Skip to main content
Skip to main content
Microsoft Security Intelligence
Published Mar 22, 2011 | Updated Sep 15, 2017

Virus:VBS/Ramnit.D

Detected by Microsoft Defender Antivirus

Aliases: VBS/Ramnit.A (Command) HTML.Ramnit.A (VirusBuster) HTML/Drop.Agent.AB (Avira) Trojan-Dropper.VBS.Inor (Ikarus) W32/Cosmu.A (Panda) Troj/Inor-Fam (Sophos)

Summary

Virus:VBS/Ramnit.D is a detection for a malicious VBScript appended to HTML files by a variant of Virus:Win32/Ramnit. When an infected HTML file is opened, Virus:VBS/Ramnit.D drops and runs a copy of either Trojan:Win32/Ramnit or Trojan:Win32/Ramnit.gen!A.
To detect and remove this threat and other malicious software that may be installed on your computer, run a full-system scan with an appropriate, up-to-date, security solution. The following Microsoft products detect and remove this threat:
 
 
For more information on antivirus software, see http://www.microsoft.com/windows/antivirus-partners/.
Follow us