Home / malwarePDF  

SoftwareBundler:VBS/Mizenota


First posted on 03 March 2016.
Source: Microsoft

Aliases :

There are no other names known for SoftwareBundler:VBS/Mizenota.

Explanation :

Installation

This threat is a visual basic script (VBS) which downloads unwanted software. We detect the downloaded software as SoftwareBundler:Win32/Mizenota.

We have seen this threat installed with the file name task.vbs in the following folders:

  • %SystemDrive%
  • %TEMP%


Behavior

This threat downloads SoftwareBundler:Win32/Mizenota and saves it in the %TEMP% folder using the following file names:
  • amiupdater.exe
  • Updater.exe




Analysis by Diana Lopera

Last update 03 March 2016

 

TOP