Eng
  1. Skip to navigation
  2. Skip to content
  3. Skip to sidebar


Trojan-Downloader:W32/Small.EJK


Aliases:


Trojan-Downloader:W32/Small.EJK

Malware
Trojan-Downloader
W32

Summary

Small.EJK is a trojan-downloader that is included in a spam run in Germany.



Disinfection & Removal

Automatic Disinfection

Allow F-Secure Anti-Virus to disinfect the relevant files.

For more general information on disinfection, please see Removal Instructions.



Technical Details

Small.EJK is a trojan-downloader that is included in a spam run in Germany.A sample mail is as follows:

Upon execution, it downloads a trojan-spy from a remote addresses on the web using the following script:

  • http://81.95.147.138/[REMOVED]/get_exe.php
  • http://marketing-know-how.com/[REMOVED]/get_exe.php
  • http://tncmhg.com/images/[REMOVED]/get_exe.php
  • http://www.eurowing.us/[REMOVED]/get_exe.php
  • http://www.thaitradeshow.com/images/[REMOVED]/get_exe.php

An earlier version of the downloaded trojan was detected as Trojan-Spy.Win32.BZub.IJ. This was later changed/modified most probably by the author(s). The updated copy is now detected as Trojan-Spy:W32/BZub.IK.







Submit a sample




Wondering if a file or URL is malicious? Submit a sample to our Lab for analysis via the Sample Analysis System (SAS)

Give And Get Advice




Give advice. Get advice. Share the knowledge on our free discussion forum.

Scan and clean your PC




F-Secure Online Scanner will scan and clean your PC in just a few minutes for free