Content

Downloader-BR

Type
Program
SubType
Downloader
Discovery Date
11/11/2002
Minimum DAT
4235 (11/27/2002)
Updated DAT
5300 (05/21/2008)
Minimum Engine
5.1.00
Description Added
12/02/2002
Description Modified
11/19/2003 9:36 AM (PT)

Tab Navigation

Characteristics

This detection covers multiple versions of a downloader primarily intended for downloading (and executing) remote porndialler executables.

When executed on the victim machine, a DNS request for the remote server is issued. Subsequently, the remote dialler is downloaded and saved locally as C:\DIALLER.EXE.

This detection is an application type - for this "potentially unwanted application". The current command-line scanner makes use of such detections (with the /PROGRAM switch), as does VirusScan 7 (via configuration pages).

Removal

AVERT recommends to always use latest DATs and engine. This threat will be cleaned if you have this combination.

Additional Windows ME/XP removal considerations

Aliases

Aliases

  • Trojan.DownLoader.17736 (Dialogue Science)
  • TrojanDownloader.Win32.Small.j (AVP)
  • Win32.DlSmall.J (CA Vet)