Analysis by: Joachim Suico

ALIASES:

Trojan:Win32/Lodbak.A (Microsoft); Packed.Dromedan!gen11 (Symantec); W32/Agent.XDP!tr (Fortinet)

 PLATFORM:

Windows

 OVERALL RISK RATING:
 DAMAGE POTENTIAL:
 DISTRIBUTION POTENTIAL:
 REPORTED INFECTION:
 INFORMATION EXPOSURE:

  • Threat Type: Trojan

  • Destructiveness: No

  • Encrypted:

  • In the wild: Yes

  OVERVIEW

This Trojan arrives on a system as a file dropped by other malware or as a file downloaded unknowingly by users when visiting malicious sites.

It is a component of other malware.

It requires its main component to successfully perform its intended routine.

  TECHNICAL DETAILS

Tamaño del archivo 26,138,624 bytes
Tipo de archivo DLL
Residente en memoria No
Fecha de recepción de las muestras iniciales 22 May 2015

Arrival Details

This Trojan arrives on a system as a file dropped by other malware or as a file downloaded unknowingly by users when visiting malicious sites.

Installation

This Trojan is a component of other malware.

Other Details

This Trojan requires its main component to successfully perform its intended routine.

NOTES:

This Trojan is used by the main component malware to decrypt another malicious file.