MSIL/TrojanDropper.Agent.NN [Threat Name] go to Threat

MSIL/TrojanDropper.Agent.NN [Threat Variant Name]

Category trojan
Size 7405568 B
Detection created Sep 26, 2012
Detection database version 7520
Aliases TrojanDropper:Win32/Encriyoko.A (Microsoft)
  Trojan.Dropper (Symantec)
  Trojan.Dropper.Agent.VKB (BitDefender)
Short description

MSIL/TrojanDropper.Agent.NN is a trojan that installs Win32/Spy.Agent.OAT, Win32/TrojanDownloader.Agent.RKU malware.

Installation

The trojan does not create any copies of itself.


The following files are dropped:

  • %temp%\­adbtool.exe (Win32/TrojanDownloader.Agent.RKU)
  • %temp%\­PPSAP.exe (Win32/Spy.Agent.OAT)

The files are then executed.

Other information

The trojan may execute the following commands:

  • %malwarefolder%\­clearfs.bat
  • cmd /c del %temp%\­* /f /q /s

Please enable Javascript to ensure correct displaying of this content and refresh this page.