This Trojan executes the files it drops, prompting the affected system to exhibit the malicious routines they contain.
File size: 961,536 bytes
File type: EXE
Memory resident: No
Initial samples received date: 30 May 2012
Arrival Details
This Trojan may be downloaded from the following remote sites:
Installation
This Trojan drops the following non-malicious file:
(Note: %User Temp% is the current user's Temp folder, which is usually C:\Documents and Settings\{user name}\Local Settings\Temp on Windows 2000, XP, and Server 2003.)
It creates the following folders:
(Note: %User Temp% is the current user's Temp folder, which is usually C:\Documents and Settings\{user name}\Local Settings\Temp on Windows 2000, XP, and Server 2003.)
Dropping Routine
This Trojan drops the following files:
- %User Temp%\IXP000.TMP\basi.exe - detected as TROJ_VBINJECT.XG
(Note: %User Temp% is the current user's Temp folder, which is usually C:\Documents and Settings\{user name}\Local Settings\Temp on Windows 2000, XP, and Server 2003.)
It executes the files it drops, prompting the affected system to exhibit the malicious routines they contain.
Connect with us on
| | | |