Win32/TrojanClicker.Collicky [Threat Name] go to Threat

Win32/TrojanClicker.Collicky.A [Threat Variant Name]

Category trojan
Size 261120 B
Detection created Dec 17, 2013
Detection database version 9182
Aliases Trojan-Clicker.Win32.Agent.abat (Kaspersky)
Short description

The trojan serves as a backdoor. It can be controlled remotely.

Installation

The trojan does not create any copies of itself.

Other information

The trojan acquires data and commands from a remote computer or the Internet.


The trojan contains a URL address. The HTTP protocol is used.


It can execute the following operations:

  • open a specific URL address
  • perform DoS/DDoS attacks

The trojan hooks the following Windows APIs:

  • connect (ws2_32.dll)
  • send (ws2_32.dll)

The trojan modifies the program code of the following Windows APIs:

  • directSoundCreate (DSound.dll)
  • midiStreamOpen (Winmm.dll)
  • waveOutWrite (Winmm.dll)

The trojan interferes with the operation of some security applications to avoid detection.

Please enable Javascript to ensure correct displaying of this content and refresh this page.