TrendLabs Malware Blog
Glossary
TrendWatch
TrendLabs Twitter
UNIX_JAHLAV.A
Overview

Malware type: Trojan

Aliases: No Alias Found

In the wild: Yes

Destructive: No

Language: English

Platform: Mac OS X

Encrypted: No

Overall risk rating:


Reported infections:

Damage potential:

Low

Distribution potential:

Low

Description: 

This Trojan may be dropped by the following malware:

This is a shell script malware designed to run on Mac OS X operating system. It adds a cron job (scheduled task on Windows terminology) that is scheduled to run every five (5) hours.

It will connect to an IP address via HTTP and using a user agent string equal to the infected machine's generic processor type (e.g. i386). Furthermore, the server reply is saved in a folder and is executed.

However, the said IP address is not accessible as of this writing.

For additional information about this threat, see:
Solution
Technical Details

Description created: Dec. 4, 2008 6:56:39 AM GMT -0800

Search a new malware

Tell us how we did. Take our quick survey.