|
Sunday, 25 September 2005 |
Description:
This Trojan may be dropped by other malware. It may also be downloaded to an affected system by clicking on a link in an email propagated by WORM_MYTOB.KO.
The said worm sends out an email message containing a link that points to the following URL:
http://204.111.168.{BLOCKED}Confirmation_Sheet.pif
The said link contains a copy of this Trojan, which in turn, downloads a copy of the mentioned worm.
Upon execution, this Trojan drops several files in the Windows system folder detected by Trend Micro as the following malware:
* WORM_MYTOB.KO
* WORM_SDBOT.CHG |