|
| Name: | Christmas Blessing-4 |
| Type: | Backdoor |
| Risk: |  |
| Description: | Opening this Powerpoint file will infect your PC with Hupigon Trojans. A popular PowerPoint file for the last few years has been edited by a criminal seeking to install Hupigon Trojans on computers via a PPT exploit. Versign reported this exploit 24 Dec 2006. Opening the PPT file on a vulnerable system results in the installation of two files: C:WINDOWSsystem32msupdate.dll (18,507 bytes) and C:WINDOWSsystem32sdfsc.dll (3 bytes). It appears this msupdate.dll is a Trojan downloader Backdoor.Win32.Hupigon.BV. PestBlock will delete all files dropped by the sample Verisign provided. |
|
 |
|
|