TrendLabs Malware Blog
Glossary
TrendWatch
TrendLabs Twitter
TROJ_DROPPER.NH
Overview

Malware type: Trojan

Aliases: Trojan.Win32.Agent.dwy (Kaspersky), Trojan.Clampi (Symantec), TR/Agent.AGME (Avira), Mal/Generic-A (Sophos), Trojan:Win32/Agent (Microsoft)

In the wild: Yes

Destructive: No

Language: English

Platform: Windows 98, ME, NT, 2000, XP, Server 2003

Encrypted: Yes

Overall risk rating:


Reported infections:

Damage potential:

High

Distribution potential:

Low

Description: 

To get a one-glance comprehensive view of the behavior of this malware, refer to the Behavior Diagram shown below.

TROJ_DROPPER.NH Behavior Diagram

This Trojan is downloaded by the malware JS_IESLICE.AQ from a certain Web site.

It drops and executes a file, which is detected by Trend Micro as BKDR_AGENT.DAM. As a result, routines of the dropped backdoor are also exhibited on the affected system.

For additional information about this threat, see:
Solution
Technical Details

Description created: Jan. 13, 2008 3:19:50 AM GMT -0800

Search a new malware

Tell us how we did. Take our quick survey.