Home / malwarePDF  

TrojanDownloader:BAT/Lnkget.AO


First posted on 23 October 2010.
Source: SecurityHome

Aliases :

TrojanDownloader:BAT/Lnkget.AO is also known as Downloader.Generic_c.BQQ (AVG), EXP/lnk.BF (Avira), Exploit.Lnk-Dropper.Gen (BitDefender), Pif.Download.based (Dr.Web), BAT/TrojanDownloader.Ftp.NIJ.Gen (ESET), Exploit.Lnk-Dropper (Ikarus), Mal/DownLnk-B (Sophos).

Explanation :

TrojanDownloader:BAT/Lnkget.AO is a malicious Windows Shortcut File (.LNK) that attempts to download and run a file from a certain website.
Top

TrojanDownloader:BAT/Lnkget.AO is a malicious Windows Shortcut File (.LNK) that attempts to download and run a file from a certain website. InstallationTrojanDownloader:BAT/Lnkget.AO can arrive on a computer either by being dropped or downloaded by other malware. When run, it attempts to download other malware. Payload Downloads an arbitrary file Once double-clicked, the trojan attempts to download and run a Visual Basic Script (.VBS) file from the following domain, using the TFTP protocol:

  • w11e.com


  • Analysis by Daniel Radu

    Last update 23 October 2010

     

    TOP