Worm:Win32/Rotrumas.A
Worm:Win32/Rotrumas.A is a worm that proliferates via removable drives. Worm:Win32/Rotrumas.A may replace detected picture files (.jpgand .jpeg) with its own picture and may delete contents of document files (.doc and .xls). Once installed on the targeted computer system, Worm:Win32/Rotrumas.A downloads malevolent files and modifies the Windows Registry by creating the certain registry entries so that its copy is initiated automatically whenever you boot up Windows. Worm:Win32/Rotrumas.A searches the infected computer for removable drives and, if found, adds its copy in the root folder of the drive. Worm:Win32/Rotrumas.A also creates a malevolent file to automatically load its copy when the drive is accessed and if 'Autorun' is enabled. Worm:Win32/Rotrumas.A can change file and folder display settings. Worm:Win32/Rotrumas.A can also change certain settings in the way that files and folders are shown in Windows Explorer. Worm:Win32/Rotrumas.A can remove the Folder Options menu item from the Tools menu and display hidden files and folders. Worm:Win32/Rotrumas.A steals information that involves email addresses from the affected computer.
File System Details
# | File Name |
Detections
Detections: The number of confirmed and suspected cases of a particular threat detected on
infected computers as reported by SpyHunter.
|
---|---|---|
1. | [system folder]\deter177\sv[1 RANDOM CHARACTER]h[1 RANDOM CHARACTER]st.exe | |
2. | [system folder]\deter177\smss.exe | |
3. | psador18.dll | |
4. | [system folder]\deter177\[1 RANDOM CHARACTER]ht[1 RANDOM CHARACTER]msys19.exe | |
5. | CDROM.exe | |
6. | [system folder]\deter177\ctfmon.exe | |
7. | [system folder]\deter177\lsass.exe | |
8. | Autorun.inf |
Submit Comment
Please DO NOT use this comment system for support or billing questions. For SpyHunter technical support requests, please contact our technical support team directly by opening a customer support ticket via your SpyHunter. For billing issues, please refer to our "Billing Questions or Problems?" page. For general inquiries (complaints, legal, press, marketing, copyright), visit our "Inquiries and Feedback" page.