JS_FAKEAV.GYY

 Analysis by: Abraham Latimer Camba

 PLATFORM:

Windows 2000, Windows XP, Windows Server 2003

 OVERALL RISK RATING:
 DAMAGE POTENTIAL:
 DISTRIBUTION POTENTIAL:
 REPORTED INFECTION:

  • Threat Type: Trojan

  • Destructiveness: No

  • Encrypted:

  • In the wild: Yes

  OVERVIEW

This Trojan may arrive bundled with malware packages as a malware component. It may be hosted on a website and run when a user accesses the said website.

  TECHNICAL DETAILS

File Size:

21,931 bytes

File Type:

HTML, HTM

Initial Samples Received Date:

16 Apr 2012

Arrival Details

This Trojan may arrive bundled with malware packages as a malware component.

It may be hosted on a website and run when a user accesses the said website.

NOTES:
This script is a component of FAKEAV malware family and usually display fake alerts the warns users of the infection and also fake scanning results of the affected system, which may then lead to prompting the user to download and execute a malicious executable file.