TrendLabs Malware Blog
Glossary
TrendWatch
TrendLabs Twitter
JS_DLOADER.NTJ
Overview

Malware type: JavaScript

Aliases: Trojan-Downloader.JS.Psyme.jf (Kaspersky), JS/Downloader-AUD (McAfee), Downloader.Trojan (Symantec), HTML/Crypt.Script.X (Avira), Mal/ObfJS-M (Sophos),

In the wild: Yes

Destructive: No

Language: English

Platform: Windows 98, ME, NT, 2000, XP, Server 2003

Encrypted: No

Overall risk rating:


Reported infections:

Damage potential:

Medium

Distribution potential:

Medium

Description: 

This malicious JavaScript is hosted in the IP address http://{BLOCKED}.38.xxx.13. A user lands on this page via Internet browser redirections instigated by another malicious script detected by Trend Micro as HTML_IFRAME.CU.

It exploits a certain vulnerability in a system's Internet browser to enable it to download a Trojan detected as TROJ_SMALL.HCK. As a result, routines of the down loaded malware may be exhibited on the affected system.

For additional information about this threat, see:
Solution
Technical Details

Description created: Jun. 16, 2007 4:42:30 PM GMT -0800

Search a new malware

Tell us how we did. Take our quick survey.