TrendLabs Malware Blog
Glossary
TrendWatch
TrendLabs Twitter
TSPY_GOLDUN.RF
Overview

QUICK LINKS  

Download the latest scan engine


TypeSpyware

In the wild: No

Destructive: No

Language: English

Systems affected: Windows 98, ME, NT, 2000, XP, Server 2003

Encrypted: No

Overall risk rating:

Low

Reported detections:

Low

System  impact:

High

Information exposure:

High

 

Description:

To get a one-glance comprehensive view of the behavior of this spyware, refer to the Behavior Diagram shown below.

TSPY_GOLDUN.RF Behavior Diagram

Spyware Overview

This spyware may be dropped by TROJ_PAKES.AXQ.

It drops files/components. It is injected into processes running in memory.

It steals user information such as email and server passwords. It sends gathered information to a remote user using HTTP post.

It accesses Web sites to download files, one of which is detected by Trend Micro as TROJ_RENOS.VV. As a result, malicious routines of the downloaded files are exhibited on the affected system.

For additional information about this threat, see:
Solution
Technical Details

Description created: Oct 2, 2008




Tell us how we did. Take our quick survey.