JS_RANSOM.IIP
July 22, 2013
ALIASES:
Trojan:JS/FakebyScreen.A(Microsoft),HTML/Ransom.D trojan(NOD32),Troj/HTRansom-A(Sophos_Lite)
PLATFORM:
Windows 2000, Windows Server 2003, Windows XP (32-bit, 64-bit), Windows Vista (32-bit, 64-bit), Windows 7 (32-bit, 64-bit)
OVERALL RISK RATING:
DAMAGE POTENTIAL:
DISTRIBUTION POTENTIAL:
REPORTED INFECTION:
INFORMATION EXPOSURE:
Threat Type: Trojan
Destructiveness: No
Encrypted:
In the wild: Yes
OVERVIEW
This Trojan may be hosted on a website and run when a user accesses the said website.
TECHNICAL DETAILS
File Size: Varies
File Type: HTML, HTM
Initial Samples Received Date: 22 Jul 2013
Arrival Details
This Trojan may be hosted on a website and run when a user accesses the said website.
NOTES:
It is bundled with components in the hosted website.
It displays a webpage asking for a fine to be able to unlock the user's computer.