Home / malwarePDF  

TrojanDropper:JS/Xibow.C


First posted on 07 May 2015.
Source: Microsoft

Aliases :

There are no other names known for TrojanDropper:JS/Xibow.C.

Explanation :

Threat behavior

Installation
This threat can be installed when you open a spam email attachment. It creates files on your PC, including:

  • %TEMP%\s2bb.bat - detected as Ransom:BAT/Xibow.gen!B


Payload


Installs malware or unwanted software

This trojan can install other malware or unwanted software onto your PC, including malware from the Ransom:BAT/Xibow family.



This malware description was published using automated analysis of file SHA1 4d2276eba2e0cbac3a817f5c674f9b7472634bb1.

Symptoms

The following can indicate that you have this threat on your PC:

  • You see a file similar to:
    • %TEMP%\s2bb.bat




Last update 07 May 2015

 

TOP