Threat Database Trojans Win32/Rovnix.gen!C

Win32/Rovnix.gen!C

By GoldSparrow in Trojans

Threat Scorecard

Ranking: 8,866
Threat Level: 10 % (Normal)
Infected Computers: 1,199
First Seen: April 9, 2014
Last Seen: September 20, 2023
OS(es) Affected: Windows

Win32/Rovnix.gen!C is a Trojan specifying that a malevolent Volume Boot Record (VBR) has been installed on a computer system. Win32/Rovnix.gen!C aims to tamper with some Windows kernel data to load its own malicious driver. Win32/Rovnix.gen!C uses this trick to probably avoid Driver Signature Enforcement on a 64-bit system. Win32/Rovnix.gen!C may be installed on the computer by other malware threats from the same family. To disguise itself, Win32/Rovnix.gen!C may intercept the hard disk I/O (input/output) operation. Win32/Rovnix.gen!C may restore the original clean copy of the VBR if it is accessed during the operation. Win32/Rovnix.gen!C may distribute and install other malware infections on the corrupted PC.

URLs

Win32/Rovnix.gen!C may call the following URLs:

fileconverterlive.com

Trending

Most Viewed

Loading...