| Malware name | Script.Dldr.Agent.SI | | Type | Script | | Affected platform | Win32 | | Media-Type | text/html | | MD5 checksum | 7C44D3CF5013CF7405150493402BBCBD | | Static file | yes | | Filesize | 1,235 Bytes | Alias names (also known as) | | Sophos | JS/Dloadr-BNF | | McAfee | JS/Exploit-BO | | CA ETrust | JS/Swif.K |
| | Side effects | Downloads malicious files | | Propagation | No own spreading routine |
|
Description:
Files
– The location is the following:
• http://user1.zhong292.cn/**********115.swf
Furthermore this file gets executed after it was fully downloaded. Further investigation pointed out that this file is malware, too. Detected as:
3932 – The location is the following:
• http://user1.zhong292.cn/**********15.swf
Furthermore this file gets executed after it was fully downloaded. Further investigation pointed out that this file is malware, too. Detected as:
3932 – The location is the following:
• http://user1.zhong292.cn/**********5.swf
Furthermore this file gets executed after it was fully downloaded. Further investigation pointed out that this file is malware, too. Detected as:
3932