Malware Information

Malware nameScript.Dldr.Iframe.DP
TypeTrojan
Affected platformWin32
Media-Typetext/html
MD5 checksum032B615A1FB33663B4BDC12AE30E40C3
Static fileno
Filesize15,940 Bytes
Alias names
(also known as)
Webwasher ProactiveJavaScript.InfectedPage.gen!Medium
SophosTroj/Unif-B
Protection
Webwasher ProactiveDatabase Version: 77
Side effectsDownloads a malicious file
PropagationNo own spreading routine

Description:

Files

It tries to download a file:

– The location is the following:
• http://traffurl.ru/**********
Furthermore this file gets executed after it was fully downloaded. Further investigation pointed out that this file is malware, too. Detected as: 3438