TROJ_ALUREON.CYZ

 Analysis by: Mark Joseph Manahan

 ALIASES:

probably a variant of Win32/Sirefef.EU trojan (Eset), Trj/Sirefef.D (Panda), Trojan.Win32.Alureon (Ikarus)

 PLATFORM:

Windows 2000, Windows XP, Windows Server 2003

 OVERALL RISK RATING:
 DAMAGE POTENTIAL:
 DISTRIBUTION POTENTIAL:
 REPORTED INFECTION:

  • Threat Type: Trojan

  • Destructiveness: No

  • Encrypted:

  • In the wild: Yes

  OVERVIEW

Infection Channel:

Dropped by other malware


This Trojan may be dropped by other malware.

It exports functions used by other malware. It requires its main component to successfully perform its intended routine.

  TECHNICAL DETAILS

File Size:

93,696 bytes

File Type:

DLL

Initial Samples Received Date:

08 Jun 2012

Arrival Details

This Trojan may be dropped by other malware.

Other Details

This Trojan exports functions used by other malware.

It requires its main component to successfully perform its intended routine.

NOTES:
It loads the following files:

  • {malware path}\L\00000004.@
  • {malware path}\L\00000008.@