Home / malwarePDF  

Trojan:Win32/Tibs.IT


First posted on 24 April 2009.
Source: SecurityHome

Aliases :

Trojan:Win32/Tibs.IT is also known as Also Known As:Win32/Adware.SpywareProtect2009 (ESET), FakeAlert-C.dr (McAfee), Adware/SpywareProtect2009 (Panda), Troj/FakeVir-KR (Sophos), Trojan.Win32.FakeSpypro (other), SpywareProtect2009 (Symantec).

Explanation :

Trojan:Win32/Tibs.IT is a generic detection for files used across multiple pieces of malware affiliated with the Tibs malware family. Win32/Tibs malware typically use a particular method of code obfuscation in an attempt to avoid detection. The malware that lies "underneath" may have virtually any purpose.

Symptoms
There are no common symptoms associated with this threat. Alert notifications from installed antivirus software may be the only symptom(s).

Trojan:Win32/Tibs.IT is a generic detection for files used across multiple pieces of malware affiliated with the Tibs malware family. Win32/Tibs malware typically use a particular method of code obfuscation in an attempt to avoid detection. The malware that lies "underneath" may have virtually any purpose.

Analysis by Elda Dimakiling

Last update 24 April 2009

 

TOP