Home / malwarePDF  

Virus:Win32/Parite.B


First posted on 06 January 2020.
Source: Microsoft

Aliases :

Virus:Win32/Parite.B is also known as Win32/Pinfi.A, Win32/Parite.B, W32/Pate.b, W32.Pinfi, PE_PARITE.A.

Explanation :

Theis virus is a polymorphic file infector. When run, it can:  Install a dynamic link library (DLL) file in %TEMP%. The name of the installed file is based on your PC time and uses the format <3 letters><4 hex characters>.tmp Inject the DLL into the explorer.exe process and modify the registry to point to that DLL:Adds subkey: PINFTo key: HKEY_CURRENT_USERSoftwareMicrosoftWindowsCurrentVersionExplorer Infects all portable .EXE and .SCR files found on your PC and shared network drives.

Last update 06 January 2020

 

TOP