SPYWARE: Trojan-Downloader-Agent-TL
This signature detects the runtime behavior of Trojan.Downloader.Agent.TL. Trojan.Downloader.Agent.TL drops and executes Trojans on a user's computer. When executed, it attempts to connect to its controlling server 213.21.215.* to download and install malicious code. It can also send some information back to its controlling server without the user's consent. A successful attack can cause a denial of service (DoS) or execution of remote arbitrary code.
References
URL: http://www.avira.com/en/threats/TR_Drop_Cimuz_AH_2_details.html
srx-branch-12.3
srx-19.3
srx-branch-19.3
vsrx3bsd-19.2
srx-branch-19.4
vsrx-19.4
mx-12.3
mx-19.4
vmx-19.4
mx-19.3
vsrx3bsd-19.4
srx-19.4
vsrx-12.3
vmx-19.3
vsrx-19.2
srx-12.3