Home / malware TrojanDownloader:Win32/Anmoea.A
First posted on 13 April 2017.
Source: MicrosoftAliases :
There are no other names known for TrojanDownloader:Win32/Anmoea.A.
Explanation :
This threat contacts a remote host at uravidata.com using port 80. It then downloads and runs setupviewtmp.exe.
It can also detect and uninstall security products from the following vendors:
- AhnLab
- ESET
- ESTsoft
- NaverVaccine
- Trend Micro
Analysis by Jody KooLast update 13 April 2017