PE_VIRUX.A-1 can be installed on computer unknown to the users who visited malicious website. PE_VIRUX.A-1 is a file infector that can modify system privilege and creates a backdoor ports to allow a remote attacker to gain full access on the infected computer.

Aliases:
Virus.Win32.Virut.ce, W32.Virut.CF, W32/Virut.n, W32/Scribble-A, Virus:Win32/Virut.BM

Risk Level: High

File Size: Varies

Affected System: Windows

Common Symptoms:
1. Presence of registry entry that allows the threat to bypass Windows firewall

HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\
Parameters\FirewallPolicy\DomainProfile\AuthorizedApplications\List
\??\%System%\winlogon.exe = “\??\%System%\winlogon.exe:*:enabled:@shell32.dll,-1″