Home / malwarePDF  

TrojanDownloader:Win32/Anmoea.A


First posted on 13 April 2017.
Source: Microsoft

Aliases :

There are no other names known for TrojanDownloader:Win32/Anmoea.A.

Explanation :

This threat contacts a remote host at uravidata.com using port 80. It then downloads and runs setupviewtmp.exe.

It can also detect and uninstall security products from the following vendors:

  • AhnLab
  • ESET
  • ESTsoft
  • NaverVaccine
  • Trend Micro




Analysis by Jody Koo

Last update 13 April 2017

 

TOP