Home / malwarePDF  

TrojanDownloader:Win32/Modgof.A


First posted on 07 September 2010.
Source: SecurityHome

Aliases :

TrojanDownloader:Win32/Modgof.A is also known as TROJ_AZAH.A (Trend Micro).

Explanation :

TrojanDownloader:Win32/Modgof.A is a trojan that silently downloads and installs other programs without consent. This could include the installation of additional malware or malware components to an affected computer.
Top

TrojanDownloader:Win32/Modgof.A is a trojan that silently downloads and installs other programs without consent. This could include the installation of additional malware or malware components to an affected computer. Installation TrojanDownloader:Win32/Modgof.A creates the following files on an affected computer:

  • c:\documents and settings\administrator\kb958544.log
  • c:\documents and settings\administrator\local settings\temp\ctfmon.exe - detected as Infected: TrojanDownloader:Win32/Modgof.A
  • Payload Contacts remote hosts TrojanDownloader:Win32/Modgof.A may contact the following remote hosts using port 80:

  • freetrade.allowed.org
  • worldwide.chickenkiller.com

  • Commonly, malware may contact a remote host for the following purposes:
    • To confirm Internet connectivity
    • To report a new infection to its author
    • To receive configuration or other data
    • To download and execute arbitrary files (including updates or additional malware)
    • To receive instruction from a remote attacker
    • To upload data taken from the affected computer

    This malware description was produced and published using our automated analysis system's examination of file SHA1 694b89edb9551740bc239f6ef9e7959b4f7e4cfa.

    Last update 07 September 2010

     

    TOP