|
Description:
Trend Micro threat researchers post findings and analyses on various threats in real-time at the Malware Blog. Users can find more information about this specific threat here. |
To get a one-glance comprehensive view of the behavior of this malware, refer to the Behavior Diagram shown below.
Malware Overview
This Trojan may be downloaded from remote Web sites by other malware. It may be dropped by other malware. It may be downloaded unknowingly by a user when visiting malicious Web sites.
It creates folders. It also drops files detected by Trend Micro as the following:
Upon execution, it displays the following graphical user interface (GUI) of a fake antivirus software:
It then deletes itself after execution.
It creates registry entries to enable its automatic execution at every system startup. It creates also registry keys.
It accessed URLs to download files. It then executes the downloaded files. As a result, malicious routines of the downloaded files are exhibited on the affected system.
For additional information about this threat, see: Solution Technical Details
Description created: Sep. 20, 2008 1:33:41 PM GMT -0800
Search a new malware
Tell us how we did. Take our quick survey.
|