Sophos

Troj/Psyme-BQ

Aliases
  • VBS/Psyme
  • Trojan-Downloader.VBS.Iwill.g
Category
Type
What to do
Prevalence low high

Summary

 
Affected operating systems Windows
Protection available since 12 April 2005 13:07:53 (GMT)
Detected by All Sophos products
  • Endpoint Security and Control 9.0
  • Small business solutions 4.0

Action

More Information

Troj/Psyme-BQ is a downloader Trojan.

Troj/Psyme-BQ is a Visual Basic script downloader Trojan that exploits the XMLHTTP and ADODB Stream vulnerabilities associated with Microsoft Internet Explorer to download and run an executable file from a remote location.

Troj/Psyme-BQ will attempt to download a file to SM.EXE and run it. At the time of writing, this file is detected as Troj/Dloader-JP.

Troj/Psyme-BQ will attempt to terminate processes named DRWEB32.EXE and OUTPOST.EXE.

RSS|Atom
Get reports about the latest virus and spyware threats delivered to your computer