Gerald W. from the United States sent us this sample. We identified it as Win32TrojanSpy, and pit it against our world renowned Antimalware product, Assassin SE . Watch the video to see the results and read below to find out more about this sample.
Ad-Aware defines malware Win32TrojanSpy as:
Family: Win32TrojanSpy
Category: Malware
Description: Win32TrojanSpy is a type of malicious program that steal information such as passwords,
surfing habits, credit card details and email addresses.
Threat Analysis Index (TAI): 10
Our Thoughts:
This malware attempts to download a daemon process which then can be used to steal sensitive information and/or further infect the system. The trick with defeating this piece of malware, as well as malware like this, is to be quick. Since this family of malware connects remotely to an outside source, the best reaction would be to disable your Internet connection before addressing the infection.
Although, we didn't think it would be fair, so we kept our connection going during testing. As you will see in the video, we got the job done before the malware had a chance to increase its payload.
Big thanks to Gerald for sending us this sample!!
Wanna know how to submit your samples to us? Ask how: http://blacklistsoft.com/contacts.php
Link to this comment:
All Comments (0)