TROJ_MDLOAD.LE
June 10, 2016
ALIASES:
Trojan-Downloader.VBS.Agent.ais (Kaspersky); Troj/DocDrop-CW (Sophos); Win32/PSW.Fareit.E trojan, Win32/PSW.Fareit.E trojan (NOD32)
PLATFORM:
Windows
OVERALL RISK RATING:
DAMAGE POTENTIAL:
DISTRIBUTION POTENTIAL:
REPORTED INFECTION:
INFORMATION EXPOSURE:
Threat Type: Trojan
Destructiveness: No
Encrypted:
In the wild: Yes
OVERVIEW
This Trojan arrives as an attachment to email messages spammed by other malware/grayware or malicious users.
TECHNICAL DETAILS
File Size:
1,022,976 bytes
File Type:
DOC
Initial Samples Received Date:
11 Jul 2014
Arrival Details
This Trojan arrives as an attachment to email messages spammed by other malware/grayware or malicious users.
Installation
This Trojan drops the following files:
- %User Profile%\ZwGuKEMphiZgNT.com -> detected as TROJ_KRYPTK.YYLY