Home / malwarePDF  

Trojan:W32/TDSS.BR


First posted on 11 April 2009.
Source: SecurityHome

Aliases :

Trojan:W32/TDSS.BR is also known as Trojan:W32/Alureon.gen!J (Microsoft).

Explanation :

A trojan, or trojan horse, is a seemingly legitimate program which secretly performs other, usually malicious, functions. It is usually user-initiated and does not replicate.

Additional DetailsThis trojan arrives as an installer file downloaded from a fake video posted on a video site.

Installation

Upon execution of the installer, the trojan drops and executes a malicious file hidden in the archive installer. The malicious file is detected as Worm:W32/TDSS.BU.

The trojan also creates the following files:

• %ProgramFiles%PlayMeUninstall.exe - normal uninstaller file • %UserProfile%Start MenuProgramsPlayMeUninstall.lnk - link to uninstaller

Last update 11 April 2009

 

TOP