Description:
To get a one-glance comprehensive view of the behavior of this malware, refer to the Behavior Diagram shown below.
Malware Overview
This Trojan arrives as an attachment to email messages spammed by another malware or by a malicious user. It may also be downloaded unknowingly by a user when visiting malicious Web sites.
Upon execution, IT displays the following fake graphical user interface (GUI) of Trend Micro RootkitBuster:
Another image appears, telling the user to activate the said product by registering to receive product updates. Unsuspecting users may be tricked into providing sensitive information such as names and email addresses. The following is a screenshot of the said image:
Upon clicking the button Click here to register, the data provided by unsuspecting users is sent to a remote malicious user, who can use such information for malicious activities.
This Trojan then displays the following message:

For additional information about this threat, see: Solution Technical Details
Description created: Jan. 11, 2008 2:45:07 PM GMT -0800
Search a new malware
Tell us how we did. Take our quick survey.
|