TrendLabs Malware Blog
Glossary
TrendWatch
TrendLabs Twitter
PERL_JAHLAV.F
Overview

Malware type: Others

Aliases: No Alias Found

In the wild: Yes

Destructive: No

Language: English

Platform: Mac OS X

Encrypted: No

Overall risk rating:


Reported infections:

Damage potential:

Medium

Distribution potential:

Low

Description: 

This malicious Perl script is the result of the decrypted obfuscated bash script detected by Trend Micro as UNIX_JAHLAV.D.

It downloads a file from a certain URL and renames the file when stored in the affected system. The said file is detected as UNIX_DNSCHAN.AA. It then executes the downloaded file. Thus routines of the downloaded file are exhibited on the affected system.

It requires the existence of UNIX_JAHLAV.D order to run properly.

For additional information about this threat, see:
Solution
Technical Details

Description created: Aug. 7, 2009 10:04:01 AM GMT -0800

Search a new malware

Tell us how we did. Take our quick survey.