Win32/TrojanDownloader.Chindo [Threat Name] go to Threat

Win32/TrojanDownloader.Chindo.D [Threat Variant Name]

Category trojan
Size 220201 B
Detection created Dec 14, 2017
Detection database version 16571
Short description

Win32/TrojanDownloader.Chindo.D is a trojan which tries to download other malware from the Internet.


The trojan does not create any copies of itself.

Information stealing

Win32/TrojanDownloader.Chindo.D is a trojan that steals sensitive information.

The following information is collected:

  • MAC address
  • malware version

The trojan can send the information to a remote machine.

Other information

The trojan contains a URL address.

It tries to download a file from the address. The HTTP protocol is used in the communication.

The file is stored in the following location:

  • %appdata%\­Geekzip\­Geekzip.dat

The file contains encrypted executable.

The file is then decrypted and executed.

Please enable Javascript to ensure correct displaying of this content and refresh this page.