TrendLabs Malware Blog
Glossary
TrendWatch
TrendLabs Twitter
TSPY_ONLINEG.DRX
Overview

QUICK LINKS  

Download the latest scan engine


TypeSpyware

In the wild: No

Destructive: No

Language: English

Systems affected: Windows 98, ME, NT, XP, Server 2003

Encrypted: No

Overall risk rating:

Low

Reported detections:

Low

System  impact:

High

Information exposure:

High

 

Description:

This spyware may be downloaded unknowingly by a user when visiting malicious Web sites. It can also arrive as a dropped file TROJ_DROPPER.CIY.

Using the ARP Address Resolution Protocol (ARP) Poisoning technique, it scans the network where the affected system is connected. It does this by enumerating IP addresses. Once a system is found, it attempts to obtain the list of available devices.

For additional information about this threat, see:
Solution
Technical Details




Tell us how we did. Take our quick survey.