Ruvu.100

Aliases:VirTool:Win32/Obfuscator.T (Microsoft), Win32/Pacex.Gen (NOD32), Mal/EncPk-CE (Sophos), TR/Crypt.NSPM.Gen (Antivir)
Date added:2008-02-14

Details

Rootkit. Drops a DLL and rootkit .sys driver in Temp folder. Drops the following fixed-filename files into C:\Windows\system32: * kavo0.dll * kavo.exe

Removal

Use TrojanHunter to remove this trojan