Home Malware Programs Trojans Trojan-Downloader.Win32.Zlob.acqx

Trojan-Downloader.Win32.Zlob.acqx

Posted: October 28, 2009

Trojan-Downloader.Win32.Zlob.acqx is a Trojan downloader. Trojan-Downloader.Win32.Zlob.acqx is a standalone program that may secretly download and run other files from remote web and ftp sites. Trojan-Downloader.Win32.Zlob.acqx may download distinct trojans and backdoors and activate them on a vulnerable system without user's permission. While running, Trojan-Downloader.Win32.Zlob.acqx installs itself to system and waits until Internet connection becomes available. It can also connect to a web or ftp site to download specific files and executes them.

Aliases

Trojan-Downloader.Zlob!sd6 (PC Tools)
Puper! (McAfee)

File System Modifications

  • The following files were created in the system:
    # File Name
    1 %ProgramFiles%\web technologies\wcm.exe
    2 %ProgramFiles%\web technologies\wcs.exe
    3 %System%\iebt.dll
    4 %System%\iebtmm.exe
    5 %System%\wcm.exe
    6 %System%\winupdate.exe
    7 %Temp%\ixp000.tmp\setup_ver1.1567.0.exe
    8 %Temp%\ixp000.tmp\setup_ver1.1595.0.exe
    9 %Temp%\ixp000.tmp\setup_ver1.1620.0.exe
    10 %Temp%\new_us.exe
    11 %Temp%\setup_ver1.1762.0.exe
    12 %Temp%\setup_ver1.1820.0.exe
    13 %Temp%\starcodec_ver1.5343.0.exe
    14 %Temp%\win32dbg.exe
    15 %Temp%\winupdate.exe
    16 %Windir%\setup_ver1.1394.0.exe
    17 c:\drivers\lan\svshost.exe
    18 c:\drivers\sound\svchost.exe
    19 c:\setup_ver1.1524.0.exe
    20 c:\setup_ver1.1570.0.exe
    21 c:\temp\vga\svchost.exe
Loading...