[<prev] [next>] [<thread-prev] [day] [month] [year] [list]
Message-ID: <9b13f6c10412130508504ed539@mail.gmail.com>
From: infsec at gmail.com (Willem Koenings)
Subject: Re: Online Script Decoder
> It's a trojan-dropper called VBS.Zerolin and it tries to
> download an executable file also belonging to the
> trojan-downloader family. It is called malware
> Win32.Zdesnado.Y
>
> What that exe file tries to download, I don't know.
hi,
> It's a trojan-dropper called VBS.Zerolin and it tries to
> download an executable file also belonging to the
> trojan-downloader family. It is called malware Win32.Zdesnado.Y
>
> What that exe file tries to download, I don't know.
it's also known as W32/Lowzones.J and Troj/Crabton-B
http://www.sophos.com/virusinfo/analyses/trojcrabtonb.html
http://vi.db.kingsoft.com/virus.php?fid=1597
latter is in simplified chinese, use babelfish to read.
W.
Powered by blists - more mailing lists