes to the infected computer's registry that prevent computer users from deleting manually many of the components associated with VBS/Dinihou.G.2 without more advanced knowledge. The following are common symptoms that should raise red flags, since it may be an indication to the presence of VBS/Dinihou.G.2 and similar viruses or worms on an affected computer:

  • Computers infected with VBS/Dinihou.G.2 may slow down considerably, becoming sluggish and prone to freezing. This is caused by the system resources consumed by VBS/Dinihou.G.2 such as memory and processing power.
  • Computers affected by VBS/Dinihou.G.2 may crash frequently and installed software may fail to load or present unusual errors, since threats like VBS/Dinihou.G.2 may turn the computer unstable, not interacting well with legitimate system components and other software installed on the infected operating system.
  • Affected computers may take a long time to start up or fail to start up at all.

Aliases

8 security vendors flagged this file as malicious.

Anti-Virus Software Detection
AVG VBS/Downloader.Agent
Fortinet VBS/Dinihou.BW!tr
Ikarus Worm.VBS.Dinihou
GData Generic.Trojan.Agent.K1UCAT
DrWeb SCRIPT.Virus
Comodo UnclassifiedMalware
Kaspersky Worm.VBS.Dinihou.cc
Avast VBS:Downloader-RJ [Trj]

SpyHunter Detects & Remove VBS/Dinihou.G.2

File System Details

VBS/Dinihou.G.2 may create the following file(s):
# File Name MD5 Detections
1. Servieca.vbs ff82d85fd64bbe234ea1f97959e59924 137
2. WinUpdat.vbs 52d56ffcf43d8d5c34a65bd5ed694a2c 24
3. WinUpdat.vbs 1f30ea1589c0ca662046e63881ec584b 17
4. WinUpdat.vbs ccc866ba025a50bd4cab7ff9f8174b54 3
5. smss-DoOoM.vbe 2c301003a4b66cb034b1cd830d2802d7 1

Registry Details

VBS/Dinihou.G.2 may create the following registry entry or registry entries:
File name without path
smss-DoOoM.lnk
smss-DoOoMs.lnk
Regexp file mask
%ALLUSERSPROFILE%\WinUpdat.vbs
%windir%\System32\Tasks\smss-DoOoM.vbe

Trending

Most Viewed

Loading...