Home / malwarePDF  

TrojanDownloader:HTML/Renos


First posted on 26 July 2019.
Source: Microsoft

Aliases :

TrojanDownloader:HTML/Renos is also known as Hoax.HTML.Secureinvites.d, Trojan.FakeAlert.ANP.

Explanation :

TrojanDownloader:HTML/Renos is Microsoft's generic detection for a trojan HTML script that attempts to download executable rogue security software when a user visits a malicious Web site and moves the mouse cursor over certain graphics or images. Installation TrojanDownloader:HTML/Renos does not install locally. However, it may be cached in the temporary Internet files folder when viewing a malicious Web page. Payload Downloads rogue security program Viewing a malicious Web page containing this trojan script moves the mouse cursor over certain graphics or images. The trojan script could also invoke a dialogue box requesting that the user save or run a rogue security program.   Analysis by Dan Kurc

Last update 26 July 2019

 

TOP