VBS_REMSHELL.B
November 16, 2012
PLATFORM:
Windows 2000, Windows XP, Windows Server 2003
OVERALL RISK RATING:
DAMAGE POTENTIAL:
DISTRIBUTION POTENTIAL:
REPORTED INFECTION:
Threat Type: Trojan
Destructiveness: No
Encrypted:
In the wild: Yes
OVERVIEW
This Trojan may arrive bundled with malware packages as a malware component.
TECHNICAL DETAILS
File Size: 32,998 bytes
File Type: ASP
Initial Samples Received Date: 12 Mar 2012
Arrival Details
This Trojan may arrive bundled with malware packages as a malware component.
Dropping Routine
This Trojan drops the following files:
- %Current%\desktop.ini
Other Details
This Trojan connects to the following possibly malicious URL:
- http://city.{BLOCKED}3.com/xzsd/library/recycled/g.asp