|Detected||May 01 2006 10:25 GMT|
|Released||May 01 2006 10:25 GMT|
|Published||May 11 2006 15:27 GMT|
This Trojan is a Windows PE EXE file 2048 bytes in size, written in Assembler.
This Trojan is launched from the command line with two parameters. The format is approximately as shown below:
The Trojan is able to download files via the Internet and launch them on the victim machine. It will also register downloaded files in the system registry to ensure they are launched automatically.
Programs classified as Trojan-Downloader download and install new versions of malicious programs, including Trojans and AdWare, on victim computers. Once downloaded from the Internet, the programs are launched or included on a list of programs which will run automatically when the operating system boots up.
Information about the names and locations of the programs which are downloaded are in the Trojan code, or are downloaded by the Trojan from an Internet resource (usually a web page).
This type of malicious program is frequently used in the initial infection of visitors to websites which contain exploits.