JS_PSYME.BS
Windows
Threat Type: Trojan
Destructiveness: No
Encrypted:
In the wild: Yes
OVERVIEW
This Trojan arrives as an attachment to email messages spammed by other malware/grayware or malicious users. It may be hosted on a website and run when a user accesses the said website.
It requires its main component to successfully perform its intended routine.
TECHNICAL DETAILS
401 bytes
JS
27 Aug 2013
Arrival Details
This Trojan arrives as an attachment to email messages spammed by other malware/grayware or malicious users.
It may be hosted on a website and run when a user accesses the said website.
Download Routine
This Trojan saves the files it downloads using the following names:
- sms.exe
Other Details
This Trojan requires its main component to successfully perform its intended routine.
Mobile Malware Routine
This Trojan accesses the following possibly malicious URL(s):
- http://nthot.{BLOCKED}6.org/sms.exe