TrendLabs Malware Blog
Glossary
TrendWatch
TrendLabs Twitter
TROJ_SWIZZOR.AG
Overview

Malware type: Trojan

In the wild: Yes

Destructive: No

Language: English

Platform: Windows 95, 98, ME, NT, 2000, XP

Encrypted: No

Overall risk rating:


Reported infections:

Damage potential:

Medium

Distribution potential:

Low

Description: 

This Trojan may be downloaded from maliciously coded Web sites.

On execution, it downloads a certain file from the following URL:

    http://<random>.b<blocked>s.lop.com/bins/int/7k11_pkg.int

It then saves the downloaded file as Rem<random>.exe to the Windows Temporary folder.

(Note: <random> is any 1 to 3 alphabet or numeric character.)

It also displays the following message box:

You must install this software as part of the parent program. Press OK to exit.

It runs on Windows 95, 98, ME, NT, 2000, and XP.

For additional information about this threat, see:
Solution
Technical Details

Description created: May. 24, 2004 11:55:10 AM GMT -0800
Description updated: Dec. 13, 2004 1:43:06 AM GMT -0800

Search a new malware

Tell us how we did. Take our quick survey.