Home / malwarePDF  

TrojanDropper:Win32/Rovnix.L


First posted on 06 May 2014.
Source: Microsoft

Aliases :

There are no other names known for TrojanDropper:Win32/Rovnix.L.

Explanation :

Threat behavior

TrojanDropper:Win32/Rovnix.L writes malicious code to certain disk sectors of the local hard drive.

It modifies the New Technology FileSystem (NTFS) boot sector (detected as Virus:DOS/Ronvix.gen.!A) to execute the written code.

Each time your PC starts the modified NTFS boot sector will try to load the malicious code written by TrojanDropper:Win32/Rovnix.L.



Analysis by Chun Feng

Symptoms

Alerts from your security software may be the only symptom.

Last update 06 May 2014

 

TOP