Threat Encyclopedia

Selected viruses, spyware, and other threats: sorted alphabetically

Win32/Hetuph.A

Aliases:Trojan-Downloader.Win32.Agent.chji (Kaspersky), Generic Downloader.x (McAfee), Backdoor.Graybird (Symantec) 
Type of infiltration:Virus  
Size:Variable  
Affected platforms:Microsoft Windows 
Signature database version:4848 (20100208) 

Short description

Virus is probably a part of other malware. The infected files contain program code which tries to download other malware.

Other information

The virus contains an URL address. It tries to download a file from the address. The HTTP protocol is used.

The file is stored in the following location:
  • %temp%wmsetup.dll
The file is then executed.