JS_PSYME.BS
September 02, 2016
PLATFORM:
Windows
OVERALL RISK RATING:
DAMAGE POTENTIAL:
DISTRIBUTION POTENTIAL:
REPORTED INFECTION:
INFORMATION EXPOSURE:
Threat Type: Trojan
Destructiveness: No
Encrypted:
In the wild: Yes
OVERVIEW
This Trojan arrives as an attachment to email messages spammed by other malware/grayware or malicious users. It may be hosted on a website and run when a user accesses the said website.
It requires its main component to successfully perform its intended routine.
TECHNICAL DETAILS
File Size: 401 bytes
File Type: JS
Initial Samples Received Date: 27 Aug 2013
Arrival Details
This Trojan arrives as an attachment to email messages spammed by other malware/grayware or malicious users.
It may be hosted on a website and run when a user accesses the said website.
Download Routine
This Trojan saves the files it downloads using the following names:
- sms.exe
Other Details
This Trojan requires its main component to successfully perform its intended routine.
Mobile Malware Routine
This Trojan accesses the following possibly malicious URL(s):
- http://nthot.{BLOCKED}6.org/sms.exe