Threat Description

Oropax

Details

Aliases: Oropax
Category: Malware
Type: Virus
Platform: W32

Summary


When this virus activates it will just repeatedly play three melodies. Infected files grow by a variable number of bytes, so their length becomes a multiple of 51 bytes in length. This virus stays resident in memory, but it will not infect other programs when they are executed. Instead it will search for a file to infect when files are created or deleted, a subdirectory is created or the access mode of a file is changed. A few other functions may also trigger an infection.

The virus uses a random number generator to decide when to become active, and if it does, it will start playing 5 minutes after an infected program is run.



Removal


Automatic action

Once detected, the F-Secure security product will automatically disinfect the suspect file by either deleting it or renaming it.

More

Detailed instructions for F-Secure security products are available in the documentation found in the Downloads section of our Home - Global site.

You may also refer to the Knowledge Base on the F-Secure Community site for further assistance.








SUBMIT A SAMPLE

Suspect a file or URL was wrongly detected? Submit a sample to our Labs for analysis

Submit Now

Give And Get Advice

Give advice. Get advice. Share the knowledge on our free discussion forum.

Learn More