TROJ64_ALUREON.DDO
September 05, 2013
ALIASES:
Trojan:Win64/Alureon.J (Microsoft), Win64/Wowlik.D trojan (ESET)
PLATFORM:
Windows XP (64-bit), Windows Vista (64-bit), Windows 7 (64-bit)
OVERALL RISK RATING:
DAMAGE POTENTIAL:
DISTRIBUTION POTENTIAL:
REPORTED INFECTION:
INFORMATION EXPOSURE:
Threat Type: Trojan
Destructiveness: No
Encrypted:
In the wild: Yes
OVERVIEW
This Trojan may be dropped by other malware.
It executes then deletes itself afterward.
TECHNICAL DETAILS
File Size: 53,248 bytes
File Type: DLL
Memory Resident: Yes
Initial Samples Received Date: 28 Aug 2013
Arrival Details
This Trojan may be dropped by other malware.
Installation
This Trojan executes then deletes itself afterward.
Other System Modifications
This Trojan deletes the following registry keys:
HKEY_CLASSES_ROOT\CLSID\{registry subkey}
NOTES:
The {registry subkey} refers to all the subkeys under the registry key, HKEY_CLASSES_ROOT\CLSID.