| Malware name | Script.Dldr.Iframe.DP | | Type | Trojan | | Affected platform | Win32 | | Media-Type | text/html | | MD5 checksum | 032B615A1FB33663B4BDC12AE30E40C3 | | Static file | no | | Filesize | 15,940 Bytes | Alias names (also known as) | | Webwasher Proactive | JavaScript.InfectedPage.gen!Medium | | Sophos | Troj/Unif-B |
| | Protection | | Webwasher Proactive | Database Version: 77 |
| | Side effects | Downloads a malicious file | | Propagation | No own spreading routine |
|
Description:
Files
It tries to download a file:
– The location is the following:
• http://traffurl.ru/**********
Furthermore this file gets executed after it was fully downloaded. Further investigation pointed out that this file is malware, too. Detected as:
3438