Search
Keyword: trojhybrisp33
TSPY_ZBOT.EZQA accesses this site to download its configuration file.
ADW_AVSYSTEMCA.J connects to this malicious URL.
ADW_AVSYSTEMCA.J connects to this malicious URL.
TSPY_ZBOT.ZQB may be downloaded from this URL.
TSPY_ZBOT.ZQB accesses this URL to download its configuration file.
TSPY_ZBOT.ZQB accesses this URL to download its configuration file.
TROJ_PIDIEF.SMJZ accesses this site to download its configuration file.
TSPY_ZBOT.ZQC accesses this site to download its configuration file.
TSPY_ZBOT.ZQC accesses this site to download its configuration file.
TSPY_ZBOT.ZQC accesses this site to download its configuration file.
TSPY_ZBOT.ZQWB may be downloaded from this site.
JS_QBOT.AB connects to this URL.
TSPY_CARBERP.E accesses this URL to download files.
TSPY_ZBOT.HJQB may be downloaded from this URL.
TSPY_ZBOT.HJQB accesses this URL to download its configuration file.
Normal 0 false false false EN-US X-NONE X-NONE MicrosoftInternetExplorer4 /* Style Definitions */ table.MsoNormalTable {mso-style-name:"Table Normal"; mso-tstyle-rowband-size:0;
TSPY_ZBOT.HJ sends the gathered information via HTTP POST to this URL.
�This url is related to PE_LICAT.B-O, and this link downloads the configuration file.
If users decide to purchase the rogue product, users are directed to this site. It then asks for sensitive information, such as credit card numbers. Related to the FAKEAV variant TROJ_FAKEAV.ZKQ
TSPY_ZBOT.SMO accesses this URL to download its configuration file.