That is a hefty set of assumptions you are making there. There is no guarantee such a reality will ever exist, and decent odds against it.
At the same time, if you consider it to be a virus or malware when an LLM generates and runs code that harms a product or device... we are already there. Agentic AI with too much system access is already a thing. Just look at the anecdotes of "My AI deleted by database!" and other such stories.