1. Symantec/
  2. Security Response/
  3. Attack Signatures/
  4. System Infected: Trojan.Downloader Activity 53

System Infected: Trojan.Downloader Activity 53

Severity: High

This attack could pose a serious security threat. You should take immediate action to stop any damage or prevent further damage from happening.

Description

This signature detects suspicious activities associated with the download of malware which may result in the compromise of the host.

Additional Information

Downloader does the following:

* Goes to a specific Web or FTP site that its author created and attempts to download new Trojans, viruses, worms, or their components.
* After the Trojan downloads the files, it executes them.

Affected

  • Windows

Response

The following instructions pertain to all current and recent Symantec antivirus products, including the Symantec AntiVirus and Norton AntiVirus product lines.

1. Disable System Restore (Windows Me/XP).
2. Update the virus definitions.
3. Restart the computer in Safe mode (Windows 95/98/Me/2000/XP) or VGA mode (Windows NT).
4. Run a full system scan and delete all the files detected as Downloader.
5. Clear Internet Explorer History and files, if needed.
  • Twitter
  • Facebook
  • LinkedIn
  • Google+
  • YouTube