Class: Trojan-Downloader
Programs classified as Trojan-Downloader download and install new versions of malicious programs, including Trojans and AdWare, on victim computers. Once downloaded from the Internet, the programs are launched or included on a list of programs which will run automatically when the operating system boots up. Information about the names and locations of the programs which are downloaded are in the Trojan code, or are downloaded by the Trojan from an Internet resource (usually a web page). This type of malicious program is frequently used in the initial infection of visitors to websites which contain exploits.Read more
Platform: Win64
Win64 is a platform on Windows-based operating systems for execution of 32-/64-bit applications. Win64 programs cannot be launched on 32-bit versions of Windows.Family: Virus.MSWord.Alien
No family descriptionExamples
65250519F20EEB8EB6AA46A8CABF0AECTactics and Techniques: Mitre*
TA0007
Discovery
Adversaries may interact with the Windows Registry to gather information about the system, configuration, and installed software.
T1012
Query Registry
Adversaries may interact with the Windows Registry to gather information about the system, configuration, and installed software.
* © 2025 The MITRE Corporation. This work is reproduced and distributed with the permission of The MITRE Corporation.