![]() |
Hello and Welcome from United States to the UNIX and Linux Forums! Thank You for Visiting and Joining Our Global Community.
|
|
google unix.com
|
|||||||
| Forums | Register | Forum Rules | Links | Albums | FAQ | Members List | Calendar | Search | Today's Posts | Mark Forums Read |
| Malware Advisories (RSS) Malware Security Advisories Via RSS |
More UNIX and Linux Forum Topics You Might Find Helpful
|
||||
| Thread | Thread Starter | Forum | Replies | Last Post |
| Troj_agent.csl | iBot | Malware Advisories (RSS) | 0 | 05-08-2008 10:40 PM |
| Troj_agent.hmw | iBot | Malware Advisories (RSS) | 0 | 03-30-2008 12:40 PM |
| Troj_agent.ftj | iBot | Malware Advisories (RSS) | 0 | 03-29-2008 11:30 AM |
| Troj_agent.tcv | iBot | Malware Advisories (RSS) | 0 | 03-18-2008 08:00 AM |
| Troj_agent.tcv | iBot | Malware Advisories (RSS) | 0 | 03-15-2008 11:00 PM |
![]() |
|
|
LinkBack | Thread Tools | Search this Thread | Rate Thread | Display Modes |
|
|
|
|||||
|
Troj_agent.ljy
To get a one-glance comprehensive view of the behavior of this malware, refer to the Behavior Diagram shown below.
Malware OverviewThis memory-resident Trojan arrives on a system as an attachment to email messages spammed by another malware or a malicious user. It may also be downloaded unknowingly by a user when visiting a certain malicious Web site. Below is a screenshot of the said email spam: ![]() When executed, it drops copies of itself. It then modifies the affected system's registry to ensure its automatic execution at every system startup. This Trojan connects to certain Web sites to download and execute files. Trend Micro detects these files as TROJ_AGENT.NMB and TROJ_AGENT.FZL. As a result, routines of the downloaded Trojans are also exhibited on the affected system. More... |
![]() |
| Bookmarks |
| Thread Tools | Search this Thread |
| Display Modes | Rate This Thread |
|
|