Home / malwarePDF  

TrojanDownloader:Win32/Kuluoz!zip


First posted on 30 October 2012.
Source: Microsoft

Aliases :

TrojanDownloader:Win32/Kuluoz!zip is also known as ZIP/Bredolab.A!Camelot (Command), Win32/TrojanDownloader.Zortob.B trojan (ESET), Troj/BredoZp-LR (Sophos).

Explanation :



TrojanDownloader:Win32/Kuluoz!zip is the ZIP attachment for files detected as variants of Win32/Kuluoz.

Win32/Kuluoz is a trojan that tries to steal passwords and files from your computer. The spammed message may look like a failure delivery notice or an airline e-ticket, for example:





The attachment may have a file name similar to:

  • Delta_A_Ticket_Print_Document.zip
  • UPS_Label_Copy.zip




Analysis by Marianne Mallen

Last update 30 October 2012

 

TOP