Class Trojan-Dropper
Platform Win32

Technical Details

This Trojan is designed to install other Trojan programs to the victim machine without the knowledge or consent of the user. It is a Windows PE EXE file. It is not packed in any way. The file is 8,192 bytes in size.


Once launched, the Trojan creates the following file: c:w0rd.vbs. (This file is 1709 bytes in size and will be detected by Kaspersky Anti-Virus as Virus.VBS.Inf).

The Trojan has no other payload.

Removal instructions

  1. Delete the original Trojan file (the location will depend on how the program originally penetrated the victim machine).
  2. Delete the file created by the Trojan:

  3. Update your antivirus databases and perform a full scan of the computer (download a trial version of Kaspersky Anti-Virus)
Find out the statistics of the threats spreading in your region