Malware Information

Malware nameScript.Dldr.Agent.SI
TypeScript
Affected platformWin32
Media-Typetext/html
MD5 checksum7C44D3CF5013CF7405150493402BBCBD
Static fileyes
Filesize1,235 Bytes
Alias names
(also known as)
SophosJS/Dloadr-BNF
McAfeeJS/Exploit-BO
CA ETrustJS/Swif.K
Side effectsDownloads malicious files
PropagationNo own spreading routine

Description:

Files

– The location is the following:
• http://user1.zhong292.cn/**********115.swf
Furthermore this file gets executed after it was fully downloaded. Further investigation pointed out that this file is malware, too. Detected as: 3932


– The location is the following:
• http://user1.zhong292.cn/**********15.swf
Furthermore this file gets executed after it was fully downloaded. Further investigation pointed out that this file is malware, too. Detected as: 3932


– The location is the following:
• http://user1.zhong292.cn/**********5.swf
Furthermore this file gets executed after it was fully downloaded. Further investigation pointed out that this file is malware, too. Detected as: 3932