Threat Database Trojans Win32/Agent.UZD

Win32/Agent.UZD

By GoldSparrow in Trojans

Threat Scorecard

Threat Level: 90 % (High)
Infected Computers: 4
First Seen: August 22, 2013
Last Seen: March 7, 2020
OS(es) Affected: Windows

Win32/Agent.UZD is a Trojan that functions as a proxy server. While being installed on a corrupted PC, Win32/Agent.UZD downloads a malevolent file, which is run-time compressed using PECompact. When run, Win32/Agent.UZD replicates itself in the specific location. Win32/Agent.UZD gets data and commands from a distant server or the web. Win32/Agent.UZD carries a list of domain names. The HTTP protocol is used in the communication. Win32/Agent.UZD can run the malevolent operations such as eliminate itself from the compromised, establish a proxy server and update itself to a newer version.

File System Details

Win32/Agent.UZD may create the following file(s):
# File Name Detections
1. %localappdata%\­%variable%.exe

Trending

Most Viewed

Loading...