Win32/Agent.UZD [Threat Name] go to Threat

Win32/Agent.UZD [Threat Variant Name]

Category trojan
Size 206848 B
Detection created Aug 05, 2013
Detection database version 10147
Short description

The trojan serves as a proxy server. The file is run-time compressed using PECompact .

Installation

When executed the trojan copies itself in the following locations:

  • %localappdata%\­%variable%.exe

A string with variable content is used instead of %variable% .

Other information

The trojan acquires data and commands from a remote computer or the Internet.


The trojan contains a list of (1) URLs. The HTTP protocol is used in the communication.


It can execute the following operations:

  • set up a proxy server
  • update itself to a newer version
  • remove itself from the infected computer

Please enable Javascript to ensure correct displaying of this content and refresh this page.