Threat Database Trojans TROJ_DROPPR.JET

TROJ_DROPPR.JET

By ZulaZuza in Trojans

Threat Scorecard

Threat Level: 90 % (High)
Infected Computers: 2
First Seen: May 14, 2012
Last Seen: February 18, 2022
OS(es) Affected: Windows

TROJ_DROPPR.JET has been detected in a malicious email attachment and used in an attempt by criminals to exploit the death of Beastie Boy Adam Yuach as a way of distributing malware. This file claims to contain information about this recently deceased celebrity. However, when the computer user opens this file it will run TROJ_DROPPR.JET, which will install a second Trojan designed to connect to a remote server in order to install other malware on the victim's computer system.

These kinds of malicious email messages are quite common and will often accompany important breaking news events, celebrity or political deaths, and popular releases (such as new iPhone or iPad releases). To avoid becoming a victim of TROJ_DROPPR.JET, ESG security analysts strongly advise against opening these kinds of email messages, even if they appear to be harmless text files. Using exploits, criminals can use files in PDF, DOC, or other common formats to execute dangerous Trojans. Indubitably, it is also crucial to have a strong spam filter and a reliable real-time malware scanner.

How Criminals Exploit Tragedies to Install Malware Like TROJ_DROPPR.JET

The TROJ_DROPPR.JET email claims to have been sent by the International Campaign for Tibet. To further enhance this illusion, this malicious email includes this organizations logo as well as a photograph of the recently deceased Adam Yuach posing with the Dalai Lama. This email will contain a seemingly harmless file in DOC format supposedly containing more news on Adam Yuach's death. This kind of attack is quite common. Even just in recent months PC security researchers have observed similar malicious email attacks exploiting the deaths of Amy Winehouse, Whitney Houston, Muammar Ghadaffi, and Steve Jobs.

How TROJ_DROPPR.JET Carries Out Its Attack

TROJ_DROPPR.JET is a Trojan dropper, which means that its payload is basically limited to installing another malware threat. ESG security analysts have observed that TROJ_DROPPR.JET can be used to install a variety of other threats. In the case of the Adam Yuach-related email attack, TROJ_DROPPR.JET dropper installs the TROJ_SWYSYN.SME Trojan. This Trojan has the ability to connect to a remote server, establish a backdoor on the infected computer system, allow criminals to gain access to your confidential data, and download and install other malware from a remote server.

SpyHunter Detects & Remove TROJ_DROPPR.JET

File System Details

TROJ_DROPPR.JET may create the following file(s):
# File Name MD5 Detections
1. file.exe a6e3fbea1a839cb612a15396d6c35f98 1
2. %System%\winlogin.exe

Trending

Most Viewed

Loading...