Home Malware Programs Trojans TROJ_MDROP.ATP

TROJ_MDROP.ATP

Posted: April 26, 2013

Threat Metric

Threat Level: 9/10
Infected PCs: 49
First Seen: April 26, 2013
Last Seen: October 18, 2020
OS(es) Affected: Windows

TROJ_MDROP.ATP is a Trojan that is included in a targeted attack campaign, which hides behind SSL communication. Using encrypted communication like 'Secure Sockets Layers (SSL)' along with the reasonable use of recent news item as a social engineering lure is the perfect combination to infiltrate and remain in a targeted entity's infrastructure. TROJ_MDROP.ATP propagates via a spam email related to the Boston Marathon bombing, which includes a malicious attachment named 'The Prayer.DOC', encouraging target recipients to pray for the victims of the Boston Marathon. The malicious attachment is detected as TROJ_MDROP.ATP, which exploits the vulnerability in CVE-2012-0158 to download the malicious executable file called 'iExplorer.exe' onto the infected computer.

Technical Details

File System Modifications

Tutorials: If you wish to learn how to remove malware components manually, you can read the tutorials on how to find malware, kill unwanted processes, remove malicious DLLs and delete other harmful files. Always be sure to back up your PC before making any changes.

The following files were created in the system:



iExplorer.exe File name: iExplorer.exe
File type: Executable File
Mime Type: unknown/exe
Group: Malware file
The Prayer.DOC File name: The Prayer.DOC
Mime Type: unknown/DOC
Group: Malware file
Loading...