Trojan.Downloader.HTML.FM

( Trojan.Downloader.HTML.GC, Trojan-Downloader.HTML.IFrame.gc )
Spreading: very low
Damage: very low
Size: 708 bytes
Discovered: 2008 Jul 09

SYMPTOMS:

At most you will notice increased network activity and possible the effect of some Trojans downloaded by this HTML script.

 

TECHNICAL DESCRIPTION:

This is an a small HTML file, possible sent by spam email. It tricks users into downloading a file called fireworks.exe hidden behind a fake embedded video related to the 4'th of July holiday.

Along with this video in the social engineering process the following phrase is used : "Colorful Independence Day events have already started throughout the country. The largest firework happens on the Fourth of July. Unprecedented sum of money was spent on this fabulous show. If you want to see the best Independence Day firework just click on the video and run it."

It also contains an "iframe" HTML tag redirecting the current page to a php script called "ind.php"

Removal instructions:

Please let BitDefender disinfect your files.

ANALYZED BY:

Mihai Cimpoesu, Virus Researcher