TrendLabs Malware Blog
Glossary
TrendWatch
TrendLabs Twitter
TROJ_AGENT.FRV
Overview

Malware type: Trojan

Aliases: No Alias Found

In the wild: Yes

Destructive: No

Language: English

Platform: Windows 98, ME, NT, 2000, XP, Server 2003

Encrypted: No

Overall risk rating:


Reported infections:

Damage potential:

Medium

Distribution potential:

Low

Infection Channel 1 : Spammed via email


Description: 

Trend Micro threat researchers post findings and analyses on various threats in real-time at the Malware Blog. Users can find more information about this specific threat here.

To get a one-glance comprehensive view of the behavior of this malware, refer to the Behavior Diagram shown below.

TROJ_AGENT.FRV Behavior Diagram

Malware Overview

This Trojan may be downloaded unknowingly by a user when visiting certain malicious Web sites. It may also arrives via email messages spammed by a malicious user with links pointing to the malicious sites mentioned.

Below is a screenshot of the aforementioned spam email message:

TROJ_AGENT.FRV Spam Email Screenshot

It accesses Web sites to download file(s). Trend Micro detects the file as TROJ_DROPPER.GBZ. As a result, malicious routines of the downloaded Trojan are exhibited on the affected system.

It also opens a Web site containing a news article about the former president of Cuba, Fidel Castro. Below is a screenshot of the aforementioned Web site:

Pres. Fidel Castro News Article

For additional information about this threat, see:
Solution
Technical Details

Description created: Mar. 3, 2008 9:27:52 PM GMT -0800

Search a new malware

Tell us how we did. Take our quick survey.