Java/TrojanDownloader.Agent.NCA [Threat Name] go to Threat
Java/TrojanDownloader.Agent.NCA [Threat Variant Name]
Category | trojan |
Detection Windows Mobile db version | 3.1 |
Detection Symbian db version | 3.4 |
Aliases | Trojan-Downloader.Java.OpenConnection.ck (Kaspersky) |
TrojanDownloader:Java/OpenConnection.JQ (Microsoft) | |
Exploit-ByteVerify (McAfee) |
Short description
Java/TrojanDownloader.Agent.NCA is a trojan which tries to download other malware from the Internet. It is written in Java .
Installation
Java/TrojanDownloader.Agent.NCA may be invoked when visiting a malicious website by referencing a malicious Java class file within a Java archive file (.JAR).
Other information
When the malicious .JAR archive is processed, the Java class component gets the URL of the file to download from the malicious website.
It tries to download a file from the address.
The file is stored in the following location:
- %temp%\%variable%.exe
The file is then executed.
The %variable% represents a random number.