The UNIX and Linux Forums  

Go Back   The UNIX and Linux Forums > Special Forums > Security > Malware Advisories (RSS)
Google UNIX.COM


Malware Advisories (RSS) Malware Security Advisories Via RSS

More UNIX and Linux Forum Topics You Might Find Helpful
Thread Thread Starter Forum Replies Last Post
Troj_mdropper.hr iBot Malware Advisories (RSS) 0 06-16-2008 05:30 AM
Troj_mdropper.li iBot Malware Advisories (RSS) 0 05-15-2008 12:50 PM
Troj_mdropper.hp iBot Malware Advisories (RSS) 0 04-10-2008 11:50 AM
Troj_mdropper.mc iBot Malware Advisories (RSS) 0 03-25-2008 07:30 AM
Troj_mdropper.jh iBot Malware Advisories (RSS) 0 01-31-2008 08:10 AM

Reply
 
Submit Tools LinkBack Thread Tools Search this Thread Display Modes
  #1  
Old 07-09-2008
iBot's Avatar
RSS Robot Girl
 

Join Date: Sep 2000
Posts: 14,296
Troj_mdropper.zt

To get a one-glance comprehensive view of the behavior of this malware, refer to the Behavior Diagram shown below.


This Trojan may be dropped by other malware. It may be downloaded unknowingly by a user when visiting malicious Web sites.

This specially-crafted .DOC files exploits an unknown vulnerability in Microsoft Word 2000, 2002, and 2003. Once it has successfully exploited the said vulnerability, this Trojan is able to execute a shell code which in turn runs an embedded malicious file on the affected system. The embedded file may be any of the following:

  • TROJ_MDROPPER.ZT
  • TROJ_ENFAL.AA
  • BKDR_PCCLIEN.AAP
  • TSPY_KEYLOG.CP
  • TROJ_PROXY.RI
  • TROJ_ZLOB.BPM
  • TROJ_ZLOB.AVY
Routines of the embedded file are thus exhibited on the affected system.



More...
Reply With Quote
Google The UNIX and Linux Forums
Forum Sponsor
Reply

Thread Tools Search this Thread
Search this Thread:

Advanced Search
Display Modes




All times are GMT -7. The time now is 12:19 AM.


Powered by: vBulletin, Copyright ©2000 - 2006, Jelsoft Enterprises Limited.
The UNIX and Linux Forums Content Copyright ©1993-2008. All Rights Reserved.Ad Management by RedTyger Visit The Complex Event Processing Blog

Content Relevant URLs by vBSEO 3.2.0