Virus:TR/Click.Yabector.A.29
Date discovered:09/02/2010
Type:Trojan
In the wild:Yes
Reported Infections:Low to medium
Distribution Potential:Low
Damage Potential:Low to medium
Static file:Yes
File size:89.088 Bytes
MD5 checksum:83b1889b1772a74b6934e98538574ed3
IVDF version:7.10.04.02 - Tuesday, February 9, 2010

 General Platforms / OS:
   • Windows 2000
   • Windows XP
   • Windows 2003


Side effects:
   • Downloads malicious files
   • Drops a file

 Files The following file is created:

– %HOME%\Application Data\Desktopicon\config.ini



It tries to download some files:

– The location is the following:
   • http://www.callidae.biz/js/**********


– The location is the following:
   • http://www.callidae.biz/cgi-bin/**********?t=26


– The location is the following:
   • http://rover.ebay.com/rover/1/711-53200-19255-0/**********?type=1&campid=5335816973&toolid=10001&customid=


– The location is the following:
   • http://www.callidae.biz/cgi-bin/**********?t=0


– The location is the following:
   • http://www.callidae.biz/en/1372369/**********


– The location is the following:
   • http://www.callidae.biz/js/**********?1372369


– The location is the following:
   • http://www.adon-demand.de/red/**********/?s=United%20States&c=1

Description inserted by Petre Galan on Monday, March 8, 2010
Description updated by Petre Galan on Monday, March 8, 2010

Back . . . .