Home / malwarePDF  

TrojanDownloader:Win32/Anedl.A


First posted on 26 November 2019.
Source: Microsoft

Aliases :

There are no other names known for TrojanDownloader:Win32/Anedl.A.

Explanation :

TrojanDownloader:Win32/Anedl.A is a trojan that silently downloads and installs other programs without consent. This could include the installation of additional malware or malware components to an affected computer. Installation When executed, TrojanDownloader:Win32/Anedl.A copies itself to %windir%weblssas.exe.
The malware creates the following files on an affected computer:
%windir%weblid %windir%weblnm Payload Contacts remote host TrojanDownloader:Win32/Anedl.A may contact a remote host at goodforyou.16mb.com using port 80. Commonly, malware may contact a remote host for the following purposes: To report a new infection to its author To receive configuration or other data To download and execute arbitrary files (including updates or additional malware) To receive instruction from a remote attacker To upload data taken from the affected computer
This malware description was produced and published using our automated analysis system's examination of file SHA1 a1cfcbdc71b24cb96fa91616c7bc5674e4e052f7.

Last update 26 November 2019

 

TOP