TROJ_BANLOAD.EUX
October 09, 2012
PLATFORM:
Windows 2000, Windows XP, Windows Server 2003
OVERALL RISK RATING:
DAMAGE POTENTIAL:
DISTRIBUTION POTENTIAL:
REPORTED INFECTION:
Threat Type: Trojan
Destructiveness: No
Encrypted: Yes
In the wild: Yes
OVERVIEW
This Trojan arrives on a system as a file dropped by other malware or as a file downloaded unknowingly by users when visiting malicious sites.
TECHNICAL DETAILS
File Size: 418,304 bytes
File Type: EXE
Memory Resident: Yes
Initial Samples Received Date: 28 Oct 2011
Arrival Details
This Trojan arrives on a system as a file dropped by other malware or as a file downloaded unknowingly by users when visiting malicious sites.
Download Routine
This Trojan connects to the following website(s) to download and execute a malicious file:
- http://{BLOCKED}ana-walker.com/site/msdos.exe
- http://www.{BLOCKED}rg.br/v2/env/msdos.exe
- http://www.{BLOCKED}kanan.net//espace_pro/msdos.exe