Win32/TrojanDownloader.Mebload [Threat Name] go to Threat

Win32/TrojanDownloader.Mebload.AA [Threat Variant Name]

Category trojan
Size 28672 B
Detection created Mar 24, 2010
Detection database version 4971
Aliases Backdoor.Win32.Sinowal.fox (Kaspersky)
  PWS:Win32/Sinowal.gen!P (Microsoft)
  Trojan.Anserin (Symantec)
Short description

Win32/TrojanDownloader.Mebload.AA is a trojan which tries to download other malware from the Internet.

Installation

The trojan does not create any copies of itself.

Other information

Win32/TrojanDownloader.Mebload.AA is a trojan which tries to download other malware from the Internet.


The trojan contains an URL address.


It tries to download a file from the address.


The file is stored in the following location:

  • %temp%\­%variable%

A string with variable content is used instead of %variable% .


The file is then executed.


The HTTPS, HTTP protocol is used.

Please enable Javascript to ensure correct displaying of this content and refresh this page.