We're gradually updating threat actor names in our reports to align with the new weather-themed taxonomy. Learn about Microsoft threat actor names
Virus:VBS/Ramnit.F
Aliases: VBS.Ramnit.T (VirusBuster) VBS.Rmnet.2 (Dr.Web) W32.Ramnit!html (Symantec)
Summary
Virus:VBS/Ramnit.F is the detection for Visual Basic script appended to HTML document files by variants of Virus:VBS/Ramnit. When the infected HTML document is opened, Virus:VBS/Ramnit.F drops and executes Trojan:Win32/Ramnit.A.
To detect and remove this threat and other malicious software that may be installed on your computer, run a full-system scan with an appropriate, up-to-date, security solution. The following Microsoft products detect and remove this threat:
- Microsoft Security Essentials
- Microsoft Safety Scanner
- Microsoft Windows Malicious Software Removal Tool
For more information on antivirus software, see http://www.microsoft.com/windows/antivirus-partners/.