VirtuMonde

Threat Scorecard

Threat Level: 20 % (Normal)
Infected Computers: 142
First Seen: July 24, 2009
Last Seen: July 10, 2021
OS(es) Affected: Windows

Virtumonde (also known under a variety of aliases as Virtu Monde, Virtu-Monde, VirtuMonde Adware, Adware.VirtuMonde, VirtuMonde Spyware, VirtuMonde Virus) is a software application that monitors your browser and keeps track of your browsing habits. VirtuMonde uses this specific information to send targeted advertisements based upon your web-surfing activities directly to your computer. Usually installed as a component of another program, VirtuMonde infects the following systems: Windows 95, Windows 98, Windows 2000, Windows Me, Windows NT, Windows XP and Windows Server 2003. VirtuMonde begins running as soon as your computer starts up, and since it operates in the background, it may often go unnoticed. Assisting this play of stealth is VirtuMonde's capability of renaming itself during execution.

Aliases

15 security vendors flagged this file as malicious.

Anti-Virus Software Detection
AVG Generic27.WQD
Fortinet W32/Agent.SFM
AntiVir TR/Offend.KD.543552
Comodo Heur.Suspicious
BitDefender Trojan.Generic.KD.543552
Kaspersky Trojan.Win32.Lampa.qst
Avast Win32:Cidox-AM [Trj]
NOD32 Win32/Agent.SFM
McAfee Artemis!CCFA5FA2D6F2
Panda Trj/Genetic.gen
AVG Agent_r.BMO
Fortinet W32/Agent.SFMX!tr
Ikarus Trojan.Win32.Lampa
AntiVir TR/Vundo.OD.2150
DrWeb Trojan.Mayachok.1

SpyHunter Detects & Remove VirtuMonde

File System Details

VirtuMonde may create the following file(s):
# File Name MD5 Detections
1. microsoft_dumpflop_.exe ccfa5fa2d6f21f9f722cc198acc11f97 11
2. elro.exe a1bb59cb15f3adf9353dddc18be1ac18 5
3. ljiijj.dll 71a371a6c8e9f3cca00da9f0cc41830f 1
4. winsrc.dll 6dc59cd4a45f96cc27b2a9d710f7abc2 0
5. ssqrp.dll 0f90394deda6937ac102fecb79745a7b 0
6. iifdcdb.dll 56f180294d5d47128936f9a34318a83b 0
7. vtuts.dll d4453218a781af7ec2a0c7153d8e4109 0
8. ivrrwfps.dll 2fb9509f1b9134ae56fd535d4c4634f8 0
9. mljkkhf.dll 3eba5d5ee0d0833b75babc403c46f764 0
10. khfcdba.dll, ljjgedc.dll, rqrppon.dll, wvursqn.dll, xxyxwxv.dll 02fb66ff2648fb497a3a1998f4d0b844 0
11. sstrs.dll 0c053e21700e83a163b50c18108268e1 0
12. mllkk.dll 0b04c48ec47c70bba5d173bcaa61f58c 0
13. awtqqnl.dll a235f52ad905ec89f9c9632f9a94dbe8 0
14. opnnljj.dll 29a0dbb047ea5167b5c0897902045718 0
15. nnnmmlk.dll cbe9e81aa9d4ff26dde8c35839c55fd0 0
16. ssqrs.dll 2f73da71f31c691081a8b08ccad4e81c 0
17. cbxxywx.dll 274007e7c2fef02eafd67c49f5f6bb56 0
18. ssttr.dll 9f92318dd66ceed357fdb9e82e0b9dfa 0
19. ssttr.dll 10b582828eaf28c34d23de94fb0f7c1b 0
20. pmnno.dll fe192ced601812e3f46825b3a094e729 0
21. ddcbabx.dll 19fb333000f260fd534c63945483994d 0
22. castlecops[1].exe 5b8577deb819495ffa0c1e03501eab77 0
23. vturspo.dll f5236876d4cd7c1f430b8de50b250701 0
24. iifddby.dll, yaywttq.dll 2f287e9392c950158148779c9364e6a0 0
25. SbCIe02b.dll 908388713dc2e96068e2591ac67c54b7 0
More files

Registry Details

VirtuMonde may create the following registry entry or registry entries:
CLSID
{60EDCEE2-B6AF-4F2E-BB15-14F101364B47}
{837B45D6-BF85-457D-AABF-6D2E7815F791}
{AD72687B-CF83-4463-8E95-2CB3198CA5F6}
{D7336D32-62F7-43B5-8B8C-3963C72CA498}
{E180F496-8A4B-44E2-9FE0-0364E345DB7F}
{EEC73EA5-1367-49D1-93F4-CA1D8C22E9F9}

Related Posts

Trending

Most Viewed

Loading...