|
|
TROJ_ALUREON.AH Information |
|
Alert ID : FrSIRT/ALRT-2008-02812
Aliases : Trojan.Win32.Inject.bnc (Kaspersky) - Infostealer.Banker.C (Symantec) - TR/Vundo.Gen (Avira) - Mal/Generic-A (Sophos)
Size : 58368 bytes
Rated as : Low Risk  Release Date : 2008-05-12 Last Update : 2008-06-10
Description
This Trojan is dropped by TROJ_ZLOB.CCW. It seaches for certain strings in the URL cache. If these strings are not found, this Trojan modifies a registry entry.It searches the Windows folder for an executable file, which it executes and injects with its code once found. For additional information about this threat, see:SolutionTechnical DetailsStatistics Description created:May. 10, 2008 5:37:15 AM GMT -0800 Search a new malwareTell us how we did. Take our quick survey. Search: Worldwide This site is for customers in the United States & Canada . **. **frsirt** Contact Us Careers About Us . **. **frsirt** Home Home & Home Office Small Business Medium Business Enterprise Business Partners . **. **frsirt** Quick Links See All Products & Solutions Support Purchase Update Center . **. **frsirt** Copyright (c) 1989-2007 Trend Micro Incorporated. All rights reserved.
References
http://www.trendmicro.com/vinfo/virusencyclo/default5.asp?VName=TROJ_ALUREON.AH
Credits
Reported by Trend Micro
ChangeLog
2008-05-12 - Initial Release
2008-05-19 - Updated Aliases
Disclaimer
The information contained herein was obtained from third party sources and is solely based upon the data available at the time of publication. | |
|