Search
Keyword: JS_WONKA
{730BE1A4-1263-4096-917C-4484264E4FD6} %User Temp%\~zm_{730BE1A4-1263-4096-917C-4484264E4FD6}\css %User Temp%\~zm_{730BE1A4-1263-4096-917C-4484264E4FD6}\images %User Temp%\~zm_{730BE1A4-1263-4096-917C-4484264E4FD6}\js (Note: %User Temp%
{04C7E7A4-EFAF-495F-9B61-68F0EF38BA19} %User Temp%\~zm_{04C7E7A4-EFAF-495F-9B61-68F0EF38BA19}\css %User Temp%\~zm_{04C7E7A4-EFAF-495F-9B61-68F0EF38BA19}\images %User Temp%\~zm_{04C7E7A4-EFAF-495F-9B61-68F0EF38BA19}\js (Note: %User Temp%
{39285E50-72B9-4EBA-BB36-4204B4438777} %User Temp%\~zm_{39285E50-72B9-4EBA-BB36-4204B4438777}\css %User Temp%\~zm_{39285E50-72B9-4EBA-BB36-4204B4438777}\images %User Temp%\~zm_{39285E50-72B9-4EBA-BB36-4204B4438777}\js (Note: %User Temp%
{46A05B4E-923D-4310-9E03-2C1765332E20}\js %User Temp%\~zm_{46A05B4E-923D-4310-9E03-2C1765332E20} %User Temp%\~zm_{46A05B4E-923D-4310-9E03-2C1765332E20}\css %User Temp%\~zm_{46A05B4E-923D-4310-9E03-2C1765332E20}\images (Note: %User Temp%
{DC3270CF-CE42-4DFE-A515-B3E5DF8B8BB2} %User Temp%\~zm_{DC3270CF-CE42-4DFE-A515-B3E5DF8B8BB2}\css %User Temp%\~zm_{DC3270CF-CE42-4DFE-A515-B3E5DF8B8BB2}\images %User Temp%\~zm_{DC3270CF-CE42-4DFE-A515-B3E5DF8B8BB2}\js (Note: %User Temp%
{82369E3F-76FA-4DEE-AB48-B93F41A1E31C} %User Temp%\~zm_{82369E3F-76FA-4DEE-AB48-B93F41A1E31C}\css %User Temp%\~zm_{82369E3F-76FA-4DEE-AB48-B93F41A1E31C}\images %User Temp%\~zm_{82369E3F-76FA-4DEE-AB48-B93F41A1E31C}\js (Note: %User Temp%
This malware connects to a site which redirects to a fake video streaming page. It also attempts to execute files, which are detected as JS_SPAMVIR.SMDA, on the user's browser. As a result, malicious
This Trojan may be hosted on a website and run when a user accesses the said website. It does not have any propagation routine. It does not have any backdoor routine. It does not drop any other file.
This Trojan arrives on a system as a file dropped by other malware or as a file downloaded unknowingly by users when visiting malicious sites. Arrival Details This Trojan arrives on a system as a
\images %User Temp%\7023104\images\icons %User Temp%\7023104\images\bramus %User Temp%\7023104\js %User Temp%\7023104\js\bramus %User Temp%\7023104\js\prototype (Note: %User Temp% is the current user's Temp
This Adware may arrive bundled with malware packages as a malware component. It arrives on a system as a file dropped by other malware or as a file downloaded unknowingly by users when visiting
and will execute its routine upon activation by the user: Upon execution of this malicious embedded JS file, it displays the following message box to trick the user: JS/TrojanDownloader.Agent.QHW trojan
activation by the user: Upon execution of this malicious embedded JS file, it displays the following message box to trick the user: It does not have rootkit capabilities. It does not exploit any vulnerability.
user: Upon execution of this malicious embedded JS file, it displays the following message box to trick the user: It does not have rootkit capabilities. It does not exploit any vulnerability.
This Trojan arrives as an attachment to email messages spammed by other malware/grayware or malicious users. It arrives on a system as a file dropped by other malware or as a file downloaded
This Trojan Spy arrives on a system as a file dropped by other malware or as a file downloaded unknowingly by users when visiting malicious sites. Arrival Details This Trojan Spy arrives on a system
This Trojan arrives on a system as a file dropped by other malware or as a file downloaded unknowingly by users when visiting malicious sites. Arrival Details This Trojan arrives on a system as a
This spyware may be manually installed by a user. Arrival Details This spyware may be manually installed by a user. Installation This spyware drops the following files: %All Users Profile%
This Trojan arrives on a system as a file dropped by other malware or as a file downloaded unknowingly by users when visiting malicious sites. However, as of this writing, the said sites are
This Potentially Unwanted Application arrives on a system as a file dropped by other malware or as a file downloaded unknowingly by users when visiting malicious sites. Arrival Details This