TrendLabs Malware Blog
Glossary
TrendWatch
TrendLabs Twitter
PE_ELKERN.A
Overview

Malware type: File Infector

Aliases: Virus.Win32.Elkern.a (Kaspersky), W32/Elkern.cav.a (McAfee), W32.ElKern.gen (Symantec), W32/Klez.A (Avira), W32/ElKern-A (Sophos),

In the wild: No

Destructive: Yes

Language: English

Platform: Windows

Encrypted: Yes

Overall risk rating:


Description: 
This destructive, per-process, memory-resident file infector attaches itself at the end of PE files (Windows executables).

The virus payload overwrites the contents of files with zeroes, making the files unrecoverable, except through backup. This payload is triggered on either March 13 or September 13.

For additional information about this threat, see:
Solution
Technical Details

Description created: Oct. 26, 2001 10:20:00 AM GMT -0800

Search a new malware

Tell us how we did. Take our quick survey.